
crlfi
This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

A tool to automate penetration tests

BoB Web Application Security Project

Module-based web vulnerability scanner and bug bounty automation framework with built-in XSS, SSTI, SSRF, and Firebase detection engines. Designed to…

Optiva-Framework 🔎 Web Application Scanner🕵️

Egyscan The Best web vulnerability scanner; it's a multifaceted security powerhouse designed to fortify your web applications against malicious…

Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.

Web vulnerability scanner and exploitation tool with POC/EXP modes for known CVEs across webapps such as Weblogic, Shiro, Struts2, and Tomcat;…

:new: The Multi-Tool Web Vulnerability Scanner.

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

GraphQL server engine fingerprinting tool that sends benign and malformed queries to identify backend technology and assess security defenses via the…

BinGoo! A Linux bash based Bing and Google Dorking Tool

RscScan: Professional cross-platform vulnerability scanner for Next.js Server Actions (CVE-2025-55182). Detects critical RCE flaws with…