Promote your tool

Your cybersecurity solution deserves to be seen, feature it on our site!

> Featured this week

MultiDump
featured
MultiDump

Post-exploitation tool for dumping and extracting LSASS memory discreetly.

SharpC2
featured
SharpC2

Command and Control Framework written in C#.

Quickjack
featured
Quickjack

Point-and-click tool for producing advanced clickjacking and frame-slicing attacks.

RsaCtfTool
featured
RsaCtfTool

RSA multi-attacks tool: uncypher data from a weak public key and try to recover a private key.

autoSubTakeover
featured
autoSubTakeover

A tool used to check if a CNAME resolves to the scope address.

> Last added

MSSQLand
MSSQLand

Navigate and conquer Microsoft SQL Server servers and their linked instances.

JS Recon Buddy
JS Recon Buddy

A passive browser extension to find secrets, endpoints and XSS sinks in JS and HTML.

grype
grype

A vulnerability scanner for container images and filesystems.

jwt-cracker
jwt-cracker

Simple JWT token brute force cracker.

server-side-prototype-pollution
server-side-prototype-pollution

Identifies server-side prototype pollution vulnerabilities.

prototype-pollution-exploits
prototype-pollution-exploits

Prototype Pollution exploits collection.

ppmap
ppmap

Exploitation tool which leverages client-side Prototype Pollution to XSS.

SayHello
SayHello

Improved version of SayCheese, designed to capture images via social engineering.

SayCheese
SayCheese

Grab target's webcam shots by link.

SafeLine
SafeLine

A self-hosted WAF to protect web applications from cyber attacks.