
OmniScan
Multi-engine vulnerability scanner with built-in Nuclei Lite, Afrog, and XRay engines. Features asset discovery via FOFA/Shodan, OOB interaction…

Multi-engine vulnerability scanner with built-in Nuclei Lite, Afrog, and XRay engines. Features asset discovery via FOFA/Shodan, OOB interaction…

Go Web Application Penetration Test

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

A fast tool to scan CRLF vulnerability written in Go

Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

A fully automated, reliable, super-fast, scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.

Multi-threaded Go tool to detect nginx alias traversal vulnerabilities using heuristic and brute-force techniques for identifying vulnerable…


SSRFuzz is a tool to find Server Side Request Forgery vulnerabilities, with CRLF chaining capabilities

CRLFMap is a tool to find HTTP Splitting vulnerabilities

Web vulnerability scanner written in Python3

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…

Python3 vulnerability scanner that fuzzes all URLs of a target website and scans them for web vulnerabilities, with optional GoBuster integration for…

A Log4j vulnerability scanner is used to identify the CVE-2021-44228 and CVE_2021_45046

Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

Python-based open redirect vulnerability scanner that fuzzes URLs to detect header, JavaScript, and meta tag-based redirects, with integrated…

A Penetration Testing Framework, Information gathering tool & Website Vulnerability Scanner

Smart context-based SSRF vulnerability scanner.