Submit your favorite resources for free.
Browse all offensive security tools, platforms, and services in one place.
A tool to dump the LSASS process on modern Windows 11 using the old WerfaultSecure.exe program, outputting in Windows MINIDUMP format.
Wappalyzer is a web technology profiler that reveals the software stack behind websites for reconnaissance and competitive analysis.
The Wayback Machine archives billions of web pages, allowing users to view historical snapshots and track changes over time.
Web-Check is a powerful open-source OSINT tool for analyzing website configurations, security headers, DNS, and more.
Webhook.site allows red teams to capture and inspect HTTP requests in real-time. It is essential for testing blind OOB vulnerabilities and exfiltration.
The WiFi Pineapple Mark VII is the industry-standard WiFi pentest platform, refined and enterprise-ready for red teams.
Virtualized WiFi pentesting lab using Docker and mac80211_hwsim for practicing WiFi attacks without physical cards.
WiGLE is a wireless network mapping platform that aggregates data on Wi-Fi and cellular networks from user submissions and wardriving efforts.
WifiPumpkin3 Pro: A professional framework for Wi-Fi security testing, rogue access point deployment, and adversarial emulation for red teams.
Wifiphisher is a rogue access point framework for Wi-Fi security testing and red team engagements, enabling MITM and phishing attacks.
Wifite2 is a Python script for auditing wireless networks, automating various attacks to retrieve network passwords.
Wonka is a Windows tool for extracting Kerberos tickets from the Local Security Authority (LSA) cache for security research and penetration testing.