
XSpear
🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

A threaded, recursive, web directory brute-force scanner over HTTP/2.

A tool to scan Kubernetes cluster for risky permissions

ProjectDiscovery's Open Source Tool Manager

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.

Static code analysis tool based on Elasticsearch

Tool to check if an IP of a DblTek GoIP is vulnerable to a challenge-response login system, send SMS messages from the system, execute remote…

Automated exploit tool for CVE-2025-55182 in Next.js React Server Components. Enables remote command execution with built-in WAF bypass, custom…

A Comprehensive CVE-2025-55182 Detection and Security Assessment Tool

Exploit tool for 1Panel CVE-2025-54424, enabling certificate bypass and remote command execution via WebSocket, with batch scanning and interactive…

regreSSHion is a security tool designed to test for vulnerabilities related to CVE-2024-6387, specifically focusing on SSH and remote access…

kadimus is a tool to check and exploit lfi vulnerability.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Automatic SQL injection and database takeover tool

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。(An intranet comprehensive scanning tool, enabling one-click automated, all-round vulnerability scanning)