


Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Automatic SQL injection and database takeover tool

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Automatic SSTI detection tool with interactive interface


Web vulnerability scanner written in Python3

Differential testing framework for HTTP implementations

GraphQL server engine fingerprinting tool that sends benign and malformed queries to identify backend technology and assess security defenses via the…

LLM powered fuzzing via OSS-Fuzz.

A collection of useful resources for hacking WordPress and it's plugins and themes

Sample extensions, scripts, and API uses for WinDbg.

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

A script to detect stack-strings by using emulation (leveraging Unicorn)

Python exploit script for CVE-2020-28458, a prototype pollution vulnerability in DataTables. It sends crafted payloads to target URLs, supports proxy…

A security scanner for your LLM agentic workflows

Lightweight Python utility for automated security auditing of GraphQL APIs. Detects misconfigurations, information leaks, and denial-of-service…