


Validates and exploits VMware ESXi SFCB authentication bypass (CVE-2021-21994) via a probe/fuzz harness, enabling unauthenticated CIM-XML enumeration.

SIP Security Assessment Framework for VoIP Pentesters. Presented at DEFCON, BlackHat & Offzone.



Fast HTTP enumerator

CVE-2026-0740

A multithreaded, very fast and smart HTTP(S) directory and file bruteforcer written in C on top of libcurl

Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)

Set of tools to audit SIP based VoIP Systems

CVE-2026-42945 Nginx Rift

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not

A high performance offensive security tool for reconnaissance and vulnerability scanning

ReconHound is a Python-based web reconnaissance tool designed for penetration testers, bug bounty hunters, and ethical hackers. It supports directory…

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.