


Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

A security scanner for your LLM agentic workflows

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.


A fast DOM based XSS vulnerability scanner with simplicity.

Next generation web scanner

The Swiss Army knife for automated Web Application Testing

Source-level debugger for Go with CLI, API, and headless modes; supports breakpoints, variable inspection, and execution tracing for efficient…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Record and replay framework for deterministic debugging of multi-threaded applications, enabling reverse execution, hardware watchpoints, and…
