
CVE-2024-22889-Plone-v6.0.9
Proof-of-concept exploit for CVE-2024-22889, an incorrect access control vulnerability in Plone CMS v6.0.9 allowing remote attackers to view and list…

Proof-of-concept exploit for CVE-2024-22889, an incorrect access control vulnerability in Plone CMS v6.0.9 allowing remote attackers to view and list…

Curated dashboard for browsing recent V8 vulnerability patterns, parsing regression test files with linked Chromium bug reports, code reviews, and…


「🔑」A tool used to hunt down API key leaks in JS files and pages

An extremely fast and flexible web fuzzer

Securely and anonymously share files, host websites, and chat with friends using the Tor network

A python script that finds endpoints in JavaScript files

SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Tool to scan for secret files on HTTP servers

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

Tool to find JavaScript files on Websites

uDork is a script written in Bash Scripting that uses advanced Google search techniques to obtain sensitive information in files or directories, find…

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Fast IIS short filename enumeration tool that identifies hidden files and directories via tilde vulnerability, with automatic full filename…