Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux and Ubuntu.
☆3,929Aug 26, 2026Updated this week
Alternatives and similar repositories for discover
Users that are interested in discover are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ …☆11,169Jul 4, 2026Updated last month
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,558Sep 22, 2024Updated last year
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,832Jan 5, 2026Updated 7 months ago
- A swiss army knife for pentesting networks☆9,161Dec 6, 2023Updated 2 years ago
- ☆648Oct 1, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, al…☆2,195Dec 11, 2022Updated 3 years ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆10,075Apr 25, 2024Updated 2 years ago
- Wiki to collect Red Team infrastructure hardening resources☆4,520Oct 1, 2025Updated 10 months ago
- Empire is a PowerShell and Python post-exploitation agent.☆7,863Jan 19, 2020Updated 6 years ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,972Sep 27, 2021Updated 4 years ago
- A Tool for Domain Flyovers☆5,959May 22, 2022Updated 4 years ago
- Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's po…☆3,938Jun 4, 2026Updated 2 months ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆13,085Aug 17, 2020Updated 6 years ago
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,890Jun 15, 2020Updated 6 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A high performance offensive security tool for reconnaissance and vulnerability scanning☆4,005Apr 21, 2026Updated 4 months ago
- A Modern Orchestration Engine for Security☆6,540Aug 8, 2026Updated 3 weeks ago
- Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C☆9,000Mar 22, 2024Updated 2 years ago
- Email recon made fast and easy, with a framework to build on☆952Jan 12, 2023Updated 3 years ago
- PowerShell Runspace Post Exploitation Toolkit☆1,550Aug 2, 2019Updated 7 years ago
- Reconnaissance tool for GitHub organizations☆6,199Sep 20, 2022Updated 3 years ago
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆10,658May 7, 2026Updated 3 months ago
- Six Degrees of Domain Admin☆10,608Mar 2, 2026Updated 5 months ago
- Network Infrastructure Penetration Testing Tool☆1,671Jun 2, 2021Updated 5 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- A collection of awesome penetration testing resources, tools and other shiny things☆27,064Jul 25, 2026Updated last month
- E-mails, subdomains and names Harvester - OSINT☆17,236Updated this week
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆4,230May 11, 2023Updated 3 years ago
- Automated All-in-One OS Command Injection Exploitation Tool☆5,831Updated this week
- A tool to abuse Exchange services☆2,313Jun 10, 2024Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆16,051Updated this week
- In-depth attack surface mapping and asset discovery☆15,064Jul 19, 2026Updated last month
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆6,563Jun 10, 2026Updated 2 months ago
- Git All the Payloads! A collection of web attack payloads.☆3,981May 15, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Find exploits in local and online databases instantly☆1,844Sep 27, 2021Updated 4 years ago
- MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, i…☆3,276Updated this week
- ☆262Sep 6, 2017Updated 8 years ago
- An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the r…☆3,317Nov 20, 2025Updated 9 months ago
- Open Source Vulnerability Management Platform☆6,698Aug 20, 2026Updated last week
- Nmap on steroids. Simple CLI with the ability to run pure Nmap engine, 31 modules with 459 scan profiles.☆1,862Nov 19, 2024Updated last year
- Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Dir…☆1,618Jan 23, 2024Updated 2 years ago