
chameleon
Technology-aware web content discovery scanner: detects Wappalyzer fingerprints, adapts wordlists/extensions, and performs fast directory bruteforce…

Technology-aware web content discovery scanner: detects Wappalyzer fingerprints, adapts wordlists/extensions, and performs fast directory bruteforce…


Extendable pentesting framework for automotive UDS interfaces, enabling reproducible scans, diagnostic trouble code reading, and post-processing via…

A rapid HTTP downgrade smuggling scanner written in Go.

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.

🦚 A web-app pentesting suite written in rust .

Automates web content discovery and directory bruteforcing with multithreaded ffuf execution, tech-aware wordlists, endpoint filtering, WAF…

Different utility scripts for pentesting and hacking.

Directory/File, DNS and VHost busting tool written in Go

A collection of custom security tools for quick needs.

A high performance offensive security tool for reconnaissance and vulnerability scanning

A curated list of resources related to Industrial Control System (ICS) security.

A container repository for my public web hacks!

Curated, categorized wordlist generator for web fuzzing, directory enumeration, and subdomain discovery. Automatically syncs 36+ sources, classifies…


Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest!