
sqlmap
Automatic SQL injection and database takeover tool

Automatic SQL injection and database takeover tool

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

Automated NoSQL database enumeration and web application exploitation tool.

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.


Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!

The Correlated CVE Vulnerability And Threat Intelligence Database API

Web Shell Detector – is a php script that helps you find and identify php/cgi(perl)/asp/aspx shells. Web Shell Detector has a “web shells” signature…

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Pentest Tools Framework is a database of exploits, Scanners and tools for penetration testing. Pentest is a powerful framework includes a lot of…

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

Open-source, cross-platform, multi-purpose security auditing tool

Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier

Db Database Assessment Tool


An modular asset discovery framework written in python to automate the repeating manual work