Free XP on bug bounty, vulnerability scanning by wrapping well maintained tools, to perform automated tests. Alongside AI agents for binary analysis, which includes connecting to external Android or emulator to perform dynamic analysis.
☆44May 21, 2026Updated 2 months ago
Alternatives and similar repositories for xpfarm
Users that are interested in xpfarm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified w…☆193Mar 26, 2026Updated 3 months ago
- visually see issues with supported cipher suites☆19May 28, 2026Updated last month
- Give me your APK, I will give you framework name☆15May 6, 2026Updated 2 months ago
- CVE-2026-21643☆18Mar 28, 2026Updated 3 months ago
- ☆14Feb 2, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Small Script that permits to enumerate folders in Windows Defender Exclusion List with no Administrative privileges☆27Nov 20, 2024Updated last year
- Proof-of-Concept for Authorization Bypass in Next.js Middleware☆20Mar 23, 2025Updated last year
- Demo showing Claude Opus does not find CVE-2023-0266☆16Mar 19, 2024Updated 2 years ago
- A collection of reusable red teaming agent skills derived from Hacktricks created with Qwen3.5-27B-FP8☆20Mar 23, 2026Updated 4 months ago
- SSRFHunter☆18Jan 17, 2026Updated 6 months ago
- CVE-2026-26980 — Ghost CMS Content API SQL Injection Lab (unauthenticated blind SQLi via slug filter ordering)☆15Apr 18, 2026Updated 3 months ago
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- URILoot is a browser extension designed for Bug Bounty Hunters and Pentesters. Makes fetching uris easy from various sources.☆63Feb 15, 2026Updated 5 months ago
- GBounty Profiles are customizable security test definitions used by the GBounty web scanner to identify vulnerabilities in web applicatio…☆25Mar 11, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Scrape all wordpress plugins (updates every 6 hour)☆25Updated this week
- KeePass Master Password Stealer using Hooking☆16Aug 29, 2025Updated 10 months ago
- A WordPress rest-enumeration script☆10Jun 3, 2026Updated last month
- ☆20Apr 27, 2026Updated 2 months ago
- Simple command shell collections☆35Mar 7, 2021Updated 5 years ago
- ☆54Mar 24, 2026Updated 3 months ago
- Burpsuite Extension for Jsmon☆25Jul 1, 2026Updated 3 weeks ago
- Burp Suite extension — passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, ent…☆34May 15, 2026Updated 2 months ago
- ☆27May 21, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆10Apr 13, 2022Updated 4 years ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated 2 years ago
- parse ffuf & map endpoints to wordlists☆21Feb 25, 2021Updated 5 years ago
- A modern C2 framework for authorized red team operations☆52Updated this week
- ☆24Apr 17, 2026Updated 3 months ago
- Apache (CVE-2025-24813) GOExploiter Checker & Exploiter very Fast☆20Oct 5, 2025Updated 9 months ago
- Laravel PhpUnit Rce And Get Env Exploiter☆25Jun 30, 2019Updated 7 years ago
- Passive JavaScript reconnaissance for penetration testers — bridging Burp Suite traffic into structured, AST-based analysis in VSCode.☆36Feb 5, 2026Updated 5 months ago
- 一款支持检测web应用程序未授权访问缺陷的burp suite插件,可自定义配置检测字段以及返回包json数据分析☆13Apr 22, 2024Updated 2 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Full and complete RCE exploit for Magento Polyshell☆27Apr 9, 2026Updated 3 months ago
- The only OSCP preparation repository you need: notes, tooling, reporting, prep-list, methodology, and security resources.☆46Jun 13, 2026Updated last month
- Automated Recon Tool Installer☆16Jun 29, 2022Updated 4 years ago
- CVE-2025-60188 Atarim Plugin Exploit☆22Jan 17, 2026Updated 6 months ago
- Makeup store iOS app developed in Swift☆11Apr 28, 2023Updated 3 years ago
- XSS reflector vulnerabilities exploitation extended.☆28Jul 25, 2021Updated 4 years ago
- Check arbitrary file download vulnerability in the WordPress☆23Feb 21, 2020Updated 6 years ago