
ftw
YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…


Extend your recon with cloud power

Open-source pentesting management and automation platform by Salesforce Product Security

Open Source Vulnerability Management Platform

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from…

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

Faraday's Command Line Interface

Security tools report parsers for Faradaysec.com

A high-performance automation tool designed to bridge the gap between technical web reconnaissance and executive reporting. Developed by **Adi…


Finds API routes carrying weaker authorization than their siblings. Recovered CVE-2026-45316 from source. Includes the negative results.

CDT Ansible playbook for deploying CVE-2017-7494 aka "SambaCry" to an Ubuntu box

CosmicSting (CVE-2024-34102) POC / Patch Validator

Stage two containers

Server scanning component of purpleteam