
Firefox-Security-Toolkit
A tool that transforms Firefox browsers into a penetration testing suite

A tool that transforms Firefox browsers into a penetration testing suite

React2Shell-Exploit — Complete exploitation framework for CVE-2025-55182, including Python exploit, Docker vulnerable lab, Burp Suite manual and…

Researched and executed real-world CVE exploits in a controlled sandbox: CVE-2000-0168 DoS on Windows 95, ARP Spoofing with NTLMv2 credential…

Framework for identifying and exploiting out-of-band (OOB) application vulnerabilities with a custom DNS/token server, Burp Suite extension, and…

CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…

Authenticated Local File Inclusion to Remote Code Execution on SoftExpert Suite EQM.

Reflected XSS found by Burp Suite in several locations on SonicOS 7.0 Sonicwall NSA device.

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Burp plugin able to find reflected XSS on page in real-time while browsing on site

Improved DOS exploit for wordpress websites (CVE-2018-6389)


CVE Reproduction: cve-2025-61882-oracle_ebs_rce_reproduction

SAML2 Burp Extension

NSE script to check if app is vulnerable to cve-2023-22515

Single-file PHP shell

a very fast brute force webshell password tool

Detects and exploits HTTP request smuggling vulnerabilities via HTTP/2 to HTTP/1.1 conversion, using automated header smuggling techniques to…

Search for Directory Traversal Vulnerabilities