
ModSecurity
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing

From Dork to Download: Automating Google Dorks with Playwright

This Log4j RCE exploit originated from https://github.com/tangxiaofeng7/CVE-2021-44228-Apache-Log4j-Rce

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...

A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.

HackBar plugin for Burpsuite

↕️🤫 Stealth redirector for your red team operation security



YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

Like curl, but it gets past Anubis and Cloudflare bot-walls.

woodpecker-plugins

Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution
