
of-CORS
Automated CORS misconfiguration discovery tool using typosquatting domains and browser service workers to probe internal networks of bug bounty…

Automated CORS misconfiguration discovery tool using typosquatting domains and browser service workers to probe internal networks of bug bounty…

A collection of tools to enumerate and analyse Windows DACLs

A patch for PrintNightmare vulnerability that occurs to print spooler service for Windows machines [CVE-2021-34527]


[CVE-2021-3019] LanProxy Directory Traversal


CVE-2025-55182-scanner with 2 different method

Local web app for conducting a Check Point Trusted Access Review. This scanner is built specifically to look for configuration issues around…

This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

HP SiteScope Credential Acquisition Tool

Automation to assess the state of your M365 tenant against CISA's baselines

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

Go-based Kubernetes exploitation tool that scans for exposed ports and exploits cluster misconfigurations, including anonymous Kubelet RCE and etcd…

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

Security testing tool for analyzing HTTP 403 responses and identifying access control misconfigurations in web applications.