
HuntCyberArk
CyberArk Security Audit

CyberArk Security Audit

A lightweight Python-based security assessment tool for detecting dangerous Cross-Origin Resource Sharing (CORS) misconfigurations - CVE-2025-34291.

Collaborative application security testing between humans and agents via CLI and MCP

Vulnerable REST API with OWASP top 10 vulnerabilities for security testing

An intentionally designed broken web application based on REST API.

Automated authorization testing tool that detects unauthorized access by scanning URLs with role-based credentials using YAML templates.

Http request smuggling vulnerability scanner

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

MAPS cloud scanner and response parser for Microsoft Defender research.

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.



This script exploits the CVE-2024-40094 vulnerability in graphql-java


g-FFL Cockpit <= 1.7.1 - Improper Authorization to Unauthenticated Product Deletion