Starred repositories
Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.
Some scripts created for easier installation/usages of tools
Scan websites for exposed Supabase JWTs, enumerate accessible tables, and detect sensitive data exposure automatically.
ExecSentry — Arbitrary Binary Execution Vulnerability Scanner
Fast passive subdomain enumeration tool.
Supports RSC fingerprinting and exploitation of the React component vulnerability CVE-2025-55182.
High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)
Production-grade Web Application Firewall testing tool. Detects Cloudflare, AWS WAF, Akamai & more. Identifies bypass vectors via URL normalization. Perfect for bug bounty & pentesting.
MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple database systems. The tool supports both single-…
Burp Suite extension that mutates ciphers to bypass TLS-fingerprint based bot detection
A security system to protect your vibecoded apps
A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.
Atlassian Compass terraform provider
A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive audit capabilities.
wappalyzer alternative based on wappalyzer browser extension
IZZZIO - Fully customizable blockchain platform | Node
Street Legal: Redline hook-based Multiplayer modification
This repository contains a collection of honeypots for the Express framework to prevent automated scanning.
Second version of StarWave network protocol implementation
A Chrome extension that automatically scans web pages and internal links for user-defined keywords, storing results and sending notifications or alerts.
CLI tool that fetches resolved & disclosed HackerOne reports by vulnerability and exports them to CSV.