
plecost
Plecost - Professional WordPress Security Scanner

Plecost - Professional WordPress Security Scanner

Extracts URLs from OSINT Archives for Security Insights

Python-based web reconnaissance tool that extracts site metadata, DNS records, subdomains, firewall names, technologies, and certificate details for…

WordPress security scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

Python exploit for Jetpack < 13.9.1 broken access control (CVE-2024-9926). Allows authenticated users to read visitor-submitted forms on WordPress…

Curated collection of wordlists for security assessments, including usernames, passwords, URLs, fuzzing payloads, and sensitive data patterns for…

Advanced cross-platform web crawler for security professionals, enabling automated reconnaissance, information gathering, and OSINT data collection…

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…


Maps attack surface of GWT applications by extracting obfuscated RPC endpoints and generating serialized request payloads for security testing.

PEGASUS-NEO is a comprehensive penetration testing framework designed for security professionals and ethical hackers. It combines multiple security…

Python-based web security scanner that analyzes HTTP headers, SSL/TLS, DNS records, and common misconfigurations to generate a scored security report…

Multi-proxy web interaction simulator for analyzing traffic behavior, access controls, and response patterns under varied network conditions.…

Recursively spider webpages to discover all URLs by following links, parsing sitemaps, and robots.txt files. Ideal for security reconnaissance and…

Brute-force scraper for HackerOne disclosed reports via their public API, collecting report IDs, links, titles, and states for security research and…

Scans web applications to generate context-specific wordlists for security testing, asset discovery, and preliminary vulnerability analysis.

Educational resource on Cross-site Scripting (XSS) attack techniques, covering non-persistent, persistent, and DOM-based vectors with practical…