Automatic SQL injection and database takeover tool
-
Updated
Sep 28, 2026 - Python
Automatic SQL injection and database takeover tool
Making Favicon.ico based Recon Great again !
My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.
The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch
Metasploit-like pentest framework derived from TIDoS (https://github.com/0xInfection/TIDoS-Framework)
Comment2Shell is a zero click pre auth RCE exploit for WordPress CVE-2026-93485. An anonymous comment plants stored XSS that fires when an admin views the post and drops a self deleting webshell. Full chain PoC with scanner interactive shell Nuclei template and Docker
portProbe is a tool designed to efficiently probe for open ports. It will take both IP Address and Subdomains.
Ever wanted to document (screenshot) sites and services on a large pentest? Me too.
Automation scripts for PortSwigger labs
web application penetration testing and security notes.
Automatic Screenshots for web vulnerabilities on various platforms.
A comprehensive, modular web vulnerability scanner built in Python for authorized security testing of your own applications.
Tool designed to find location of newly uploaded file when not given by the website.
PortSwigger Web Security Academy lab writeups
To associate your repository with the webappsec topic, visit your repo's landing page and select "manage topics."