

针对JWT渗透开发的漏洞验证/密钥爆破工具,针对CVE-2015-9235/空白密钥/未验证签名攻击/CVE-2016-10555/CVE-2018-0114/CVE-2020-28042的结果生成用于FUZZ,也可使用字典/字符枚举(包括JJWT)的方式进行爆破(JWT Crack)

Super Simple Python Word List Generator for Fuzzing and Brute Forcing in Python

A Python3 module to assist in fuzzing web applications

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.

GraphQL penetration testing tool that exploits weak rate limits and cost analysis to brute-force credentials, bypass 2FA, enumerate users, and fuzz…

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.