
D4N155
OSINT-driven wordlist generator that crawls target web content to create intelligent, dynamic wordlists for penetration testing and security auditing.

OSINT-driven wordlist generator that crawls target web content to create intelligent, dynamic wordlists for penetration testing and security auditing.

50+ detectors across 10 categories, with continuous monitoring built in: schedule recurring scans, get alerted only on new findings, track your…

Web technology identification scanner with 1800+ plugins for detecting CMS, servers, JS libraries, and embedded devices. Supports stealthy to…

PHP-based web application vulnerability scanner with built-in crawler, testing for XSS, SQL injection, and other OWASP Top 10 issues. Generates…

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

WordPress security scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

The AI toolkit for building reliable browser automations

A fast WordPress plugin enumeration tool

Collaborative application security testing between humans and agents via CLI and MCP

Local session observer that captures real browser cookies, tokens, and network traffic for use in automation tools. Bypasses bot detection by…

Automated agent that reverse-engineers website internal APIs by capturing AJAX requests, detecting pagination and dynamic parameters, and generating…

A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

Asynchronous WordPress security scanner with WAF bypass via headless browser. Enumerates plugins, themes, users, and multisite installations with…

Scans public code repositories and code snippet platforms to extract and validate AI service API keys with real-time dashboard and multi-format…

Keyless active-probe security auditor for Directus CMS. Proves public-role data exposure, user enumeration, unauthenticated version/schema leaks,…

Advanced recon engine that finds real secrets, validates them live, and builds exploit paths from client-side intelligence.

Web vulnerability scanner written in Python3