
Egyscan
Automated web vulnerability scanner with multi-threaded crawling and payload injection engine. Detects SQLi, XSS, RCE, LFI, SSRF, XXE, and 30+ other…

Automated web vulnerability scanner with multi-threaded crawling and payload injection engine. Detects SQLi, XSS, RCE, LFI, SSRF, XXE, and 30+ other…

Primitive web application scanner that crawls sites, extracts hidden information from comments, errors, and file paths, and performs directory…

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

automated web assets enumeration & scanning [DEPRECATED]

massive SQL injection vulnerability scanner

Collection of scripts and tools used during bug bounty work. This will be the location of my automation scripts created for my own personal use, and…

Nuclei templates for detecting Fortra GoAnywhere MFT vulnerabilities, including CISA KEV exploits and ransomware-associated CVEs, with automatic…

Safe PowerShell validator for PHP CVE-2026-17543 exposure via HTTP headers and non-destructive login-form probes.

Non-destructive detector for CVE-2026-64638 (XSS2Shell) — WordPress pre-auth XSS reflection primitive

WordPress security scanner that fingerprints versions, detects reflected XSS across multiple targets concurrently, and supports an authenticated…

Nuclei template to detect Oracle EBS instances likely vulnerable to CVE-2025-53072 and CVE-2025-62481 via Last-Modified header fingerprinting.

Automated Nuclei templates for scanning n8n Workflow Automation instances, with daily CVE detection, version fingerprinting, and multi-source threat…

Laravel Ignition contains a cross-site scripting vulnerability when debug mode is enabled.

Scanner: CVE-2026-3854 GitHub Enterprise Server Pre-auth RCE via Push Option Injection — Python checker (CISA KEV)

Modular web application security scanner with fingerprinting (server, CMS, WAF, CDN) and attack modules (SQLi, XSS, RFI, brute-force) for automated…

Scanner to detect the presence of CVE-2025-55182 & CVE-2025-66478 on targeted web services.

A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidden elements…

Async Python scanner that detects CVE-2025-29927 in Next.js apps by processing URL lists with aiohttp, connection pooling, caching, and chunked…