
Torito-R2S
Torito React2Shell Scanner & Exploit Tool (CVE-2025-55182 / 66478)

Torito React2Shell Scanner & Exploit Tool (CVE-2025-55182 / 66478)

Multi-phase reconnaissance and attack-surface scanner that maps domains, IPs, ASNs, cloud assets, and CVEs into a knowledge graph with CVSS scoring…

Secure, modular MCP server wrapping nmap, nuclei, gobuster, subfinder, httpx, nikto, sqlmap for AI-powered pentesting

Read-only CLI to check whether a WordPress site is exposed to WP2Shell (CVE-2026-63030 / CVE-2026-60137)

React2shell-web-scanner

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

CVE-2025-55182 (React2Shell) Scanner


An easy-to-use Python tool for performing subdomain enumeration, endpoint recognition, and more

React2Shell is a high-performance vulnerability scanner written in Go, specifically designed to detect Server-Side Remote Code Execution (RCE)…

Multi-language scanner for CVE-2025-55182 RCE in Next.js React Server Components, with single/mass scanning modes and integrated bug bounty…

Bug bounty and vulnerability research reports by Desai Vinayak — includes CVE-2023-50290 (Apache Solr) and Zscaler subdomain takeover findings.

Another tool for subdomain enumeration with some magics 🧙🏻♂️

a passive OSINT toolkit in python usernames, emails, domains, ips, phones, hashes. no keys, no logins.

Terminal-first attack surface intelligence engine. Built for speed, portability, and raw technical signal.