Offensive Security Tool: ThreatMapper

Offensive Security Tool: ThreatMapper

ThreatMapper is a platform for runtime threat management and attack path enumeration in cloud-native environments. It actively hunts for threats in production platforms, ranking them based on their risk of exploitation. It reveals vulnerabilities, exposed secrets, and deviations from security best practices through a combination of agent-based inspection and agent-less monitoring.

Recon Tool: subby

Recon Tool: subby

subby is an uber fast and simple subdomain enumeration tool using DNS and web requests with support for detecting wildcard DNS records.

Offensive Security Tool: Ghauri

Offensive Security Tool: Ghauri

Ghauri is an advanced cross-platform tool designed to automate the detection and exploitation of SQL injection security vulnerabilities.

Recon Tool: CHOMTE.SH

Recon Tool: CHOMTE.SH

CHOMTE.SH is a powerful shell script designed to automate recon tasks. It utilizes various Go-based tools to gather information and identify the attack surface, making it a valuable asset for bug bounty hunters and penetration testers.

Offensive Security Tool: o365sprayer

Offensive Security Tool: o365sprayer

o365sprayer is a tool used to enumerate and spray passwords for Office 365 accounts on both Managed and Federated AD services. It has the ability to distinguish managed O365 and Federated Microsoft Office 365 accounts for a target domain.