
fuzzdb
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

High-speed Burp Suite extension for sending large volumes of HTTP requests with a custom stack, Python-based attack configuration, and advanced…

Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

CEREBRO-RED v2: Advanced LLM Red Team Research Platform with PAIR Algorithm and LLM-as-a-Judge Evaluation

A guided mutation-based fuzzer for ML-based Web Application Firewalls

Security research and technical analysis of CVE-2025-5548, a buffer overflow vulnerability affecting FreeFloat FTP Server 1.0. This repository…

A full-featured open-source Wi-Fi fuzzer

Git All the Payloads! A collection of web attack payloads.

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents…

Automatically find and execute fault injection attacks

Validates and exploits VMware ESXi SFCB authentication bypass (CVE-2021-21994) via a probe/fuzz harness, enabling unauthenticated CIM-XML enumeration.

WAFNinja is a tool which contains two functions to attack Web Application Firewalls.

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

A Software Defined Radio Attack Tool

A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors

Super Simple Python Word List Generator for Fuzzing and Brute Forcing in Python

This repo reproduce xss attack on django 4.0.1 (see CVE-2022-22818)

Exploit for CVE-2024-5124 targeting ChuanhuChatGPT via TLS timing side-channel attack. Uses tlsfuzzer to perform character-by-character credential…