
yakit
All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…


POC-T强化版本 POC-S , 用于红蓝对抗中快速验证Web应用漏洞, 对功能进行强化以及脚本进行分类添加,自带dnslog等, 平台补充来自vulhub靶机及其他开源项目的高可用POC


Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.

A Python3 module to assist in fuzzing web applications

ZIP File Raider - Burp Extension for ZIP File Payload Testing

A collaborative web exploitation framework.

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

Wi-Fi Framework for creating proof-of-concepts, automated experiments, test suites, fuzzers, and more.

A Penetration Testing Framework, Information gathering tool & Website Vulnerability Scanner

Extendable pentesting framework for automotive UDS interfaces, enabling reproducible scans, diagnostic trouble code reading, and post-processing via…

Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

Tool to help exploit XXE vulnerabilities

XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

Reproduces aiohttp CWE-444 request smuggling via rejected WebSocket upgrades, with Python/Rust payloads and Docker lab demonstrating proxy…

VIPROY - VoIP Pen-Test Kit for Metasploit Framework