
tactical-exploitation
Modern tactical exploitation toolkit.

Modern tactical exploitation toolkit.

A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys

A script to extract domain names from Content Security Policy(CSP) headers

This script will try to find a domains subdomains by using google dorking. It will never connect to the site it is researching.

It is a small script to fetch out the subdomains/ip vulnerable to CVE-2020-5902 written in bash

Python script to scan for CVE-2000-0114 vulnerability in Frontpage Server Extensions. Automates subdomain enumeration and vulnerability scanning…

python script for evaluate if you are vulnerable or not to next.js CVE-2025-29927

This script is intended to automate your reconnaissance process in an organized fashion

CVE-2020-13942 POC + Automation Script

Explore CVE 2023-30845 automatically across multiple subdomains

a script to look for CVE-2019-19781 Vulnerability within a domain and it's subdomains


Takeover script extracts CNAME record of all subdomains at once. TakeOver saves researcher time and increase the chance of finding subdomain takeover…

Multiprocessing(Parallel)Subdomain Detect Script

This script is intended to automate your reconnaissance process in an organized fashion

Master script for web reconnaissance

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.