EN
ENNA
💥

Exploitation

15 tools indexed

Exploitation frameworks, payload generators, post-exploitation tools, and privilege escalation utilities. These tools are used in penetration testing and red team operations to demonstrate the real-world impact of discovered vulnerabilities.

Metasploit Framework

Ruby
Featured

The world's most used penetration testing framework. Exploit development, payload delivery, post-exploitation.

exploitpayloadpost-exploitationclassic
37.8k14.8k2d ago

BloodHound

Go
Featured

Active Directory attack path mapping. Visualizes privilege escalation paths using graph theory.

active-directorygraphprivilege-escalationattack-path
2.9k3102d ago

Impacket

Python

Collection of Python classes for working with network protocols. Essential for Windows/AD pentesting.

smbactive-directoryprotocolwindows
15.6k3.9k6d ago

CrackMapExec

Python
Featured

Swiss army knife for pentesting Active Directory. SMB, LDAP, MSSQL, WinRM enumeration and exploitation.

active-directorysmblateral-movementcredential-spraying
9.1k1.7k2y ago

Evil-WinRM

Ruby

Ultimate WinRM shell for pentesting. Upload/download, in-memory PowerShell, DLL injection, pass-the-hash.

winrmpowershellpass-the-hashpost-exploitation
5.3k68026d ago

Covenant

C#

.NET C2 framework. Collaborative, web-based interface for red team operations and implant management.

c2red-teamdotnetimplant
4.7k8261y ago

Sliver

Go
Featured

Open-source C2 framework by BishopFox. mTLS, HTTP(S), DNS, WireGuard implants with multi-operator support.

c2red-teammulti-operatorimplant
11.0k1.5k3d ago

Ligolo-ng

Go

Advanced tunneling/pivoting tool. Creates a TUN interface for transparent proxying through compromised hosts.

tunnelingpivotingtunproxy
4.4k4211mo ago

Chisel

Go

Fast TCP/UDP tunnel over HTTP secured via SSH. Single binary, works behind firewalls and NAT.

tunnelingfirewall-bypasssshsingle-binary
15.8k1.6k1d ago

LinPEAS

Shell
Featured

Linux privilege escalation enumeration script. Finds misconfigs, SUID bins, creds, and escalation paths.

privescenumerationlinuxsuid
19.6k3.3k4d ago

pspy

Go

Monitor Linux processes without root. Detects cron jobs, user commands, and process events in real time.

process-monitorcronno-rootenumeration
5.9k5661mo ago

TheFatRat

Shell

Exploit and payload generator. Creates backdoors with msfvenom, compiles with anti-AV evasion techniques.

payloadbackdoormsfvenomevasion
11.1k2.5k2y ago

SearchSploit

Shell

Command-line tool for searching Exploit-DB — find public exploits and shellcode for known vulnerabilities offline.

exploit-databasecveshellcodevulnerability-research
7.9k1.9k3y ago

pwntools

Python

CTF framework and exploit development library for rapid prototyping of binary exploitation and reverse engineering.

ctfbinary-exploitationropshellcode
13.4k1.8k2d ago

Ropper

Python

Display and search for ROP/JOP/SOP gadgets in binaries to assist with exploit development and bypass mitigations.

rop-gadgetsexploit-developmentbinary-analysismitigation-bypass
2.1k2211y ago