
jaeles
The Swiss Army knife for automated Web Application Testing

The Swiss Army knife for automated Web Application Testing

Automatic SSTI detection tool with interactive interface


Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…


Next generation web scanner

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Scans code diffs with context to build an impact graph and uses LLMs to find vulnerabilities, supporting multi-repo scans and CI gating with SARIF…

A security scanner for your LLM agentic workflows

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Modular software verification toolchain that translates LLVM IR into Boogie intermediate verification language for bounded and experimental unbounded…

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

Coverage-guided fuzzer that uses taint tracking and scalar optimization to solve path constraints without symbolic execution, improving branch…