
log4j-fuzzer
Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

Make URL path combinations using a wordlist

Golang tool which helps dropping the irrelevant entries from your ffuf result file.

Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation

Curated systematic literature review of 756+ papers on LLM applications in cybersecurity, covering threat intelligence, vulnerability detection,…

Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks


Popcorn HTB write-up covering advanced directory fuzzing, file upload bypass via magic numbers/extension spoofing using Burp Suite, and privilege…

a systems programming language prioritizing verifiable correctness, determinism, and performance

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

Different utility scripts for pentesting and hacking.

🦚 A web-app pentesting suite written in rust .

A rapid HTTP downgrade smuggling scanner written in Go.

Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting