Skip to main content

A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!

1.4k
GitHub Stars
3.5k
Curated Resources
37
Categories
4 hours ago
Last Refreshed
ASLASP.NETActionScriptAdaArduinoAssemblyAutoHotkeyAutoItBatchfileBitBakeBladeBlitzBasicBooCC#C++CMakeCSSClassic ASPClojureCodeQLColdFusionDartDockerfileEmacs LispErlangF#FluentFreeMarkerGoGroovyHCLHTMLHackHaskellInno SetupJava

Use this list with your AI agent

Add the Context Awesome MCP server to Claude, Cursor, or any MCP client, then ask:

"Show me c# resources from awesome-hacking-lists"

Installation instructions →

What's inside

C#

Go

  • 05sec/Cardinal

    CTF🚩 AWD (Attack with Defense) 线下赛平台 / AWD platform - 欢迎 Star~ ✨

  • 0voice/Introduction-to-Golang

    【未来服务器端编程语言】最全空降golang资料补给包(满血战斗),包含文章,书籍,作者论文,理论分析,开源框架,云原生,大佬视频,大厂实战分享ppt

  • 0x4D31/honeybits

    A PoC tool designed to enhance the effectiveness of your traps by spreading breadcrumbs & honeytokens across your systems to lure the attacker toward your honeypots

  • 0xDkd/auxpi

    🍭 集合多家 API 的新一代图床

  • 0xERR0R/blocky

    Fast and lightweight DNS proxy as ad-blocker for local network with many features

  • 0xInfection/LogMePwn

    A fully automated, reliable, super-fast, mass scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.

C

Java

C++

  • 0x09AL/DNS-Persist

    DNS-Persist is a post-exploitation agent which uses DNS for command and control.

  • 0x09AL/IIS-Raid

    A native backdoor module for Microsoft IIS (Internet Information Services)

  • 0x09AL/RdpThief

    Extracting Clear Text Passwords from mstsc.exe using API Hooking.

  • 0x727/CloneX_0x727

    进行克隆用户、添加用户等账户防护安全检测的轻巧工具

  • 0x727/ShuiYing_0x727

    检测域环境内,域机器的本地管理组成员是否存在弱口令和通用口令,对域用户的权限分配以及域内委派查询

  • 0x727/SqlKnife_0x727

    适合在命令行中使用的轻巧的SQL Server数据库安全检测工具

Batchfile

  • 0xbinibini/emergency_response_batch

    应急响应,应急响应脚本,应急响应批处理;将Windows查看日志用户端口等命令集成在批处理脚本中。让熟练的应急人员能省去多次重复的敲击和记忆,并通过读取配置文件来调用Windows自带的命令结束进程服务等,本批处理尽量不调用任何外部的工具。任何调用的外部工具都将会存放在plugin目录下可按需使用,力图使用最原生的命令行来完成工作。

  • acgbfull/IBM_Appscan_Batch_Scan_Script

    IBM AppScan批量扫描脚本

HTML

BlitzBasic

  • 1N3/IntruderPayloads

    A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.

Showing a sample of 3.5k resources. View the full list on GitHub →