
waf-checker
Tests your WAF with +160 payloads

Tests your WAF with +160 payloads

a Damn Vulnerable Serverless Application

A SOCKS proxy written in Python that randomizes your source IP address. Round-robin your evil packets through SSH tunnels or give them billions of…

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

Empire client application

Tools for auditing WAFS

Search for Directory Traversal Vulnerabilities

Web application vulnerability scanner

Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.

A PoC application demonstrating the power of an Android kernel arbitrary R/W.

An exploit for Apache Struts CVE-2017-5638

A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnerability.

OWASP Vulnerable Web Application Project https://github.com/hummingbirdscyber


Remote Code Execution Exploit for Citrix Application Delivery Controller and Citrix Gateway [ CVE-2019-19781 ]

An interactive multi-user web JS shell

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

Go Web Application Penetration Test