Online local vulnerability scanners project.
A tool to hunt for credentials in GitHub wild AKA git*hunt.
A hub for finding CVEs and exploits based on the official NIST, ExploitDB and Github databases.
The Browser Exploitation Framework is a penetration testing tool that focuses on the web browser.
Burp Extender API.
Automatically brute force all services running on a target.
Scan your source code against top security and privacy risks.
403/401 Bypass Methods.
Enumerating and attacking Java Remote Method Invocation services.
In-depth Attack Surface Mapping and Asset Discovery.
Uses data from SSL Certificates to find potential host names.
A simple CLI tool for making tunnels to localhost.
Take a list of resolved subdomains and output any corresponding CNAMES en masse.
A framework including all the tools that work on Windows.
Obtain GraphQL API Schema even if the introspection is not enabled.