
katana
A next-generation crawling and spidering framework.

A next-generation crawling and spidering framework.

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Record and replay framework for deterministic debugging of multi-threaded applications, enabling reverse execution, hardware watchpoints, and…

A fast, simple, recursive content discovery tool written in Rust.

Runtime Windows API interception library for hooking, monitoring, and instrumenting function calls. Supports binary rewriting and DLL injection,…

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

Fil-C: completely compatible memory safety for C and C++

A wrapper around grep, to help you grep for things

Automatic SSTI detection tool with interactive interface

High-speed API and web content discovery tool that bruteforces routes using compiled Swagger datasets, supporting depth scanning, custom wordlists,…

A collection of my Frida instrumentation scripts to reverse engineer mobile apps and more.

Cargo subcommand for coverage-guided Rust fuzzing with libFuzzer: create and run fuzz targets, minimize failures and corpora, and report coverage.

Inject code into running Python processes

The repo contains a series of challenges for learning Frida for Android Exploitation.