
w3af
Open-source web application security scanner that identifies and exploits 200+ vulnerabilities including XSS, SQL injection, and OS commanding.…

Open-source web application security scanner that identifies and exploits 200+ vulnerabilities including XSS, SQL injection, and OS commanding.…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Hack the World using Termux

Web vulnerability scanner written in Python3


AI-powered bug bounty hunting toolkit that works with or without subscription.

The plugin, used as a companion for the Discy and Himer themes, does not sanitise and escape a parameter on its reset password form which makes it…

Automatic SQL injection and database takeover tool

Vulnerability detection scripts for the n8n product.

Web Application Vulnerability Scanner.

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Burp extension scanner for CRLF injection and HTTP desync attacks, using mutated probes, WAF false-positive checks, and optional…

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

A fast, simple, recursive content discovery tool written in Rust.

CVE-2023-3519 vuln for nuclei scanner

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.