
Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467
This exploit scans whether the provided target is vulnerable to CVE-2023-49070/CVE-2023-51467 and also exploits it depending on the choice of the…

This exploit scans whether the provided target is vulnerable to CVE-2023-49070/CVE-2023-51467 and also exploits it depending on the choice of the…

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

AWSGoat : A Damn Vulnerable AWS Infrastructure

AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.

WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This…

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…

User-Agent , X-Forwarded-For and Referer SQLI Fuzzer

Web app authorisation coverage scanning

Arachni's Web User Interface.

small python3 tool to check common vulnerabilities in SMTP servers

Command-line static analysis scanner that detects critical vulnerabilities in PHP and YAML source code using custom semgrep rules, with Jira and…

PAKURI has been merged with Python and launched as a new project, PAKURI-THON.

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…

Registry permission scanner written in C# for finding potential privesc avenues within registry

Automatic security vulnerability remediation for your code.

A Scanner for M3UA protocol to detect Sigtran supporting nodes