Home / Security Testing / Offensive Security

Offensive Security

Offensive security testing uncovers vulnerabilities through simulated attacks.

Try these 279 AI Offensive Security Tools

LinEnum
Free

LinEnum View LinEnum

Generate a variety of suspect actions detected by Falco rulesets.

LockBoxx
Free

LockBoxx View LockBoxx

A project for demonstrating AWS attack techniques with a focus on ethical hacking practices.

Loading Alternate Data Stream (ADS) DLL/CPL Binaries to Bypass AppLocker
Free

Loading Alternate Data Stream (ADS) DLL/CPL Binaries to Bypass AppLocker View Loading Alternate Data Stream (ADS) DLL/CPL Binaries to Bypass AppLocker

A project for demonstrating AWS attack techniques with a focus on ethical hacking practices.

Majestic Million
Free

Majestic Million View Majestic Million

Python utility for testing the existence of domain names under different TLDs to find malicious subdomains.

MadKing Amazon Web Services Attack Platform
Free

MadKing Amazon Web Services Attack Platform View MadKing Amazon Web Services Attack Platform

Offensive security tool for reconnaissance and information gathering with a wide range of features and future roadmap.

Macro_Pack
Free

Macro_Pack View Macro_Pack

Generate a variety of suspect actions detected by Falco rulesets.

MagSpoof
Free

MagSpoof View MagSpoof

GraphSpy is a token management tool that allows users to store and manage access and refresh tokens for multiple users and scopes in one location.

Maigret The Commissioner
Free

Maigret The Commissioner View Maigret The Commissioner

A comprehensive .NET post-exploitation library designed for advanced security testing.

Merlin
Free

Merlin View Merlin

Repository of tools for testing iPhone messaging by Project Zero

Metasploit Framework
Free

Metasploit Framework View Metasploit Framework

CTF toolkit for rapid exploit development and prototyping.

Metasploit Payloads
Free

Metasploit Payloads View Metasploit Payloads

Local pentest lab using docker compose to spin up victim and attacker services.

Metasploit
Free

Metasploit View Metasploit

FOCA is a tool used to find metadata and hidden information in scanned documents, with capabilities to analyze various file types and extract EXIF information.

MFFA - Media Fuzzing Framework for Android
Free

MFFA - Media Fuzzing Framework for Android View MFFA - Media Fuzzing Framework for Android

Comprehensive host-survey tool for security checks in C#.

MicroBurst
Free

MicroBurst View MicroBurst

Local pentest lab using docker compose to spin up victim and attacker services.

mimikatz
Free

mimikatz View mimikatz

CLI tool for offensive and defensive security assessments on the Joi validator library with a wide range of attacks.

MimiPenguin 2.0
Free

MimiPenguin 2.0 View MimiPenguin 2.0

An exploration of a new method to abuse DCOM for remote payload execution and lateral movement.

MiniCPS
Free

MiniCPS View MiniCPS

A tool for mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

MITRE Caldera™
Free

MITRE Caldera™ View MITRE Caldera™

Chameleon aids in evading proxy categorization to bypass internet filters.

Moki Linux
Free

Moki Linux View Moki Linux

A modular, menu-driven tool for building repeatable, time-delayed, distributed security events.

Mod_Rewrite for Red Team Infrastructure
Free

Mod_Rewrite for Red Team Infrastructure View Mod_Rewrite for Red Team Infrastructure

CTF toolkit for rapid exploit development and prototyping.

Modlishka
Free

Modlishka View Modlishka

XAHICO Web Platform is a cloud-based solution for vulnerability detection, penetration testing, and adversary simulation, accessible through web browsers and suitable for various user levels.

Mortar
Free

Mortar View Mortar

Learn how to create new Malleable C2 profiles for Cobalt Strike to avoid detection and signatured toolset