
submonitor
Subdomain monitor with reporting capabilities to Slack, Discord and Telegram

Subdomain monitor with reporting capabilities to Slack, Discord and Telegram

CVE-2020-13942 POC + Automation Script

Script to perform automatic initial web and vulnerability recon

Get subdomain list and check whether they are active or not by each response code. Using API by c99.nl

Automated reconnaissance and XSS detection framework integrating subfinder, httpx, katana, gospider, waybackurls, and dalfox into a 9-stage pipeline…

Bash script that enumerates subdomains via Subfinder, resolves IPs, and identifies live web applications hosted on a domain for reconnaissance and…

Modular subdomain enumeration suite with certificate transparency, DNS brute-force, and API-based discovery. Includes post-enumeration modules for…

Extend your recon with cloud power

Authorized education-sector recon & triage orchestrator (nmap/dirsearch/sqlmap/hydra + CVE-2024-4577, secret/API-key leak, XSS, wp2shell) with a web…

Read-only CLI to check whether a WordPress site is exposed to WP2Shell (CVE-2026-63030 / CVE-2026-60137)

HackTheBox Devvortex walkthrough covering subdomain fuzzing, Joomla API enumeration, template-based web shell, bcrypt hash cracking, and Apport-CLI…

An educational Python toolkit for authorized penetration testing: threaded port scanner, subdomain & directory enumeration, banner grabber and host…

Open-source AI-powered 5-phase VAPT pentest agent — recon/scan/vuln/exploit/report with PoC

Fast subdomain enumeration tool written in python.

It is a small script to fetch out the subdomains/ip vulnerable to CVE-2020-5902 written in bash

log4shell (CVE-2021-44228) scanning tool

Torito React2Shell Scanner & Exploit Tool (CVE-2025-55182 / 66478)

Using this tool, you can scan for remote command execution vulnerability CVE-2021-44228 on Apache Log4j at multiple addresses.