awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
LasCC avatar

LasCC/HackTools

0
View on GitHub↗
6,742 stars·756 forks·TypeScript·19 viewshacktools.sh↗

HackTools

HackTools is a browser extension pentesting toolkit designed for offensive security professionals. It serves as a centralized collection of tools for generating payloads, managing penetration testing workflows, and accessing security reference materials within a web-based interface.

The project provides specialized utilities for generating attack strings for XSS, SQL injection, and reverse shells to identify and exploit web vulnerabilities. It includes a data encoding and hashing utility to convert information between various formats for the purpose of bypassing security filters or verifying data integrity.

The toolkit also incorporates a vulnerability search tool that queries CVE databases and aggregates security advisories via RSS feeds. Additionally, it features a web-based security cheat sheet containing curated Linux commands for system auditing and remote data exfiltration.

Features

  • Pentesting Toolkits - Serves as a centralized browser-based toolkit for generating payloads and managing pentesting workflows.
  • Security Tool Collections - Aggregates a suite of specialized security tools and reference materials into a single browser-based interface.
  • Attack Payloads and Wordlists - Generates a wide range of attack payloads for XSS, SQL injection, and file inclusion.
  • Web Injection Template Engines - Generates attack strings for XSS and SQL injection by injecting target parameters into predefined patterns.
  • CVE Vulnerability Search Engines - Implements a utility for querying CVE databases and aggregating security advisories via RSS feeds.
  • Reverse Shell Payloads - Provides language-specific execution strings designed to establish remote command-line access on target systems.
  • Security Payload Generators - Automates the creation of XSS, SQL injection, and reverse shell payloads.
  • Web Application Penetration Testing - Provides tools for generating payloads to identify and validate vulnerabilities in web applications.
  • Browser-Based Interfaces - Integrates various security utilities into a unified dashboard rendered within a web browser.
  • Security Cheat Sheets - Includes a centralized reference of common Linux commands and security payloads.
  • Data Exfiltration - Facilitates the extraction of sensitive files from remote machines using various transfer methods.
  • RSS Feed Aggregators - Aggregates security advisories from external RSS feeds into a centralized vulnerability list.
  • Offensive Command Repositories - Provides a library of pre-defined Linux system commands for auditing and remote execution.
  • Remote System Exploitation - Includes tools and methods for running remote commands to exfiltrate sensitive data.
  • Security Cheat Sheets - Includes a web-based collection of curated Linux commands and security payloads for system auditing.
  • Offensive Security Cheatsheets - Provides curated security cheat sheets and reference materials for offensive security tasks.
  • Remote Command Execution - Provides a curated list of Linux commands for remote system auditing and administrative tasks.

Star history

Star history chart for lascc/hacktoolsStar history chart for lascc/hacktools

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with HackTools

These projects share indexed features with HackTools. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • jaykali/maskphishjaykali avatar

    jaykali/maskphish

    3,020View on GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    View on GitHub↗3,020
  • fuzzdb-project/fuzzdbfuzzdb-project avatar

    fuzzdb-project/fuzzdb

    8,819View on GitHub↗

    fuzzdb is a collection of datasets designed for web application penetration testing and dynamic fuzzing. It provides a fuzzing payload dictionary, a resource discovery wordlist, and a fault injection dataset containing corrupted Unicode, null bytes, and escape codes to trigger application crashes and logic errors. The project includes a security filter bypass list featuring polyglots and encoded strings to evade web application firewalls and input validation filters. It also provides a comprehensive web application penetration testing dataset specifically for identifying flaws such as cross-s

    PHP
    View on GitHub↗8,819
  • voorivex/pentest-guideVoorivex avatar

    Voorivex/pentest-guide

    2,761View on GitHub↗

    This project is a comprehensive web application penetration testing guide and vulnerability research framework. It provides a structured methodology for identifying and exploiting security flaws through a phased approach involving reconnaissance, analysis, and exploitation. The resource is distinguished by its use of a curated methodology framework that links theoretical vulnerability patterns to real-world bug bounty reports and historical exploit examples. It includes a payload-based testing library and a reference system that maps specific vulnerability categories to recommended third-part

    bugbountybypassowasp-tests
    View on GitHub↗2,761
  • edgesecurityteam/eholeEdgeSecurityTeam avatar

    EdgeSecurityTeam/EHole

    3,436View on GitHub↗

    EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability research. It functions as an asset discovery and fingerprinting tool designed to identify software versions and high-value assets across IP ranges and URLs using custom fingerprints. The project provides a vulnerability research toolkit for decrypting software credentials and retrieving factory default passwords for security devices and web applications. It also includes a security payload generator for encoding and escaping command strings to bypass shell tokenization and ex

    Go
    View on GitHub↗3,436
Compare all 30 related projects→

Frequently asked questions

What does lascc/hacktools do?

HackTools is a browser extension pentesting toolkit designed for offensive security professionals. It serves as a centralized collection of tools for generating payloads, managing penetration testing workflows, and accessing security reference materials within a web-based interface.

What are the main features of lascc/hacktools?

The main features of lascc/hacktools are: Pentesting Toolkits, Security Tool Collections, Attack Payloads and Wordlists, Web Injection Template Engines, CVE Vulnerability Search Engines, Reverse Shell Payloads, Security Payload Generators, Web Application Penetration Testing.

Which projects share features with lascc/hacktools?

Projects with overlapping indexed features include: jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… fuzzdb-project/fuzzdb — fuzzdb is a collection of datasets designed for web application penetration testing and dynamic fuzzing. It provides a… voorivex/pentest-guide — This project is a comprehensive web application penetration testing guide and vulnerability research framework. It… edgesecurityteam/ehole — EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability… t3l3machus/villain — Villain is a command and control framework and distributed orchestrator designed for managing reverse TCP and… swisskyrepo/payloadsallthethings — This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers.…