
polytracker
An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

Pishi is a code coverage tool like kcov for macOS.

A tool for effective testing the binding layer of scripting languages

CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…

A tool to generate and maintain wordlists for Web fuzzing.

Generate mutations over a wordlist

FGscanner is an advanced, opensource URL scanner.

A GUI-based tool to perform security testing against the HDMI CEC (Consumer Electronics Control) and HEC (HDMI Ethernet Channel) protocols

Curated list of awesome projects and resources related to Rust and computer security

Go tool and Nuclei template for testing James Kettle's (CVE-2025-32094) HTTP/1.1 must die: the desync endgame

Tool that reproduces CVE-2025-55315 in ASP.NET Core.

CRLFMap is a tool to find HTTP Splitting vulnerabilities

Automatic SSTI detection tool with interactive interface

General-purpose data compression library implementing the zlib, deflate, and gzip formats, with thread-safe functions and cross-platform build…

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

Testing resources and attacker tool for CVE-2023-44487 (HTTP/2 Rapid Reset) to evaluate server resilience across Go, gRPC, reverse proxy, and nginx…