
rekono
Offensive security platform that automates attack surface discovery and vulnerability management

Offensive security platform that automates attack surface discovery and vulnerability management

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

Reproduces ZendTo unauthenticated ClamAV RCE and root privilege escalation in an authorized lab, with pinned Docker target, fail-closed verification,…

The CSRF Exploit Generator allows users to generate a CSRF exploit form with configurable parameters.

This script automates SQL injection testing using SQLMap with AI-powered decision making.

A Modular Penetration Testing Framework

Vulnerability scanner based on vulners.com search API

Never forget where you inject.

Swiss army knife Webserver in Golang. Keep simple like the python SimpleHTTPServer but with many features

Web vulnerability scanner focused on automated XSS/CSP bypass payload testing and batch SQL injection detection, using SQLMap and reporting only…

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.

The all-in-one browser extension for offensive security professionals 🛠

Shell-based CMS detection and exploit kit identifying 330+ content management systems, then launching automated security audits and exploitation…

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

pluck CMS 4.7.18 is affected by a Multiple Stored Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a…

XSSYA (Cross Site Scripting Scanner & Vulnerability Confirmation)

A more useful CSRF PoC generator on Burp Suite

Stealthy PHP webshell disguised as a 404 error page with AJAX console, hidden command execution via Referrer header, and preconfigured actions for…