NavSec is the most comprehensive passive web vulnerability and privacy scanner. It performs real-time security analysis directly in your browser, running over 140 automated tests that quickly and accurately detect more than 80 types of vulnerabilities, including exposure of personal data.
☆24Sep 13, 2025Updated 11 months ago
Alternatives and similar repositories for navsec
Users that are interested in navsec are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Signal Tracking & Detection☆34Mar 18, 2026Updated 5 months ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆16Aug 4, 2023Updated 3 years ago
- # 🕵️ PathCatcher v1.0 - Path Traversal & LFI Scanner☆24Jul 13, 2025Updated last year
- APILEECH is a browser extension that functions as an API endpoint sniffer, capturing network requests to help users bypass limits and acc…☆17Mar 8, 2026Updated 5 months ago
- Chrome DevTools HTTP workbench with built-in AI.☆19Dec 9, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- This POC exploits a format validation vulnerability in the RTSP service of the Hipcam RealServer/V1.0, inducing a crash for approximately…☆19May 2, 2024Updated 2 years ago
- Reverse Shell x86☆16Jan 6, 2019Updated 7 years ago
- A powerful Bash script for extracting URLs and API endpoints from HTML, JavaScript, and JSON content of web pages. Designed for security …☆18Jun 23, 2026Updated 2 months ago
- Magento Security Scanner☆13Jan 10, 2022Updated 4 years ago
- MIT license BRS-XSS is a modular Python CLI scanner for XSS vulnerabilities. Features context-aware payloads, WAF evasion, DOM analysis v…☆34Jan 12, 2026Updated 7 months ago
- An exotic service bruteforce tool.☆14Apr 12, 2025Updated last year
- Automated Mass Exploiter☆12Apr 14, 2019Updated 7 years ago
- Match & Replace rules for Portswigger's Burp that operate globally across all utilities.☆24Jan 26, 2026Updated 7 months ago
- Tool to fuzz for interesting vhost.☆23Jan 8, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Wazuh wodle that integrates Google Workspace admin events (just like the O365 integration)☆40Jan 26, 2026Updated 7 months ago
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 5 months ago
- Reports on Driver, LSASS and other security services mitigations☆36Aug 18, 2025Updated last year
- Burp Suite extension to detect Web Cache Deception vulnerabilities, now compatible with the Community Edition. Automates advanced cache …☆19Jun 11, 2026Updated 2 months ago
- An AI-driven vulnerability scanner that uses Nmap to discover open services on a user-supplied IP, matches each service to relevant CVEs …☆46Jun 1, 2025Updated last year
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆148Jan 21, 2025Updated last year
- DevSecOps for the AI-era CI/CD pipeline. Catches the bugs your AI coding assistant introduces — before they reach production.☆32Updated this week
- A proof‑of‑concept C2 framework that uses Server‑Sent Events (SSE) and the MCP protocol for agent registration, command dispatch, and res…☆35Apr 28, 2025Updated last year
- Three LLMs review your design plan in parallel — paste 30 lines into your CLAUDE.md, no install needed.☆15May 2, 2026Updated 4 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Passive JavaScript reconnaissance for penetration testers — bridging Burp Suite traffic into structured, AST-based analysis in VSCode.☆36Feb 5, 2026Updated 7 months ago
- CVE-2024-27198 & CVE-2024-27199 PoC - RCE, Admin Account Creation, Enum Users, Server Information☆35Jul 19, 2024Updated 2 years ago
- Burpsuite Extension for Jsmon☆25Jul 1, 2026Updated 2 months ago
- FIles and guides related to using Elasticstack as a SIEM☆12May 16, 2020Updated 6 years ago
- Java ME (MIDP 2.0 / CLDC 1.1) mobile client for MeshCore Companion Radio over Wi-Fi TCP, with messaging, repeaters, trace path tools, and…☆25May 9, 2026Updated 3 months ago
- The Complete Guide to Dorking for Bug Bounty Hunters☆23Jan 1, 2026Updated 8 months ago
- Burp Suite Extension useful to inspect UPnP security☆17Nov 9, 2021Updated 4 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆13Mar 5, 2021Updated 5 years ago
- This tool extracts hidden metadata from online documents (PDF, Word, Excel, Images) to reveal information about the document's origin, au…☆28Sep 4, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A PoC executing shellcode in Dart☆15Jun 28, 2022Updated 4 years ago
- Uscrapper 2.0, a powerful OSINT webscraper for personal data collection. Uscrapper uses web scraping to extract email IDs, social-media l…☆28Feb 10, 2024Updated 2 years ago
- ☆16Oct 24, 2018Updated 7 years ago
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆70Feb 22, 2026Updated 6 months ago
- Track planes by ICAO, Type, Operator and Squawk and issue notifications on Mastodon, Discord, and Twitter☆14Jan 10, 2024Updated 2 years ago
- ☆40Oct 16, 2025Updated 10 months ago
- Download images from URLs within a CSV☆13Jan 6, 2021Updated 5 years ago