
xss2shell
Behavior-first WordPress CVE-2026-64638 scanner using benign login probes; classifies sanitizer behavior and generates alert-only PoCs for authorized…

Behavior-first WordPress CVE-2026-64638 scanner using benign login probes; classifies sanitizer behavior and generates alert-only PoCs for authorized…

Prototype anti-automation system demonstrating bot detection, malformed HTML traps, invisible links, and signature-reversing honeypot techniques for…

CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441

Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence

Detect & clean up wp2shell (CVE-2026-63030) WordPress compromise — bulk-runnable, read-only by default

Python-based simulated firewall to detect and block Spring4Shell (CVE-2022-22965) exploit attempts. This project filters HTTP requests by identifying…

Nuclei-based detection template for CVE-2025-53690 (Sitecore deserialization RCE). Designed for defenders to identify potentially vulnerable Sitecore…

Exploration of CVE-2021-42013 (Apache HTTP Server path traversal) using Suricata IDS and OpenVAS vulnerability scanner for detection and analysis.

Automated scanner for CVE-2020-3580, detecting XSS vulnerabilities in Cisco ASA and Firepower Threat Defense software across bulk IPs and domains.

ToolShell scanner - CVE-2025-53770 and detection information

Cisco Adaptive Security Appliance Software/Cisco Firepower Threat Defense - Directory Traversal

Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

Open-source API security platform for continuous API discovery, vulnerability testing, and runtime threat detection. Integrates with CI/CD pipelines…

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

A ModSecurity ruleset for detecting potential attacks using CVE-2018-6389