The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.
-
Updated
Aug 13, 2026 - Go
The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.
The Rogue Access Point Framework
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more
List of Awesome Red Teaming Resources
🕵️♂️ (2-in-1) Email & Username OSINT suite featuring native MCP support for deep data extraction just from a single Email/Username. Analyzes 550+ actively maintained scan vectors (175+ email / 375+ username) for security research, investigations, and digital footprinting.
Red Teaming Tactics and Techniques
💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp Collaborator or Interact.sh
LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x/6.x (x86/x86_64 and ARM64)
ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
Useful Techniques, Tactics, and Procedures for red teamers and defenders, alike!
Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.
Awesome EDR Bypass Resources For Ethical Hacking
🔐 Lockdoor Framework : A Penetration Testing framework with Cyber Security Resources
Extracting Clear Text Passwords from mstsc.exe using API Hooking.
Red Team Cheatsheet in constant expansion.
OffSec OSINT Pentest/RedTeam Tools
An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents
Python based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows machines. It tracks the user activity using screen capture and sends it to an attacker as an e-mail attachment.
ISeeYou is a Bash and Javascript tool to find the exact location of the users during social engineering or phishing engagements. Using exact location coordinates an attacker can perform preliminary reconnaissance which will help them in performing further targeted attacks.
To associate your repository with the redteaming topic, visit your repo's landing page and select "manage topics."