
apidetector
Multi-threaded scanner for detecting exposed Swagger/OpenAPI endpoints across web domains and subdomains, with automatic XSS detection, PoC…

Multi-threaded scanner for detecting exposed Swagger/OpenAPI endpoints across web domains and subdomains, with automatic XSS detection, PoC…

Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…

Validates Google Maps API keys against 21 endpoints, revealing exposed services with PoC URLs, proxy support, and quiet mode for focused auditing.

MAPS cloud scanner and response parser for Microsoft Defender research.

Open-source DAST proxy with agentic AI for intercepting, modifying, and replaying HTTP/HTTPS traffic. Automates web application security testing via…

HTTP Proxy Analysis for reverse engineering protocol communication

An API hooking framework for intercepting and monitoring Windows applications

Local session observer that captures real browser cookies, tokens, and network traffic for use in automation tools. Bypasses bot detection by…

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

Extracts JMX endpoints from RMI registries and tests for unauthenticated MLet exploitation in Java environments.

Hybrid ML and heuristic-based URL phishing detector with real-time analysis, explainable confidence scores, and REST API for programmatic security…