Finds publicly known security vulnerabilities in a website's frontend
Vulnerable implementation of Facebook's GraphQL technology
PHP/MySQL web application
Scanner detecting the use of JavaScript libraries
UFONet - Denial of Service Toolkit
WPScan WordPress security scanner
Vulnerable app with examples showing how to not use secrets
The first messaging platform operating without user identifiers
A tool that allows you to create vulnerable environments
Fully autonomous AI hacker to find actual exploits in your web apps
Browser fingerprinting library
Fast, small, webkit based browser framework extensible by Lua
Open source cloud native security observability platform
Network security scanner for detecting severity vulnerabilities
Find secrets and passwords in container images and file systems
The firmware security analyzer
Mine parameterized URLs from web archives for security testing
OSINT tool to collect emails from social networks and find leaks
NAT Slipstreaming allows an attacker to remotely access any TCP/UDP
Tool to check for dependency confusion vulnerabilities
Kubesploit is a cross-platform post-exploitation HTTP/2 Command
Vulnerable Pentesting Lab Environment
Virtual training environment to learn web app ethical hacking.
Apache module to prevent cross-site request forgery.