How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and
Gcat A stealthy Python based backdoor that uses Gmail as a command and control server
Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It probes user-supplied input vectors with heuristic test payloads, analyzes response differences to identify injection points, and then automates the execution of arbitrary operating system commands on the target server. The tool distinguishes itself through a multi-layer filter bypass engine that evaluates input constraints independently per filter type and composes tailored evasion strategies into a single payload. A modular payload tamper pipeline transforms raw injection str
Find exploits in local and online databases instantly
The main features of 4w4k3/umbrella are: Exploitation and Payloads.
Projects with overlapping indexed features include: beefproject/beef — BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It… byt3bl33d3r/gcat — Gcat A stealthy Python based backdoor that uses Gmail as a command and control server. commixproject/commix — Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It… d35m0nd142/lfisuite — Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner. empireproject/empire — Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It… 1n3/findsploit — Find exploits in local and online databases instantly.