
CVE-2025-55182-POC
Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)

Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!

Advanced security testing tool for CVE-2025-55182 vulnerability assessment in Next.js applications. Features interactive shell, batch scanning, WAF…

Go-based RCE exploit tool for Next.js vulnerabilities (CVE-2025-55182, CVE-2025-66478) with WAF bypass, AES-encrypted payloads, file management, and…

Exploit tool for CVE-2024-3640 that bypasses WAF using XML comment injection to achieve command execution and custom memory shell deployment.

Exploit framework for CVE-2026-6875, a pre-auth RCE in ServiceNow. Chains JS injection, sandbox escape, and root privesc. Includes interactive shell,…

Automated SQLMap tamper suggester that tests payloads against WAF/IDS/IPS and recommends bypass techniques based on HTTP status codes, supporting…

Tests hundreds of URL bypass techniques against 40X protected pages using raw curl requests, with multi-mode scanning, header spoofing, and JSON/HTML…

🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast. Precise.…

Reverse-engineered tool to bypass Trust Decision security by generating dynamic fingerprints and tokens, exploiting TLS and payload verification…

Automated exploit tool for CVE-2025-55182 in Next.js React Server Components. Enables remote command execution with built-in WAF bypass, custom…

Automatic SQL injection and database takeover tool

Automated All-in-One OS Command Injection Exploitation Tool

A fast, simple, recursive content discovery tool written in Rust.

Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

Automated WAF bypass tool with fuzzing and payload injection modules for penetration testers. Supports GET/POST requests, cookie-based…

Automated WAF security testing tool that detects false positives and false negatives using 15+ payload categories including SQLi, XSS, RCE, and…