evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).
☆893Aug 7, 2026Updated last month
Alternatives and similar repositories for evilwaf
Users that are interested in evilwaf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Disposable, ephemeral network infrastructure powered by GitHub Codespaces.☆127Jul 23, 2026Updated 2 months ago
- ☆394Updated this week
- ☆197Mar 16, 2026Updated 6 months ago
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆6,753Updated this week
- The Ultimate Information Gathering Toolkit☆4,227Dec 10, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.☆3,105Updated this week
- EVA is an AI-assisted penetration testing agent that enhances offensive security workflows by providing structured attack guidance, conte…☆528Jun 16, 2026Updated 3 months ago
- ↕️🤫 Stealth redirector for your red team operation security☆1,108Jul 20, 2026Updated 2 months ago
- AI-powered ffuf wrapper☆807Dec 4, 2025Updated 9 months ago
- AI-powered bug bounty hunting toolkit that works with or without subscription.☆5,125Updated this week
- ☆401Sep 14, 2026Updated last week
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆244Sep 11, 2026Updated last week
- Anonymous MAC address rotation tool for pentesting & OPSEC☆33Dec 28, 2025Updated 8 months ago
- RepShot · Generate professional security finding cards directly from Burp Suite Repeater.☆108May 31, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more☆1,504Sep 2, 2026Updated 2 weeks ago
- Vulnerability detection framework by Binarly's REsearch team☆882Aug 25, 2026Updated 3 weeks ago
- Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.☆275Dec 18, 2025Updated 9 months ago
- High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential v…☆705Updated this week
- ☆80Jan 1, 2026Updated 8 months ago
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,584Jun 7, 2026Updated 3 months ago
- Autonomous red teaming and evidence-backed security evaluation for live AI agents.☆28Jul 22, 2026Updated 2 months ago
- AIRecon is an autonomous cybersecurity agent that combines a self-hosted Large Language Model (Ollama) with a Kali Linux Docker sandbox a…☆1,063Sep 11, 2026Updated last week
- A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for…☆491Aug 19, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and co…☆837May 16, 2026Updated 4 months ago
- Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephe…☆571Oct 3, 2025Updated 11 months ago
- A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.☆322Aug 19, 2026Updated last month
- Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database☆267Nov 3, 2025Updated 10 months ago
- A tool that helps you find the real IP addresses hiding behind Cloudflare.☆644Jul 6, 2026Updated 2 months ago
- Passive leak enumeration tool.☆594Sep 11, 2026Updated last week
- AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)☆298Jan 21, 2026Updated 8 months ago
- AdaptixC2 is a highly modular advanced redteam toolkit☆3,621Updated this week
- Production-grade Web Application Firewall testing tool. Detects Cloudflare, AWS WAF, Akamai & more. Identifies bypass vectors via URL nor…☆46Nov 17, 2025Updated 10 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A fast WordPress plugin enumeration tool☆951Aug 25, 2026Updated 3 weeks ago
- Active Directory Vulnerability Scanner☆481Mar 3, 2026Updated 6 months ago
- Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and book…☆557Jan 8, 2026Updated 8 months ago
- Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bo…☆814May 31, 2026Updated 3 months ago
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,883Jun 21, 2026Updated 3 months ago
- SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connecti…☆454Nov 3, 2025Updated 10 months ago
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆508Mar 15, 2026Updated 6 months ago