evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).
☆839May 25, 2026Updated last month
Alternatives and similar repositories for evilwaf
Users that are interested in evilwaf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Disposable, ephemeral network infrastructure powered by GitHub Codespaces.☆124Jul 4, 2026Updated 2 weeks ago
- ☆332Updated this week
- ☆194Mar 16, 2026Updated 4 months ago
- The Ultimate Information Gathering Toolkit☆3,848Dec 10, 2025Updated 7 months ago
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆2,753May 8, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.☆2,811Jul 7, 2026Updated 2 weeks ago
- EVA is an AI-assisted penetration testing agent that enhances offensive security workflows by providing structured attack guidance, conte…☆426Jun 16, 2026Updated last month
- ↕️🤫 Stealth redirector for your red team operation security☆1,096Updated this week
- AI-powered ffuf wrapper☆796Dec 4, 2025Updated 7 months ago
- ☆396Updated this week
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆241Jul 7, 2026Updated 2 weeks ago
- AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude…☆4,011Updated this week
- RepShot · Generate professional security finding cards directly from Burp Suite Repeater.☆99May 31, 2026Updated last month
- ☆79Jan 1, 2026Updated 6 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for…☆303Updated this week
- Vulnerability detection framework by Binarly's REsearch team☆855Updated this week
- Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.☆271Dec 18, 2025Updated 7 months ago
- Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more☆1,363Jul 15, 2026Updated last week
- Anonymous MAC address rotation tool for pentesting & OPSEC☆29Dec 28, 2025Updated 6 months ago
- High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential v…☆643Updated this week
- AIRecon is an autonomous cybersecurity agent that combines a self-hosted Large Language Model (Ollama) with a Kali Linux Docker sandbox a…☆799Jun 20, 2026Updated last month
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,421Jun 7, 2026Updated last month
- Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and co…☆676May 16, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Autonomous red teaming and evidence-backed security evaluation for live AI agents.☆27Updated this week
- Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephe…☆569Oct 3, 2025Updated 9 months ago
- A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.☆306May 3, 2026Updated 2 months ago
- Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database☆267Nov 3, 2025Updated 8 months ago
- Production-grade Web Application Firewall testing tool. Detects Cloudflare, AWS WAF, Akamai & more. Identifies bypass vectors via URL nor…☆47Nov 17, 2025Updated 8 months ago
- A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.☆595Jul 6, 2026Updated 2 weeks ago
- Passive leak enumeration tool.☆553Updated this week
- AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)☆294Jan 21, 2026Updated 6 months ago
- AdaptixC2 is a highly modular advanced redteam toolkit☆3,399Jul 15, 2026Updated last week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A fast WordPress plugin enumeration tool☆925Jul 9, 2026Updated 2 weeks ago
- Active Directory Vulnerability Scanner☆460Mar 3, 2026Updated 4 months ago
- SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connecti…☆454Nov 3, 2025Updated 8 months ago
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,820Jun 21, 2026Updated last month
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆508Mar 15, 2026Updated 4 months ago
- Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and book…☆558Jan 8, 2026Updated 6 months ago
- Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bo…☆786May 31, 2026Updated last month