Submit your favorite resources for free.
Browse the newest offensive security tools, platforms, and services recently added to HackDB.
Finds more links from Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal & Intelligence X, and downloads archived responses.
Collect Nuclei YAML templates from public repositories for streamlined bug bounty hunting and security research.
A MitM tool for relaying attacks, featuring DHCPv6 DNS takeover and local name resolution spoofing (mDNS, LLMNR, NetBIOS-NS).
Bear C2 is a compilation of C2 scripts, payloads, and stagers used in simulated attacks by Russian APT groups.
A covert technique encoding executables into pixel data within images/videos, executed in memory, highlighting unconventional data delivery.
BloodHound reporting tool for Blue and Purple Teams to identify Active Directory security vulnerabilities.
A tool to enumerate privileged Scheduled Tasks on Remote Windows Systems, aiding in identifying potential attack paths.
A network communication blocker designed to neutralize EDR/AV software using Windows Filtering Platform (WFP).
Wonka is a Windows tool for extracting Kerberos tickets from the Local Security Authority (LSA) cache for security research and penetration testing.
AI-powered security agents that detect logic flaws, authorization gaps, and IDOR, preventing code risks in modern applications.
EvilWAF is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).
Schemathesis is a tool that automatically generates API tests from OpenAPI and GraphQL schemas to find bugs.