
lorsrf
Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load :artificial_satellite: :crab:

Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load :artificial_satellite: :crab:

Tool to make in memory man in the middle

Tool to discover paths in web applications

A fast tool to scan CRLF vulnerability written in Go

A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas in the…

Pishi is a code coverage tool like kcov for macOS.


A tool that is used to hunt vulnerabilities in x64 WDM drivers

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

Automated testing to find logic and performance bugs in database systems

A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀

Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers

A Log4j vulnerability scanner is used to identify the CVE-2021-44228 and CVE_2021_45046

WAFNinja is a tool which contains two functions to attack Web Application Firewalls.

Frida-based dynamic analysis tool that automatically identifies DLL sideloading and COM hijacking vulnerabilities in Windows executables through…

Educational research tool demonstrating CVE-2025-14847 memory disclosure in MongoDB's BSON decompression. Simulates bounds-checking failures and…

simple Python exploit using CVE-2018-7449 on embOS/IP FTP Server v3.22

Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.