
XXStrike
XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

A security scanner for your LLM agentic workflows

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Acunetix 0day RCE

Windows NT ioctl bruteforcer and modular fuzzer

A collection of useful resources for hacking WordPress and it's plugins and themes

GUI Burp Plugin to ease discovering of security holes in web applications

通过 jvm 启动参数 以及 jps pid进行拦截非法参数


Next generation web scanner

Automatic SSTI detection tool with interactive interface

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

Laravel debug mode - Remote Code Execution (RCE)

Python exploit script for CVE-2020-28458, a prototype pollution vulnerability in DataTables. It sends crafted payloads to target URLs, supports proxy…