1. Empire – https://github.com/BC-SECURITY/Empire
Empire is an open-source PowerShell-based tool that provides a range of post-exploitation modules. It allows attackers to maintain control over a compromised system and includes features such as keylogging, file extraction, and more.
2. Veil-Framework – https://github.com/Veil-Framework/Veil
Veil-Framework is an open-source framework for creating and executing various types of payloads. It includes modules for creating Metasploit-compatible payloads, PowerShell payloads, and more. It also includes various anti-virus evasion techniques.
3. CrackMapExec – https://github.com/byt3bl33d3r/CrackMapExec
CrackMapExec is an open-source penetration testing tool that allows attackers to perform various post-exploitation activities such as credential dumping, lateral movement, and more. It supports various protocols such as SMB, LDAP, and more.
4. Ghidra – https://github.com/NationalSecurityAgency/ghidra
Ghidra is an open-source reverse engineering tool that allows security professionals to analyze and understand software. It includes various features for analyzing binaries, including disassembly, decompilation, and more.
5. RouterSploit – https://github.com/threat9/routersploit
RouterSploit is an open-source penetration testing tool for routers that includes various modules for exploiting vulnerabilities, performing reconnaissance, and more.
6, Ghost Framework – https://github.com/entynetproject/ghost
Ghost Framework is an open-source remote access and post-exploitation framework that allows attackers to control a compromised system and perform various post-exploitation activities.
7. Cracklord – https://github.com/bediger4000/cracklord
Cracklord is an open-source distributed password cracking system that allows attackers to distribute password cracking tasks across multiple systems.
8. OWASP Zed Attack Proxy (ZAP) – https://github.com/zaproxy/zaproxy
OWASP Zed Attack Proxy (ZAP) is an open-source penetration testing tool that includes various features for performing web application security testing, including passive and active scanning.
9. OpenVAS – https://github.com/greenbone/openvas
OpenVAS is an open-source vulnerability scanner that includes a range of network security testing tools, including vulnerability scanning and reporting.
10. Radare2 – https://github.com/radareorg/radare2
Radare2 is an open-source reverse engineering framework that includes various features for analyzing and understanding binaries, including disassembly and debugging.
Found this article interesting? Follow us on Twitter and Linkedin to read more exclusive content we post.