awesome-repositories.com
博客
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目关于排名机制媒体报道MCP 服务器
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
LasCC avatar

LasCC/HackTools

0
View on GitHub↗
6,742 星标·756 分支·TypeScript·5 次浏览hacktools.sh↗

HackTools

HackTools is a browser extension pentesting toolkit designed for offensive security professionals. It serves as a centralized collection of tools for generating payloads, managing penetration testing workflows, and accessing security reference materials within a web-based interface.

The project provides specialized utilities for generating attack strings for XSS, SQL injection, and reverse shells to identify and exploit web vulnerabilities. It includes a data encoding and hashing utility to convert information between various formats for the purpose of bypassing security filters or verifying data integrity.

The toolkit also incorporates a vulnerability search tool that queries CVE databases and aggregates security advisories via RSS feeds. Additionally, it features a web-based security cheat sheet containing curated Linux commands for system auditing and remote data exfiltration.

Features

  • Pentesting Toolkits - Serves as a centralized browser-based toolkit for generating payloads and managing pentesting workflows.
  • Security Tool Collections - Aggregates a suite of specialized security tools and reference materials into a single browser-based interface.
  • Attack Payloads and Wordlists - Generates a wide range of attack payloads for XSS, SQL injection, and file inclusion.
  • Web Injection Template Engines - Generates attack strings for XSS and SQL injection by injecting target parameters into predefined patterns.
  • CVE Vulnerability Search Engines - Implements a utility for querying CVE databases and aggregating security advisories via RSS feeds.
  • Reverse Shell Payloads - Provides language-specific execution strings designed to establish remote command-line access on target systems.
  • Security Payload Generators - Automates the creation of XSS, SQL injection, and reverse shell payloads.
  • Web Application Penetration Testing - Provides tools for generating payloads to identify and validate vulnerabilities in web applications.
  • Browser-Based Interfaces - Integrates various security utilities into a unified dashboard rendered within a web browser.
  • Security Cheat Sheets - Includes a centralized reference of common Linux commands and security payloads.
  • Data Exfiltration - Facilitates the extraction of sensitive files from remote machines using various transfer methods.
  • RSS Feed Aggregators - Aggregates security advisories from external RSS feeds into a centralized vulnerability list.
  • Offensive Command Repositories - Provides a library of pre-defined Linux system commands for auditing and remote execution.
  • Remote System Exploitation - Includes tools and methods for running remote commands to exfiltrate sensitive data.
  • Security Cheat Sheets - Includes a web-based collection of curated Linux commands and security payloads for system auditing.
  • Offensive Security Cheatsheets - Provides curated security cheat sheets and reference materials for offensive security tasks.
  • Remote Command Execution - Provides a curated list of Linux commands for remote system auditing and administrative tasks.

Star 历史

lascc/hacktools 的 Star 历史图表lascc/hacktools 的 Star 历史图表

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Start searching with AI

HackTools 的开源替代方案

相似的开源项目,按与 HackTools 的功能重合度排序。
  • jaykali/maskphishjaykali 的头像

    jaykali/maskphish

    3,020在 GitHub 上查看↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    在 GitHub 上查看↗3,020
  • fuzzdb-project/fuzzdbfuzzdb-project 的头像

    fuzzdb-project/fuzzdb

    8,819在 GitHub 上查看↗

    fuzzdb is a collection of datasets designed for web application penetration testing and dynamic fuzzing. It provides a fuzzing payload dictionary, a resource discovery wordlist, and a fault injection dataset containing corrupted Unicode, null bytes, and escape codes to trigger application crashes and logic errors. The project includes a security filter bypass list featuring polyglots and encoded strings to evade web application firewalls and input validation filters. It also provides a comprehensive web application penetration testing dataset specifically for identifying flaws such as cross-s

    PHP
    在 GitHub 上查看↗8,819
  • voorivex/pentest-guideVoorivex 的头像

    Voorivex/pentest-guide

    2,761在 GitHub 上查看↗

    This project is a comprehensive web application penetration testing guide and vulnerability research framework. It provides a structured methodology for identifying and exploiting security flaws through a phased approach involving reconnaissance, analysis, and exploitation. The resource is distinguished by its use of a curated methodology framework that links theoretical vulnerability patterns to real-world bug bounty reports and historical exploit examples. It includes a payload-based testing library and a reference system that maps specific vulnerability categories to recommended third-part

    bugbountybypassowasp-tests
    在 GitHub 上查看↗2,761
  • edgesecurityteam/eholeEdgeSecurityTeam 的头像

    EdgeSecurityTeam/EHole

    3,436在 GitHub 上查看↗

    EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability research. It functions as an asset discovery and fingerprinting tool designed to identify software versions and high-value assets across IP ranges and URLs using custom fingerprints. The project provides a vulnerability research toolkit for decrypting software credentials and retrieving factory default passwords for security devices and web applications. It also includes a security payload generator for encoding and escaping command strings to bypass shell tokenization and ex

    Go
    在 GitHub 上查看↗3,436
查看 HackTools 的所有 30 个替代方案→

常见问题解答

lascc/hacktools 是做什么的?

HackTools is a browser extension pentesting toolkit designed for offensive security professionals. It serves as a centralized collection of tools for generating payloads, managing penetration testing workflows, and accessing security reference materials within a web-based interface.

lascc/hacktools 的主要功能有哪些?

lascc/hacktools 的主要功能包括:Pentesting Toolkits, Security Tool Collections, Attack Payloads and Wordlists, Web Injection Template Engines, CVE Vulnerability Search Engines, Reverse Shell Payloads, Security Payload Generators, Web Application Penetration Testing。

lascc/hacktools 有哪些开源替代品?

lascc/hacktools 的开源替代品包括: jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… fuzzdb-project/fuzzdb — fuzzdb is a collection of datasets designed for web application penetration testing and dynamic fuzzing. It provides a… voorivex/pentest-guide — This project is a comprehensive web application penetration testing guide and vulnerability research framework. It… edgesecurityteam/ehole — EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability… t3l3machus/villain — Villain is a command and control framework and distributed orchestrator designed for managing reverse TCP and… swisskyrepo/payloadsallthethings — This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers.…