
jaeles
The Swiss Army knife for automated Web Application Testing

The Swiss Army knife for automated Web Application Testing

Automatic SSTI detection tool with interactive interface


Next generation web scanner

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Modular software verification toolchain that translates LLVM IR into Boogie intermediate verification language for bounded and experimental unbounded…


WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Scans code diffs with context to build an impact graph and uses LLMs to find vulnerabilities, supporting multi-repo scans and CI gating with SARIF…

Agent-native CLI wrapping IDA Pro IDALib for stateless, JSON-output binary analysis: disassembly, Hex-Rays decompilation, CFG, xrefs, strings, and…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

A security scanner for your LLM agentic workflows

XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…