


Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

ZIP File Raider - Burp Extension for ZIP File Payload Testing

an attacker to create and export an address book containing a malicious payload in a field. For example, in the “Other” field of the Instant…

GDidees CMS 3.9.2 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload to…

Zenariocms 9.4.59197 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload…

pluck CMS 4.7.18 is affected by a Multiple Stored Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a…

The all-in-one browser extension for offensive security professionals 🛠

MalQR is a collection of malicious QR Codes and Barcodes you can use to test the security of your scanners.

StoryChief <= 1.0.42 - Unauthenticated Arbitrary File Upload

Remote code execution running on w3 total cache cve 2013-2010

MAGNOLIA-8348: FreeMarker Restriction Bypass 3 in Magnolia CMS



Create tar/zip archives that can exploit directory traversal vulnerabilities

Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.

A simple tool for bypassing file upload restrictions.

This script automates SQL injection testing using SQLMap with AI-powered decision making.