
PwnXSS
PwnXSS: Vulnerability (XSS) scanner exploit

PwnXSS: Vulnerability (XSS) scanner exploit


CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…


Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Go-based CLI scanner for web cache poisoning and deception. Supports 10 poisoning techniques, multiple deception methods, built-in crawler, JSON…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Automated vulnerability scanner for Oracle WebLogic Server, detecting historical CVEs including deserialization, SSRF, and arbitrary file upload with…

DOM XSS scanner for Single Page Applications

Proof-of-concept scanner for the Optionsbleed vulnerability (CVE-2017-9798) that tests Apache HTTP servers for memory leak via HTTP OPTIONS method.

Text4Shell scanner for Burp Suite

Ladon Scanner For Python, Large Network Penetration Scanner & Cobalt Strike, vulnerability / exploit / detection /…

An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.

Burp extension scanner for CRLF injection and HTTP desync attacks, using mutated probes, WAF false-positive checks, and optional…

Scanner for CVE-2025-55182 (React) and CVE-2025-66478 (Next.js) - Track and remediate a critical React Server Components (RSC) / Flight protocol…