
Trust-Decision-Security
Reverse Engineer of Trust Decision Chinese Security

Reverse Engineer of Trust Decision Chinese Security

↕️🤫 Stealth redirector for your red team operation security

Automated scanner for CVE-2025-55182 RCE in Next.js with 8 WAF bypass techniques, custom command execution, and test-only detection mode for…

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that…

CloudBunny is a tool to capture the real IP of the server that uses a WAF as a proxy or protection. In this tool we used three search engines to…

A fast, simple, recursive content discovery tool written in Rust.

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Next generation web scanner

CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications

Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)


Stuff that doesn't deserves its own repository.

Quickjack is a point-and-click tool for intuitively producing advanced clickjacking and frame slicing attacks.

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Nmap NSE script for detecting Apache Log4j RCE (CVE-2021-44228) by injecting JNDI exploit payloads via HTTP headers or TCP/UDP sockets across…

A non-intrusive surface scanner for CVE-2025-55182 (React Server Components RCE). Detects exposed RSC endpoints in React 19 and Next.js applications

Elite reconnaissance script for auditing Apache's HTTP/2 stack against memory corruption (CVE-2026-23918). Features ALPN protocol forcing and…

WordPress Pre-Auth RCE Exploit + Scanner + WAF Bypass | CVE-2026-63030 + CVE-2026-60137 | Go + Python + Metasploit modules + Docker lab