
strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.

This is a simple python tool to automatically deface webdav vulnerable websites.

A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as…

Automated tool to dump config.php files from vulnerable Joomla and WordPress websites using known exploit modules (com_joomanager, revslider).

Tool to try multiple paths for PHPunit RCE CVE-2017-9841

An Exploitation tool to exploit the confluence server that are vulnerable to CVE-2023-22518 Improper Authorization

Tool to bypass 40X response codes.

Python tool to exploit CVE-2021-26855 (ProxyLogon) for downloading Exchange mailbox emails via EWS, supporting user enumeration and bulk target…

A tool to perform port scanning using vulnerable Request-Baskets

PoC exploit for CVE-2025-32778: command injection in Web-Check OSINT tool

Tool to check for CVE-2018-7600 vulnerability on several URLS

Python tool to check and exploit CVE-2026-22812 in OpenCode, supporting command execution, file read, and multi-target scanning on ports 4095-4100.

Scraping tool to ennumerate directories or files with the CVE-2024-23897 vulnerability in Jenkins.

Python-based tool to detect and exploit arbitrary file read vulnerability in WordPress WP File Upload plugin (<=4.24.11), enabling unauthenticated…

Proof of concept tool to exploit the directory traversal and local file inclusion vulnerability that resides in the Sahi-pro web application…

It is a simple tool to exploit local file include . vulnerabilities

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.