
reverse-shell-generator
Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Extract parameters/paths from urls

🕵️♂️ All-in-one OSINT tool for analysing any website

A tool for bug hunting or pentesting for targeting websites that have open .git repositories available in public

The Browser Exploitation Framework Project

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Curated list of web application security resources including books, tools, cheat sheets, labs, and courses for learning penetration testing and…

Burp Plugin to Bypass WAFs through the insertion of Junk Data

Module-based web vulnerability scanner and bug bounty automation framework with built-in XSS, SSTI, SSRF, and Firebase detection engines. Designed to…

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Detection rules for CVE-2026-23918 Apache http2 RCE - Credit: stringa.ai, isec.pl

All about bug bounty (bypasses, payloads, and etc)

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers

declutters url lists for crawling/pentesting

Quick One Line Powershell scripts to detect for webshells, possible zips, and logs.

Learning and hunting SQL injection bugs for 50 continuous days

Passive Security Tools Fingerprinting Framework