


evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

Android deeplink, Intent, and WebView bridge assessment helper for ethical hacking

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Tests your WAF with +160 payloads

Walkthroughs for Capture the Flag challenges on the HTB Cybersecurity Platform.

Discover hidden debugging parameters and uncover web application secrets

🔗 Lightweight security orchestrator mobile application for URI vetting, providing a unified, multi-engine interface to aggregate and validate link…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

The vulnerability exists in the Student Payment API. The application fails to properly validate whether the user requesting a receipt is authorized…

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

FAST WEB APPLICATION VULNERABILITY SCANNER written in python3

Information flow analysis tool for Android applications

The Offensive Manual Web Application Penetration Testing Framework.

Network Infrastructure Penetration Testing Tool

Bash script that enumerates subdomains via Subfinder, resolves IPs, and identifies live web applications hosted on a domain for reconnaissance and…

(deprecated) Android application vulnerability analysis and Android pentest tool