
redai
AI-driven vulnerability discovery and live validation

AI-driven vulnerability discovery and live validation

client-side prototype pullution vulnerability scanner

Web application security scanner created by lcamtuf for google - Unofficial Mirror

The ZAP Heads Up Display (HUD)

Go tool and Nuclei template for testing James Kettle's (CVE-2025-32094) HTTP/1.1 must die: the desync endgame

Static and dynamic analysis tool that audits open-source packages for malicious, vulnerable, and risky attributes, with sandboxed installation to…

EMBA - The firmware security analyzer

Burp Suite extension for automated detection and exploitation of HTTP request smuggling vulnerabilities, supporting HTTP/1.1 and HTTP/2-downgrade…

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.

🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

a fast check, if your server could be vulnerable to CVE-2021-44228


DOM XSS scanner for Single Page Applications

Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based on specific…

A minimalistic LDAP server that is meant for test vulnerability to JNDI+LDAP injection attacks in Java, especially CVE-2021-44228.

CVE-2026-2587 PoC validator for Eclipse GlassFish EL Injection RCE in the admin console gadget.jsf handler. Safe authenticated vulnerability scanner…

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.