
firmware
Predatory ESP32 Firmware

Predatory ESP32 Firmware

Burp Suite extension for JavaScript static analysis: extracts API endpoints, URLs, secrets, and emails with noise filtering for web security testing.

Python-based web security scanner that analyzes HTTP headers, SSL/TLS, DNS records, and common misconfigurations to generate a scored security report…

OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code

Automated reconnaissance and XSS detection framework integrating subfinder, httpx, katana, gospider, waybackurls, and dalfox into a 9-stage pipeline…

Security portfolio of original responsible-disclosure findings, CTF and lab write-ups, methodology notes, and purpose-built pentest tooling covering…

Checklists and templates for bug bounty programs. MIT licensed.

CVE-2025-29927 Exploit Checker

Web Application Security Scanner

Full-stack platform for authorized web application security scanning with a detector-based engine, async Celery workers, and a React dashboard for…

A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Automates HTTP 403 access control bypass techniques using header manipulation, path obfuscation, and HTTP method conversion for web application…

WebPwn3r - Web Applications Security Scanner.

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…

WEB SERVICE SECURITY ASSESSMENT TOOL

Automated Local File Inclusion (LFI) vulnerability scanner with Google Dork search and targeted URL scan modes for web application security testing.

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…