
djangohunter
Tool designed to help identify incorrectly configured Django applications that are exposing sensitive information.

Tool designed to help identify incorrectly configured Django applications that are exposing sensitive information.

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

Automated CORS misconfiguration discovery tool using typosquatting domains and browser service workers to probe internal networks of bug bounty…

🦁 Python project to identify and scan for vulnerabilities related to the Joomla CMS project. It scans for common misconfigurations and public…

Prommetrix can obtain relevant information from the instances of 'Node Exporter' executed by 'Prometheus'.

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

This script is a tool to recursively download the contents of the '.git' directory from a website. Using Python and libraries like 'requests' and…

This tool is designed to scan and identify whether a website has an exposed ".git" directory, which may contain sensitive information such as source…

This tool is used to find php info page

Proof-of-concept demonstrating information leakage in OneinStack deployment tool via exposed endpoints (phpinfo.php, xprober.php, ocp.php) leading to…

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

Scan for misconfigured S3 buckets across S3-compatible APIs!

Retrieve AD accounts description and search for password in it


[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github

CVE-2026-11961 — UserRegistration: WordPress User Registration <= 5.2.2 Privilege Escalation. Misconfigured Membership Roles → Unauthenticated Admin…