Take it like a gift

Aranea
Aranea

OSINT tool used for web crawling or examining JavaScript files for likely useful data.

DotGit
DotGit

An extension for checking if .git is exposed in visited websites.

bxss.net
bxss.net

Web service that allows for detection Blind XSS vulnerabilities within web applications.

DripLoader
DripLoader

Evasive shellcode loader for bypassing injection detection.

angularjs-csti-scanner
angularjs-csti-scanner

Automated client-side template injection detection for AngularJS.

a2sv
a2sv

Auto Scanning to SSL Vulnerability.

LocalPotato
LocalPotato

Another local Windows privilege escalation using a new potato technique.

subzy
subzy

Subdomain takeover vulnerability checker.

API fuzzer
API fuzzer

Fuzz request attributes using common pentesting techniques and lists vulnerabilities.

ppfuzz
ppfuzz

A fast tool to scan client-side prototype pollution vulnerability written in Rust.

metahttp
metahttp

Script that automates the scanning of a target network for HTTP resources through XXE.

XXE-FTP
XXE-FTP

A mini webserver with FTP support for XXE payloads.

autoSSRF
autoSSRF

Smart context-based SSRF vulnerability scanner.

De4py
De4py

toolkit for python reverse engineering.

B-XSSRF
B-XSSRF

Toolkit to detect and keep track on Blind XSS, XXE & SSRF.