Promote your tool

Connect with potential users and investors, showcase your tool here!

> Featured this week

APKiD
featured
APKiD

Android application identifier for packers, protectors, obfuscators and oddities.

mentalist
featured
mentalist

Graphical tool for custom wordlist generation.

lsassy
featured
lsassy

Python tool to remotely extract credentials on a set of hosts.

SecurityTrails
featured
SecurityTrails

Data for Security companies, researchers and teams.

DumpsterDiver
featured
DumpsterDiver

Tool to search secrets in various filetypes.

> Last added

MSSQLand
MSSQLand

Navigate and conquer Microsoft SQL Server servers and their linked instances.

JS Recon Buddy
JS Recon Buddy

A passive browser extension to find secrets, endpoints and XSS sinks in JS and HTML.

grype
grype

A vulnerability scanner for container images and filesystems.

jwt-cracker
jwt-cracker

Simple JWT token brute force cracker.

server-side-prototype-pollution
server-side-prototype-pollution

Identifies server-side prototype pollution vulnerabilities.

prototype-pollution-exploits
prototype-pollution-exploits

Prototype Pollution exploits collection.

ppmap
ppmap

Exploitation tool which leverages client-side Prototype Pollution to XSS.

SayHello
SayHello

Improved version of SayCheese, designed to capture images via social engineering.

SayCheese
SayCheese

Grab target's webcam shots by link.

SafeLine
SafeLine

A self-hosted WAF to protect web applications from cyber attacks.