Starred repositories
JSI. Java Shellcode Injector. It is Runner & Payload Builder, is a lightweight red-team framework for **generating** and **executing** shellcode payloads using: - **Donut** — converts EXE/DLL/.NET …
A library for detecting known secrets across many web frameworks
Telegram Desktop tdata folder decrypter written in python
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
A next-generation crawling and spidering framework.
MegaManSec / Gixy-Next
Forked from yandex/gixyGixy-Next: NGINX Configuration Security Scanner & Performance Checker
Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.
Some scripts created for easier installation/usages of tools
Scan websites for exposed Supabase JWTs, enumerate accessible tables, and detect sensitive data exposure automatically.
ExecSentry — Arbitrary Binary Execution Vulnerability Scanner
Fast passive subdomain enumeration tool.
Supports RSC fingerprinting and exploitation of the React component vulnerability CVE-2025-55182.
High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)
Production-grade Web Application Firewall testing tool. Detects Cloudflare, AWS WAF, Akamai & more. Identifies bypass vectors via URL normalization. Perfect for bug bounty & pentesting.
MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple database systems. The tool supports both single-…
Burp Suite extension that mutates ciphers to bypass TLS-fingerprint based bot detection
A security system to protect your vibecoded apps
A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.
Atlassian Compass terraform provider
A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive audit capabilities.
wappalyzer alternative based on wappalyzer browser extension
IZZZIO - Fully customizable blockchain platform | Node