Delightful Node.js packages useful for penetration testing, exploiting, reverse engineer, cryptography ...
☆427Jun 19, 2021Updated 5 years ago
Alternatives and similar repositories for awesome-nodejs-pentest
Users that are interested in awesome-nodejs-pentest are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- More than 100 security checks for your Node.js API☆508Apr 23, 2024Updated 2 years ago
- Discover target social media profiles☆81Sep 26, 2022Updated 3 years ago
- Abusing SketchUp to make persistence on Windows☆21Mar 26, 2019Updated 7 years ago
- ZIP File Raider - Burp Extension for ZIP File Payload Testing☆73Aug 31, 2020Updated 5 years ago
- Pown.js is a security testing an exploitation toolkit built on top of Node.js and NPM.☆260Apr 7, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- DirBuster for Node.js☆20Mar 21, 2019Updated 7 years ago
- vulnerable single sign on☆152Aug 1, 2024Updated last year
- nodejsscan is a static security code scanner for Node.js applications.☆2,568Oct 10, 2025Updated 9 months ago
- A horizontal and vertical web content enumerator☆52Apr 7, 2026Updated 3 months ago
- ☆34Jul 17, 2019Updated 7 years ago
- Hamburglar -- collect useful information from urls, directories, and files☆320May 27, 2026Updated last month
- Issues to consider when planning a red team exercise.☆615Aug 23, 2017Updated 8 years ago
- A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.☆397Apr 17, 2020Updated 6 years ago
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆509Sep 23, 2025Updated 10 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A collection of useful Serverless functions I use when pentesting☆390Dec 9, 2022Updated 3 years ago
- DNS Rebinding Exploitation Framework☆493Apr 27, 2021Updated 5 years ago
- Dashboarding and Tooling front-end for PowerShell Empire using PowerShell Universal Dashboard☆104Apr 19, 2019Updated 7 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆103Dec 8, 2022Updated 3 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Aug 11, 2021Updated 4 years ago
- PowerShell based Active Directory Honey User Account Management with Universal Dashboards☆140Jun 26, 2019Updated 7 years ago
- Sample vulnerable code and its exploit code☆190Mar 14, 2021Updated 5 years ago
- ☆98Feb 21, 2019Updated 7 years ago
- A kinda reckless dns resolver. Still under development.☆16Mar 23, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Simple burp extension for routing traffic over tor. It instruments tor to switch to a new circuit after every N requests.☆20Jun 20, 2022Updated 4 years ago
- A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)☆661Dec 17, 2021Updated 4 years ago
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆755Apr 12, 2022Updated 4 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆50Jul 20, 2022Updated 4 years ago
- Declarative penetration testing orchestration framework☆297Dec 20, 2019Updated 6 years ago
- [WIP] a simple UI for Vulhub☆16Jun 10, 2021Updated 5 years ago
- The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Nod…☆2,056Jun 15, 2024Updated 2 years ago
- Commodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLT☆413Updated this week
- SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications☆1,071Nov 26, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolu…☆61Oct 8, 2017Updated 8 years ago
- Burp Suite extension to track vulnerability assessment progress☆59Mar 7, 2020Updated 6 years ago
- Exploitation for XSS☆737Aug 5, 2021Updated 4 years ago
- Pentest/BugBounty progress control with scanning modules☆279Jul 16, 2020Updated 6 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆150Feb 15, 2020Updated 6 years ago
- ☆92Dec 8, 2022Updated 3 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆85Feb 21, 2020Updated 6 years ago