awesome-repositories.com
Blog
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
trustedsec avatar

trustedsec/social-engineer-toolkit

0
View on GitHub↗
14,984 stele·3,369 fork-uri·Python·8 vizualizări

Social Engineer Toolkit

The Social-Engineer Toolkit is a social engineering framework and penetration testing suite designed to simulate human-centric security attacks. It serves as a phishing simulation tool and credential harvesting utility to evaluate personnel awareness and organizational resilience.

The toolkit provides specialized tooling for phishing campaign testing and credential theft simulation. It enables the creation of deceptive emails and landing pages to identify vulnerabilities in how users handle sensitive account information.

The system includes capabilities for security awareness training and broader penetration testing, utilizing site cloning, DNS spoofing, and payload generation to execute various attack vectors.

Features

  • Phishing Campaign Orchestrators - Orchestrates phishing campaigns by deploying fake emails and landing pages to track user interactions.
  • Credential Harvesting Simulations - Simulates credential theft by mimicking login portals to test how easily users reveal sensitive account information.
  • Phishing Capturers - Mimics legitimate login pages to capture usernames and passwords during authorized security assessments.
  • Penetration Testing Suites - Offers a specialized suite of tools for security professionals to execute human-centric attack vectors.
  • Phishing Attack Tools - Ships a system for creating and deploying deceptive emails and landing pages to evaluate user susceptibility.
  • Social Engineering Simulations - Simulates common deception techniques to evaluate organizational resilience against social engineering.
  • Security Training - Generates realistic attack scenarios used as educational resources for security awareness training.
  • Security Listener Profiles - Spawns a local web server to capture credentials and session data in real time during security testing.
  • DNS Spoofing Tools - Includes tools for intercepting and modifying DNS query responses to redirect target traffic.
  • Evasive Payload Generators - Generates malicious documents and websites by injecting payloads into predefined templates.
  • Reverse Shells - Establishes socket-based reverse shells for remote command execution on target machines.
  • Website Cloning Tools - Provides automated site cloning to create convincing replicas of web pages for credential harvesting.
  • Exploitation and Payloads - Framework for social engineering and phishing attacks.
  • Offensive Security - Advanced framework for simulating social engineering and phishing attacks.
  • Penetration Testing - Automates social engineering attack simulations.
  • Security Tools - Framework for social engineering and penetration testing
  • Social Engineering Tools - Comprehensive framework for simulating various social engineering attack vectors.

Istoric stele

Graficul istoricului de stele pentru trustedsec/social-engineer-toolkitGraficul istoricului de stele pentru trustedsec/social-engineer-toolkit

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Întrebări frecvente

Ce face trustedsec/social-engineer-toolkit?

The Social-Engineer Toolkit is a social engineering framework and penetration testing suite designed to simulate human-centric security attacks. It serves as a phishing simulation tool and credential harvesting utility to evaluate personnel awareness and organizational resilience.

Care sunt principalele funcționalități ale trustedsec/social-engineer-toolkit?

Principalele funcționalități ale trustedsec/social-engineer-toolkit sunt: Phishing Campaign Orchestrators, Credential Harvesting Simulations, Phishing Capturers, Penetration Testing Suites, Phishing Attack Tools, Social Engineering Simulations, Security Training, Security Listener Profiles.

Care sunt câteva alternative open-source pentru trustedsec/social-engineer-toolkit?

Alternativele open-source pentru trustedsec/social-engineer-toolkit includ: jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… kgretzky/evilginx2 — Evilginx2 is a man-in-the-middle phishing framework designed to proxy authentication traffic between a user and a… screetsec/thefatrat — TheFatRat is a security exploitation framework designed to automate the creation, obfuscation, and deployment of… beefproject/beef — BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It… gophish/gophish — Gophish is an open-source phishing toolkit and simulation framework designed to test organizational security awareness… ignitetch/advphishing — AdvPhishing is a tool for social engineering simulations and credential harvesting testing. It generates deceptive web…

Alternative open-source pentru Social Engineer Toolkit

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu Social Engineer Toolkit.
  • jaykali/maskphishAvatar jaykali

    jaykali/maskphish

    3,020Vezi pe GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    Vezi pe GitHub↗3,020
  • kgretzky/evilginx2Avatar kgretzky

    kgretzky/evilginx2

    14,627Vezi pe GitHub↗

    Evilginx2 is a man-in-the-middle phishing framework designed to proxy authentication traffic between a user and a target web service. By acting as a reverse proxy, the tool intercepts and relays web requests to capture credentials and session tokens in real time, enabling the bypass of multi-factor authentication mechanisms through session cookie hijacking. The platform distinguishes itself by integrating infrastructure orchestration with modular template-driven content injection. It automates the deployment of proxy servers, manages the lifecycle of encryption certificates, and applies conte

    Go
    Vezi pe GitHub↗14,627
screetsec/thefatratAvatar screetsec

screetsec/TheFatRat

11,038Vezi pe GitHub↗

TheFatRat is a security exploitation framework designed to automate the creation, obfuscation, and deployment of payloads for penetration testing. It functions as a comprehensive toolkit that streamlines the exploitation lifecycle, enabling users to generate malicious executables, manage network listeners, and execute post-exploitation tasks through a unified command-line interface. The framework distinguishes itself by integrating various third-party exploitation utilities into a single, orchestrated workflow. It provides specialized capabilities for embedding code into legitimate binaries a

Caccessibilityantivirusautorun
Vezi pe GitHub↗11,038
  • beefproject/beefAvatar beefproject

    beefproject/beef

    10,728Vezi pe GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    Vezi pe GitHub↗10,728
  • Vezi toate cele 30 alternative pentru Social Engineer Toolkit→