
kit_hunter
A basic phishing kit scanner for dedicated and semi-dedicated hosting

A basic phishing kit scanner for dedicated and semi-dedicated hosting

detect technologies with wappalyzer alternative

A OSINT project that explores how to dump data from React

Automated WAF assessment tool that detects firewall vendors, tests 19 attack categories with advanced evasion payloads, and provides color-coded…

Windows-based C++ network scanner that fingerprints Cisco SD-WAN/vManage services and checks for CVE-2026-20127 exposure via HTTP endpoint analysis.

Automated Exploit Tool for Grafana CVE-2021-43798: Scanning common files that contain juicy informations and extracting SSH keys from compromised…

Automated Exploit Tool for Grafana CVE-2021-43798: Scanning common files that contain juicy informations and extracting SSH keys from compromised…

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

🔐 Learn authentication by building it right. An extensible, standards-compliant reference implementation for Cloudflare Workers with Hono, Turso,…

A browser extension that encrypts your communications with many websites that offer HTTPS but still allow unencrypted connections.

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Multi-language detection scripts for CVE-2025-55182 (React2Shell) that scan package.json files to identify vulnerable React dependency versions and…

Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

Audits ASP.NET applications for pre-published machine keys to detect ViewState deserialization vulnerabilities and insecure forms authentication…

Repository dedicated to the analysis and exploitation of CVE-2023-26048 in Jetty 9.4.31, providing vulnerability research and proof-of-concept code…

Repository dedicated to CVE-2021-34428, a vulnerability in Jetty 9.4.31. Provides a patched or vulnerable version for analysis and testing of the…

Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based on specific…

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.