Nathan Cobbald's Projects
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
Differential testing and fuzzing of HTTP servers and proxies
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
Web app I am currently developing
OSINT open-source tools catalog
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
A collection of all the data i could extract from 1 billion leaked credentials from internet.
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Tiny PHP Web shell for executing unix commands from web page
For importing, searching, and managing public password breach data
Portfolio website