
wapiti
Web vulnerability scanner written in Python3

Web vulnerability scanner written in Python3

Simple JMX RMI scanning tool

Vendor-neutral cloud security testing guide with structured phases for enumeration, privilege escalation, lateral movement, and post-exploitation…

Next generation web scanner

A Security Tool for Enumerating WebSockets

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Local-first AI red team for web, API, and LLM application security. Attacker-style reasoning, evidence-backed findings, and skills for AI coding…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

In-depth attack surface mapping and asset discovery

CVE-2024-4040 CrushFTP SSTI LFI & Auth Bypass | Full Server Takeover | Wordlist Support

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

Native HTTP/HTTPS interception proxy for penetration testers and bug bounty hunters with live request tampering, request replay, high-speed fuzzing,…

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Demonstrates an Insecure Direct Object Reference (IDOR) vulnerability in Deepfiction AI's chat API, allowing attackers to consume other users'…

Deploy web honeypots to capture emerging attack data, analyze ModSecurity audit logs via ELK, and share threat intelligence with MISP for…

OWASP Foundation Web Respository

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…