
mzap
⚡️ Multiple target ZAP Scanning

⚡️ Multiple target ZAP Scanning

Reproducer for CVE-2026-48206: Apache Camel camel-jira IssueKey (and other non-Camel-prefixed) header injection driving arbitrary JIRA issue…

CVE Reproduction: cve-2025-61882-oracle_ebs_rce_reproduction

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

An strace-like program for the Windows 'native' API

This extension enhances Burp Suite by adding several UI and functional features, making it more user-friendly.

The collaborative web app pentest suite

Drop-in fix for the unpatched MCP STDIO command-injection flaw (CVE-2026-30623 family)

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…

50+ detectors across 10 categories, with continuous monitoring built in: schedule recurring scans, get alerted only on new findings, track your…

Automated WAF security testing tool that detects false positives and false negatives using 15+ payload categories including SQLi, XSS, RCE, and…


Stock vulnerable wordpress RCE poc for wp2shell.

A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)


Discover hidden parameters in Caido

Reproducer for CVE-2026-46588: Apache Camel camel-couchdb CouchDb* header injection (operation confusion) subverting a write-only endpoint into read…

Reproducer for CVE-2026-46587: Apache Camel camel-couchbase CCB_* header injection enabling document disclosure, tampering, and TTL-forced data…