Generates payloads that exploit unsafe Java object deserialization.
An intentionally vulnerable web API game for learning and training purposes.
Enumerating and attacking Java Remote Method Invocation services.
An extremely buggy web application!.
A really fast HTTP prober.
DNS Enumeration Script.
Mifare classic offline cracker.
DeHashed provides free deep-web scans and protection against credential leaks.
Burp Suite extension to check JWT for using keys from known from public sources.
Tool to bypass 40X response codes.
A damn vulnerable Azure infrastructure.
Advanced AWS access credentials scanner.
JWT brute force cracker written in C.
Used for REST API pentesting and provide UI solution for gem.
Informative site with EoL dates of everything.