Skip to main content

A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!

1.4k
GitHub Stars
3.5k
Curated Resources
37
Categories
11 hours ago
Last Refreshed
ASLASP.NETActionScriptAdaArduinoAssemblyAutoHotkeyAutoItBatchfileBitBakeBladeBlitzBasicBooCC#C++CMakeCSSClassic ASPClojureCodeQLColdFusionDartDockerfileEmacs LispErlangF#FluentFreeMarkerGoGroovyHCLHTMLHackHaskellInno SetupJava

Use this list with your AI agent

Add the Context Awesome MCP server to Claude, Cursor, or any MCP client, then ask:

"Show me c# resources from awesome-hacking-lists"

Installation instructions →

What's inside

C#

Go

  • 05sec/Cardinal

    CTF🚩 AWD (Attack with Defense) 线下赛平台 / AWD platform - 欢迎 Star~ ✨

  • 0voice/Introduction-to-Golang

    【未来服务器端编程语言】最全空降golang资料补给包(满血战斗),包含文章,书籍,作者论文,理论分析,开源框架,云原生,大佬视频,大厂实战分享ppt

  • 0x4D31/honeybits

    A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the attacker toward your honeypots

  • 0xDkd/auxpi

    🍭 集合多家 API 的新一代图床

  • 0xERR0R/blocky

    Fast and lightweight DNS proxy as ad-blocker for local network with many features

  • 0xInfection/LogMePwn

    A fully automated, reliable, super-fast, mass scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.

C

Java

C++

  • 0x09AL/DNS-Persist

    DNS-Persist is a post-exploitation agent which uses DNS for command and control.

  • 0x09AL/IIS-Raid

    A native backdoor module for Microsoft IIS (Internet Information Services)

  • 0x09AL/RdpThief

    Extracting Clear Text Passwords from mstsc.exe using API Hooking.

  • 0x727/CloneX_0x727

    进行克隆用户、添加用户等账户防护安全检测的轻巧工具

  • 0x727/ShuiYing_0x727

    检测域环境内,域机器的本地管理组成员是否存在弱口令和通用口令,对域用户的权限分配以及域内委派查询

  • 0x727/SqlKnife_0x727

    适合在命令行中使用的轻巧的SQL Server数据库安全检测工具

Batchfile

  • 0xbinibini/emergency_response_batch

    应急响应,应急响应脚本,应急响应批处理;将Windows查看日志用户端口等命令集成在批处理脚本中。让熟练的应急人员能省去多次重复的敲击和记忆,并通过读取配置文件来调用Windows自带的命令结束进程服务等,本批处理尽量不调用任何外部的工具。任何调用的外部工具都将会存放在plugin目录下可按需使用,力图使用最原生的命令行来完成工作。

  • acgbfull/IBM_Appscan_Batch_Scan_Script

    IBM AppScan批量扫描脚本

HTML

BlitzBasic

  • 1N3/IntruderPayloads

    A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.

Showing a sample of 3.5k resources. View the full list on GitHub →