
BlackDir-Framework
Web Application Vulnerability Scanner

Web Application Vulnerability Scanner

Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities

Automated reconnaissance and vulnerability detection tool that enumerates subdomains, collects URLs, and runs Nuclei scans to identify…

PAVELOW Exploit Toolbox is a BASH script that corresponds with your KALI distro to better help your vulnerability hunting and exploiting proccess…

Multi-functional Web Recon & Vulnerability Scanner Tool

Script to perform automatic initial web and vulnerability recon

Using this tool, you can scan for remote command execution vulnerability CVE-2021-44228 on Apache Log4j at multiple addresses.

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

React2Shell is a high-performance vulnerability scanner written in Go, specifically designed to detect Server-Side Remote Code Execution (RCE)…

Bug bounty and vulnerability research reports by Desai Vinayak — includes CVE-2023-50290 (Apache Solr) and Zscaler subdomain takeover findings.

Python script to scan for CVE-2000-0114 vulnerability in Frontpage Server Extensions. Automates subdomain enumeration and vulnerability scanning…

a script to look for CVE-2019-19781 Vulnerability within a domain and it's subdomains

Scope-based reconnaissance automation framework that orchestrates multiple open-source tools for subdomain enumeration, vulnerability scanning, and…

A python tool to check subdomain takeover vulnerability

An asynchronous enumeration & vulnerability scanner. Run all the tools on all the hosts.

Fast subdomain takeover scanner that checks DNS CNAME records against known fingerprints to detect vulnerable subdomains. Built in Go with…

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are…

evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).