Promote your tool

Gain the exposure you deserve in the cybersecurity community!

> Featured this week

WeakestLink
featured
WeakestLink

Browser extension that extracts users from LinkedIn company pages.

OWASP Juice Shop
featured
OWASP Juice Shop

Probably the most modern and sophisticated insecure web application.

SharpImpersonation
featured
SharpImpersonation

A User Impersonation tool - via Token or Shellcode injection.

httpscreenshot
featured
httpscreenshot

Grabs screenshots and HTML of large numbers of websites.

related-domains
featured
related-domains

Find related domains of a given domain.

> Last added

MSSQLand
MSSQLand

Navigate and conquer Microsoft SQL Server servers and their linked instances.

JS Recon Buddy
JS Recon Buddy

A passive browser extension to find secrets, endpoints and XSS sinks in JS and HTML.

grype
grype

A vulnerability scanner for container images and filesystems.

jwt-cracker
jwt-cracker

Simple JWT token brute force cracker.

server-side-prototype-pollution
server-side-prototype-pollution

Identifies server-side prototype pollution vulnerabilities.

prototype-pollution-exploits
prototype-pollution-exploits

Prototype Pollution exploits collection.

ppmap
ppmap

Exploitation tool which leverages client-side Prototype Pollution to XSS.

SayHello
SayHello

Improved version of SayCheese, designed to capture images via social engineering.

SayCheese
SayCheese

Grab target's webcam shots by link.

SafeLine
SafeLine

A self-hosted WAF to protect web applications from cyber attacks.