Skip to content
Change the repository type filter

All

    Repositories list

    • Internet wide surveys to study and understand the security state of Internet as well as facilitate research into various components / topics which originate as a result of our surveys.
      0500Updated Sep 8, 2025Sep 8, 2025
    • A Firebase Misconfiguration Detection Toolkit
      Go
      0000Updated Jul 31, 2025Jul 31, 2025
    • Go
      3800Updated Jul 31, 2025Jul 31, 2025
    • zgrab2

      Public
      Fast Application Layer Scanner
      Go
      338000Updated Apr 15, 2025Apr 15, 2025
    • Virtual Machine for Adversary Emulation and Threat Hunting
      1991.3k51Updated Jan 22, 2025Jan 22, 2025
    • 0700Updated Jan 22, 2025Jan 22, 2025
    • Log4JHunt

      Public
      An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.
      Python
      84400Updated Jan 22, 2025Jan 22, 2025
    • KubeStalk

      Public
      KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.
      Python
      1617201Updated Jan 22, 2025Jan 22, 2025
    • HTTPLoot

      Public
      An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code of sites.
      Go
      4840250Updated Jan 22, 2025Jan 22, 2025
    • 145300Updated Jan 22, 2025Jan 22, 2025
    • Python
      93300Updated Jan 22, 2025Jan 22, 2025
    • Octopii

      Public
      An AI-powered Personal Identifiable Information (PII) scanner.
      Python
      5969320Updated Jan 22, 2025Jan 22, 2025
    • A "Spring4Shell" vulnerability scanner.
      Go
      154910Updated Jan 22, 2025Jan 22, 2025
    • damntls

      Public
      A "really" damned TLS library.
      Go
      0000Updated Jan 22, 2025Jan 22, 2025
    • Atlassian confluence unauthenticated ONGL injection remote code execution scanner (CVE-2022-26134).
      Go
      31100Updated Jan 22, 2025Jan 22, 2025
    • List of Awesome Asset Discovery Resources
      3592.2k57Updated Jan 22, 2025Jan 22, 2025
    • BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom keywords as well as Regular Expressions from publicly-exposed storage buckets by scanning files that store data in plain-text.
      Go
      6043000Updated Jan 22, 2025Jan 22, 2025
    • antisquat

      Public
      Python
      135510Updated Jan 22, 2025Jan 22, 2025
    • Python
      63600Updated Jan 22, 2025Jan 22, 2025
    • Burp Suite extension to discover assets from HTTP response.
      Python
      5222912Updated Jan 22, 2025Jan 22, 2025