Skip to content
Change the repository type filter

All

    Repositories list

    • Gopherus

      Public
      This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
      Python
      MIT License
      367000Updated Oct 10, 2019Oct 10, 2019
    • commix

      Public
      Automated All-in-One OS command injection and exploitation tool.
      Python
      Other
      808000Updated Oct 10, 2019Oct 10, 2019
    • subjack

      Public
      Subdomain Takeover tool written in Go
      Go
      Apache License 2.0
      333000Updated Oct 10, 2019Oct 10, 2019
    • SSRFmap

      Public
      Automatic SSRF fuzzer and exploitation tool
      Python
      MIT License
      513000Updated Oct 4, 2019Oct 4, 2019
    • dotdotpwn

      Public
      DotDotPwn - The Directory Traversal Fuzzer
      Perl
      GNU General Public License v3.0
      176000Updated Sep 17, 2019Sep 17, 2019
    • fimap

      Public
      fimap is a little python tool which can find, prepare, audit, exploit and even google automatically for local and remote file inclusion bugs in webapps.
      Python
      GNU General Public License v2.0
      99000Updated Aug 10, 2019Aug 10, 2019
    • Kadimus

      Public
      Kadimus is a tool to check sites to lfi vulnerability , and also exploit it...
      C
      MIT License
      129000Updated Aug 6, 2019Aug 6, 2019
    • ScanQLi

      Public
      SQLi scanner to detect SQL vulns
      Python
      GNU General Public License v3.0
      64000Updated Jul 15, 2019Jul 15, 2019
    • takeover

      Public
      Sub-Domain TakeOver Vulnerability Scanner
      Python
      227000Updated Jul 2, 2019Jul 2, 2019
    • Python
      63000Updated Jun 6, 2019Jun 6, 2019
    • sqlmate

      Public
      A friend of SQLmap which will do what you always expected from SQLmap.
      Python
      GNU General Public License v3.0
      117000Updated May 5, 2019May 5, 2019
    • Blisqy

      Public
      Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
      Python
      104000Updated Mar 24, 2019Mar 24, 2019
    • bbqsql

      Public
      SQL Injection Exploitation Tool
      Python
      Other
      188000Updated Jan 4, 2019Jan 4, 2019
    • SSRF (Server Side Request Forgery) testing resources
      Python
      477000Updated Nov 16, 2018Nov 16, 2018
    • LFISuite

      Public
      Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
      Python
      GNU General Public License v3.0
      389000Updated May 30, 2018May 30, 2018
    • SSRF Proxy facilitates tunneling HTTP communications through servers vulnerable to Server-Side Request Forgery.
      Ruby
      MIT License
      75000Updated Jan 1, 2018Jan 1, 2018
    • bsql

      Public
      bsql hacker tool
      5000Updated Nov 8, 2017Nov 8, 2017
    • Panoptic

      Public
      Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files through path traversal vulnerabilities.
      Python
      MIT License
      78000Updated Sep 27, 2017Sep 27, 2017
    • Python
      5000Updated Aug 24, 2017Aug 24, 2017