
ajpfuzzer
A command-line fuzzer for the Apache JServ Protocol (ajp13)

A command-line fuzzer for the Apache JServ Protocol (ajp13)

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…

A fork and successor of the Sulley Fuzzing Framework

High-speed Burp Suite extension for sending large volumes of HTTP requests with a custom stack, Python-based attack configuration, and advanced…

A container repository for my public web hacks!

WAFNinja is a tool which contains two functions to attack Web Application Firewalls.

A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.

Java-based framework for systematic fuzzing and analysis of TLS libraries. Enables arbitrary protocol message crafting, modification, and testing of…

WiFi Penetration Testing & Auditing Tool

Security analysis toolkit for proprietary car protocols

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows…

the Network Protocol Fuzzer that we will want to use.

Network protocol fuzzer that replays PCAP traffic through a mutational engine (Radamsa) to quickly discover vulnerabilities in target hosts via…

DHCP exhaustion script written in python using scapy network library

Tools for auditing WAFS

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

WS-Attacker is a modular framework for web services penetration testing. It is developed by the Chair of Network and Data Security, Ruhr University…

Go Web Application Penetration Test