
bucky
Bucky (An automatic S3 bucket discovery tool)

Bucky (An automatic S3 bucket discovery tool)

A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.

Proof-of-concept exploit for CVE-2015-7214 demonstrating Same-Origin Policy bypass in Firefox 42.0 via data and view-source URIs, with local and…

Redirect All Traffic Through Tor Network For Kali Linux

A tool that transforms Firefox browsers into a penetration testing suite

Model Context Protocol server for Firefox DevTools - enables AI assistants to inspect and control Firefox browser through WebDriver BiDi


Firefox hardening template that applies privacy and security settings to reduce tracking, fingerprinting, and telemetry while preserving core browser…


A Firefox extension for detecting React2Shell vulnerabilities (CVE-2025-55182 & CVE-2025-66478) in web applications.

Addressbar spoofing through blob URL (Firefox browser). An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by…

A vulnerability scanner for Firefox and Thunderbird that checks if your versions are out of date and susceptible to CVE-2024-9680.

ClearURLs is an add-on based on the new WebExtensions technology and will automatically remove tracking elements from URLs to help protect your…

Proof-of-concept for CVE-2026-84118, a SpiderMonkey GC use-after-free leading to out-of-bounds read/write and potential code execution. Includes…

Development has moved to https://codeberg.org/librewolf/source

PoC for CVE-2022-28281 a Mozilla Firefox Out of bounds write.

PoC for CVE-2020-16012, a timing side channel in drawImage in Firefox & Chrome

CVE-2026-74943, Use after free in Firefox RasterImage (sec-high)