
TIDoS-Framework
The Offensive Manual Web Application Penetration Testing Framework.

The Offensive Manual Web Application Penetration Testing Framework.

Go Web Application Penetration Test

WAFNinja is a tool which contains two functions to attack Web Application Firewalls.

Software for fuzzing, used on web application pentestings.

A wordlist of API names for web application assessments

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Modular WAF bypass fuzzer with multi-threading, request manipulation, and payload encoding for red team web application testing.

Command Injection Web Fuzzer Script for mitmproxy

CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…

Tools for auditing WAFS

A structure-aware JSON fuzzer


CVE-2022-46364 Apache CXF XOP:Include SSRF / LFI

Simple python script to fuzz site for CVE-2017-9805

CVE-2020-6308 mass exploiter/fuzzer.

Um script automatizado melhorando o exploit do cve-2011-0762 postado no exploit-db