
snapchange
Lightweight fuzzing of a memory snapshot using KVM

Lightweight fuzzing of a memory snapshot using KVM

Lightweight Python utility for automated security auditing of GraphQL APIs. Detects misconfigurations, information leaks, and denial-of-service…

Documentation and reverse engineering of reCAPTCHA

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight…

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

GUI Burp Plugin to ease discovering of security holes in web applications

A tool for effective testing the binding layer of scripting languages

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

Distributed coverage-guided fuzzing engine compatible with libFuzzer targets; scales to thousands of concurrent jobs, uses sanitizers and corpus…

Automatic SQL injection and database takeover tool

Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

A wrapper around grep, to help you grep for things

Differential testing framework for HTTP implementations

GraphQL server engine fingerprinting tool that sends benign and malformed queries to identify backend technology and assess security defenses via the…

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

x64 Dynamic Reverse Engineering Toolkit

Code Coverage Exploration Plugin for Ghidra