
log4j-fuzzer
Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

A Log4j vulnerability scanner is used to identify the CVE-2021-44228 and CVE_2021_45046

Automated HTTP Request Repeating With Burp Suite

exploit CVE-2024-40725 (Apache httpd) with

Automatic SSTI detection tool with interactive interface

A fully automated, accurate, and extensive scanner for finding text4shell RCE CVE-2022-42889

Nuclei template to detect Apache servers vulnerable to CVE-2024-38473

Mass exploiter for CVE-2020-6308 with multi-worker support, enabling automated exploitation of vulnerable SAP NetWeaver systems.

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows…

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…

Fuzz testing framework for network protocols.

Smart ssrf scanner using different methods like parameter brute forcing in post and get...

Software for fuzzing, used on web application pentestings.