A lightweight toolkit for testing Web Application Firewall (WAF) effectiveness and identifying security gaps. This repository is available as a template that you can quickly customize for your own WAF testing needs.
☆63Apr 17, 2025Updated last year
Alternatives and similar repositories for waf-testing
Users that are interested in waf-testing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PACU - Phishing Automation & Campaigning Utility☆37Nov 9, 2022Updated 3 years ago
- A library that scrapes Linkedin for user data☆24May 12, 2021Updated 5 years ago
- A collection of curated YARA rules used as part of the Filescan.io service☆22Updated this week
- Tool to check the CloudTrail configuration and the services where trails are sent, to detect potential attacks to CloudTrail logging.☆13May 25, 2024Updated 2 years ago
- Create your own desktop applications using web technologies you're familiar with, such as PHP, HTML JavaScript, CSS and SQLite☆12Nov 19, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A fake DNS server for malware analysis written in Python3☆10Aug 14, 2022Updated 4 years ago
- the IoT and OT (Operational Technology) Honeypot☆30Mar 16, 2024Updated 2 years ago
- Detect userland hooks placed by AV/EDR☆28Sep 4, 2023Updated 3 years ago
- RADAR (Rapid Assessment of DNS And Reconnaissance) is an advanced DNS reconnaissance tool designed to identify technologies and services …☆104Apr 11, 2025Updated last year
- The Chupacabra case study was created by the ADEO dfir team due to the lack of resources and applications in the digital forensics field.…☆22May 6, 2022Updated 4 years ago
- A wireless playground using mac80211 hwsim devices and docker containers.☆14May 19, 2023Updated 3 years ago
- I share the solutions and scripts of the questions I like in the CTF I enter.☆18Feb 16, 2024Updated 2 years ago
- Welcome to the Very Vulnerable Lambda Application repository! This repository contains an intentionally vulnerable serverless applicatio…☆13Jul 22, 2024Updated 2 years ago
- This is a WIP☆15Jan 12, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ASCII Smuggling Hidden Prompt Injection is a novel approach to hacking AI assistants using Unicode Tags. This project demostrate how to u…☆19Aug 7, 2024Updated 2 years ago
- Several script and images used with the juice jacking kiosks☆12Jul 21, 2013Updated 13 years ago
- ☆15May 23, 2024Updated 2 years ago
- NetFuzzer is a comprehensive network security assessment tool for internal and external network components, including Host Machines, Fire…☆17Aug 4, 2025Updated last year
- Bash-based recon automation script that orchestrates tools like Nmap, Dirsearch (Python), and crt.sh to perform port scanning, directory …☆15Jul 22, 2025Updated last year
- Official urlscan.io and urlscan Pro CLI tool☆37Updated this week
- Probably the easiest way to setup new beacon notifications in Cobalt Strike☆10Jan 7, 2022Updated 4 years ago
- Burp suite extension that lets you easily copy issues☆17Apr 3, 2026Updated 5 months ago
- CVE-2024-25641 - RCE Automated Exploit - Cacti 1.2.26☆10Aug 28, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Veil 3.1.X (Check version info in Veil at runtime)☆16Aug 14, 2019Updated 7 years ago
- An extension of your League of Legends client, more functionalities and utilities.☆14Apr 1, 2023Updated 3 years ago
- AWS Testing and Reporting Management Tool☆20Jan 23, 2023Updated 3 years ago
- Original PoC for CVE-2023-30367☆17Jan 4, 2024Updated 2 years ago
- GeoIP Target Redirection and Target Filter Redirector using GeoIP API (JS)☆22Oct 14, 2020Updated 5 years ago
- DetecTI-CLI is a high-performance Python 3.11+ CLI tool designed for External Attack Surface Management (EASM), Reconnaissance, and Vulne…☆20Updated this week
- This repository contains various threat hunting tools written in Python and is documented in the series Python Threat Hunting Tools which…☆20Nov 16, 2023Updated 2 years ago
- JaelesFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications☆22May 1, 2024Updated 2 years ago
- Este script analisa a atividade de arquivos em dispositivos USB removíveis, identificando arquivos que foram copiados ou modificados …☆16Dec 10, 2025Updated 8 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A C project that generates usernames based on input lists and format you decide yourself☆12Jun 29, 2026Updated 2 months ago
- nxdomain subdomain enumeration☆10Jul 17, 2022Updated 4 years ago
- Automatically deploy preconfigured SSL ready GoPhish instances into Azure using Terraform.☆17Apr 30, 2021Updated 5 years ago
- Scripts usados en mi formación de Offensive Security por medio de la suscripción Learn Unlimited☆16Apr 23, 2022Updated 4 years ago
- 📚A curated list of product security resources.☆28Jun 11, 2025Updated last year
- Implementing Search Engine and Page Rank Algorithm Using Python☆16Feb 28, 2016Updated 10 years ago
- Building and Automating Penetration Testing Labs in the Cloud, published by Packt☆21Apr 22, 2026Updated 4 months ago