


Simple Backdoor Manager with Python (based on weevely)

A fast, simple, recursive content discovery tool written in Rust.

It's a simple tool for test vulnerability shellshock

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.

Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.

Automates SQL injection exploitation with SQLMAP, crawls for vulnerabilities, extracts database credentials, finds admin login pages, and cracks…

Windows Oracle Database Attack Toolkit

Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14…

A simple tool to interact with web shells and command injection vulnerabilities

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

WPScan rewritten in Python + some WPSeku ideas

Human and machine readable web vulnerability testing format

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

PoC for CVE-2025-54589 – a reflected XSS vulnerability in Copyparty ≤ 1.18.6.

A simple C-based vulnerability in Webmin versions 1.890 to 1.920