
PHP_8.1.x_Exploit
Automated detection & exploitation of critical PHP vulnerabilities (CVE-2024-4577 bypass, CVE-2025-14177, CVE-2025-14180, CVE-2025-14178)

Automated detection & exploitation of critical PHP vulnerabilities (CVE-2024-4577 bypass, CVE-2025-14177, CVE-2025-14180, CVE-2025-14178)

Proof-of-concept exploit demonstrating SSRF vulnerabilities in Firecrawl web scraper (CVE-2024-56800, CVE-2025-57818) with self-hosted setup and…

Automated Python scanner to detect hardcoded secrets (Private Keys, API Tokens) in client-side JavaScript files.

Exploit tool for CVE-2024-39722, a model existence disclosure vulnerability in Ollama. Performs version checks, crawls official model library, and…

automated web assets enumeration & scanning [DEPRECATED]

Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple…

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Community curated list of templates for the nuclei engine to find security vulnerabilities.

All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…



The recursive internet scanner for hackers. 🧡

Next generation web scanner

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers


OSINT Tools for the Dark Web

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more