
JSFScan.sh
Automation for javascript recon in bug bounty.

Automation for javascript recon in bug bounty.

Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan,…

SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS

A simple FOFA client written in JavaFX. Made by WgpSec, Maintained by f1ashine.


Kaspersky's GReAT KLara

uDork is a script written in Bash Scripting that uses advanced Google search techniques to obtain sensitive information in files or directories, find…

Information gathering tool - OSINT

Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for…

Exploit written in Python for CVE-2018-15473 with threading and export formats

Fresh Onions is an open source TOR spider / hidden service onion crawler hosted at zlal32teyptf4tvi.onion

A better whois and domain intelligence toolkit

A standalone python script which utilizes python's built-in modules to enumerate SUID binaries, separate default binaries from custom binaries,…

A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.

Wordpress XMLRPC System Multicall Brute Force Exploit (0day) by 1N3 @ CrowdShield

DotDotPwn - The Directory Traversal Fuzzer

Kunyu, more efficient corporate asset collection