
BurpSuite-For-Pentester
This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

This extension will help you to detect GET/POST based XSS vulnerability in any website easily

Collection of scripts and tools used during bug bounty work. This will be the location of my automation scripts created for my own personal use, and…

This repository contains a Python script that checks WordPress websites for the CVE-2022-3590 vulnerability, which exploits an unauthenticated blind…

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially…

CLI scanner for CVE-2006-2842 (PHP include() path truncation) vulnerability. Scans single or multiple URLs to detect this specific web application…

This is a tool used by several security researchers to find Open Redirect Bug

This script scans a list of URLs to detect if they are using **Next.js** and determines whether they are vulnerable to **CVE-2025-29927**. It…

This tool is designed to scan and identify whether a website has an exposed ".git" directory, which may contain sensitive information such as source…

This tool scans WordPress sites for vulnerabilities in the "RegistrationMagic" plugin (CVE-2024-10508). It checks for the presence of a specific…

A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths…

An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to…

This repository features a Nuclei template specifically designed to detect the Path Traversal vulnerability (CVE-2025-25163) in the Plugin A/B Image…

This tool is used to find php info page

A lightweight orchestrator and worker scanner setup for running large/continuous scans across split input files. This repository contains…