
r2s
A web-based vulnerability scanner for CVE-2025-55182, a critical Remote Code Execution (RCE) vulnerability in React Server Components.

A web-based vulnerability scanner for CVE-2025-55182, a critical Remote Code Execution (RCE) vulnerability in React Server Components.

Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324

Clone of suds 0.4 + suds-0.4-CVE-2013-2217.patch

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL…

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

Lightweight Python utility for automated security auditing of GraphQL APIs. Detects misconfigurations, information leaks, and denial-of-service…

Security scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.

Rust-powered HTTP Request Smuggling Scanner.

Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…

Burp Extension for collaboration in Faraday

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Automated HTTP Request Repeating With Burp Suite

A fast WordPress plugin enumeration tool

The DevSecOps toolset for REST APIs

⚡️ Multiple target ZAP Scanning