


A next-generation crawling and spidering framework.

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Next generation web scanner

Advanced reconnaissance utility

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Damn Small XSS Scanner

htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.

Faster xss scanner,support reflected-xss and dom-xss

XSS scanner that detects Cross-Site Scripting vulnerabilities in website by injecting malicious scripts

GUI Burp Plugin to ease discovering of security holes in web applications

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

Web vulnerability scanner focused on automated XSS/CSP bypass payload testing and batch SQL injection detection, using SQLMap and reporting only…

log4j2 RCE漏洞(CVE-2021-44228)内网扫描器,可用于在不出网的条件下进行漏洞扫描,帮助企业内部快速发现Log4jShell漏洞。

A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.

WordPress Pre-Auth RCE Exploit + Scanner + WAF Bypass | CVE-2026-63030 + CVE-2026-60137 | Go + Python + Metasploit modules + Docker lab

Asynchronous WordPress security scanner with WAF bypass via headless browser. Enumerates plugins, themes, users, and multisite installations with…