
XXStrike
XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

WordPress Pre-Auth RCE Exploit + Scanner + WAF Bypass | CVE-2026-63030 + CVE-2026-60137 | Go + Python + Metasploit modules + Docker lab

This script automates SQL injection testing using SQLMap with AI-powered decision making.

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

一個測試CVE-2024-4577和CVE-2024-8926的安全滲透工具

XSSYA (Cross Site Scripting Scanner & Vulnerability Confirmation)

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)

CVE-2025-55182复现环境及RCE回显poc

CVE-2025-55182(React Server Components 反序列化远程代码执行漏洞)

Advanced Exploitation Toolkit for Next.js Server Actions (CVE-2025-55182)

Automated scanner for CVE-2025-55182 RCE in Next.js with 8 WAF bypass techniques, custom command execution, and test-only detection mode for…

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) with JNDI injection, LDAP reference server, and WAF bypass techniques for testing Log4j RCE…

CVE-2025-55182 (React2Shell) Scanner

Nmap NSE script for scanning React2Shell (CVE-2025-55182)

Generic Scanner for Apache log4j RCE CVE-2021-44228

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) with JNDI LDAP/RMI injection, payload compilation, and WAF bypass techniques for testing…
