
crlfuzz
A fast tool to scan CRLF vulnerability written in Go

A fast tool to scan CRLF vulnerability written in Go

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Default signature for Jaeles Scanner

A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀

Smart ssrf scanner using different methods like parameter brute forcing in post and get...

Scanner PoC for CVE-2026-42530 -- nginx 1.31.0-1.31.1 HTTP/3 QPACK encoder stream Use-After-Free (CVSS 9.2)

A fully automated, accurate, and extensive scanner for finding text4shell RCE CVE-2022-42889

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

Proof-of-concept exploit for CVE-2024-6387, a remote code execution vulnerability in OpenSSH server, demonstrating exploitation techniques for…


Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

Fuzz testing framework for network protocols.

Advisory for CVE-2025-69720: stack-based buffer overflow in GNU ncurses infocmp (CWE-121)

A repository of proof-of-concept files demonstrating disclosed and patched vulnerabilities in pngcheck (2.4.0 - 3.0.1), including CVE-2020-27818,…

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…

XSS spider - 66/66 wavsep XSS detected

A fuzzer for detecting open redirect vulnerabilities

TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.