


Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.

Module-based web vulnerability scanner and bug bounty automation framework with built-in XSS, SSTI, SSRF, and Firebase detection engines. Designed to…

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

Apache HTTP Server Vulnerability Testing Tool | PoC for CVE-2024-38472 , CVE-2024-39573 , CVE-2024-38477 , CVE-2024-38476 , CVE-2024-38475 ,…

CRLFISCANNER is a lightweight and powerful CLI tool designed for bug bounty hunters and penetration testers to automatically detect CRLF injection…

A fast, simple scanner for detecting CVE-2025-66470 - XSS vulnerability in NiceGUI's ui.interactive_image component.

Egyscan The Best web vulnerability scanner; it's a multifaceted security powerhouse designed to fortify your web applications against malicious…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…


w3af: web application attack and audit framework, the open source web vulnerability scanner.

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

Nuclei Templates Collection

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Go Web Application Penetration Test

GUI Burp Plugin to ease discovering of security holes in web applications

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.