Starred repositories
Fast passive subdomain enumeration tool.
This scanner detects Cisco SEG/SEWM appliances vulnerable to CVE-2025-20393, a critical unauthenticated RCE vulnerability in Cisco AsyncOS affecting devices with Spam Quarantine feature exposed to…
Supports RSC fingerprinting and exploitation of the React component vulnerability CVE-2025-55182.
High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)
Production-grade Web Application Firewall testing tool. Detects Cloudflare, AWS WAF, Akamai & more. Identifies bypass vectors via URL normalization. Perfect for bug bounty & pentesting.
MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple database systems. The tool supports both single-…
Burp Suite extension that mutates ciphers to bypass TLS-fingerprint based bot detection
A security system to protect your vibecoded apps
A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.
Atlassian Compass terraform provider
A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive audit capabilities.
wappalyzer alternative based on wappalyzer browser extension
IZZZIO - Fully customizable blockchain platform | Node
Street Legal: Redline hook-based Multiplayer modification
This repository contains a collection of honeypots for the Express framework to prevent automated scanning.
Second version of StarWave network protocol implementation
A Chrome extension that automatically scans web pages and internal links for user-defined keywords, storing results and sending notifications or alerts.
CLI tool that fetches resolved & disclosed HackerOne reports by vulnerability and exports them to CSV.
Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit
The Swiss Army knife for automated Web Application Testing
A webshell and a normal file that have the same MD5
A realistic exam simulator for CKAD, CKA, and CKS featuring timed sessions and hands-on labs with pre-configured clusters.
Open-source AI agents for penetration testing