
redai
AI-driven vulnerability discovery and live validation

AI-driven vulnerability discovery and live validation

client-side prototype pullution vulnerability scanner

Web application security scanner created by lcamtuf for google - Unofficial Mirror

The ZAP Heads Up Display (HUD)

🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl!

SVG Analysis and generation tools for commonly seen SVG attachment phishing

Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP requests and…

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

Go tool and Nuclei template for testing James Kettle's (CVE-2025-32094) HTTP/1.1 must die: the desync endgame


Burp Suite extension for automated detection and exploitation of HTTP request smuggling vulnerabilities, supporting HTTP/1.1 and HTTP/2-downgrade…

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.

A curated list of awesome Hacking tutorials, tools and resources

🔱 Powerfull XSS Scanning and Parameter analysis tool&gem


The Python Version of our Not Go-ing Anywhere Vulnerable Application

:zap: Web Debugging Proxy based on Chrome DevTools Network panel.

A complete browser-based reverse engineering platform built on Rizin, running entirely client-side via WebAssembly.