
liffy
Local file inclusion exploitation tool

Local file inclusion exploitation tool

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

ZCBS/ZBBS/ZPBS v4.14k - Reflected XSS

The Swiss Army knife for automated Web Application Testing

Java-based framework for systematic fuzzing and analysis of TLS libraries. Enables arbitrary protocol message crafting, modification, and testing of…

Modern cyber range with 50 hands-on challenges across web, API, cloud, AI, and blue-team security tracks. Features guided attack chains, transparent…

Intentionally vulnerable web application covering OWASP Top 10 vulnerabilities for security training, CTF competitions, and penetration testing…

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

proxychains - a tool that forces any TCP connection made by any given application to follow through proxy like TOR or any other SOCKS4, SOCKS5 or…

Android Remote Administration Tool

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

w3af: web application attack and audit framework, the open source web vulnerability scanner.

Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能

Detect and bypass web application firewalls and protection systems

Single-file PHP shell