
XSSFuzzer
XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.

XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.

Burp Suite extension to generate Intruder payloads using Radamsa


A toolset for reverse engineering and fuzzing Protobuf-based apps

Automatic SSTI detection tool with interactive interface

A Penetration Testing Framework, Information gathering tool & Website Vulnerability Scanner

BurpSuite plugin for encrypting payloads with AES, RSA, DES, or custom JS code, enabling automated decryption of front-end encrypted traffic during…

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.

Irregular methods on regular expressions

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

XLL Phishing Tradecraft

Tool to help exploit XXE vulnerabilities

Proof of Concept of Sweyntooth Bluetooth Low Energy (BLE) vulnerabilities.

MalQR is a collection of malicious QR Codes and Barcodes you can use to test the security of your scanners.

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…


A PoC Java Stager which can download, compile, and execute a Java file in memory.