A complete security assessment tool that supports common web security issues scanning and custom POC | Be sure to read the document before using.
☆20Sep 27, 2024Updated 2 years ago
Alternatives and similar repositories for xray-automation
Users that are interested in xray-automation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- regex Hunter- Fast website endpoint sensitive data and Leaks JS files endpoint API Key Scraper☆16Jun 8, 2024Updated 2 years ago
- Docker container for running CobaltStrike 4.10☆38Sep 18, 2024Updated 2 years ago
- ☆42Sep 28, 2024Updated 2 years ago
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Feb 3, 2024Updated 2 years ago
- Top passwords as per HaveIBeenPwned☆35Mar 12, 2026Updated 6 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Probuster : A Python based Web Application Penetration testing tool for Information Gathering⚡.☆61Nov 22, 2024Updated last year
- Persistence techniques for windows.☆19Jun 26, 2023Updated 3 years ago
- CoupDeWeb is an automated web vulnerability scanner designed for security researchers and developers. It scans for potential vulnerable …☆34Oct 17, 2024Updated last year
- Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution☆13Dec 2, 2024Updated last year
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆14Mar 27, 2022Updated 4 years ago
- ☆41Mar 12, 2025Updated last year
- MalwareScan is a lightweight and fast malware scanner written in Python. It supports both Windows and Linux platforms and provides an ope…☆14Jun 2, 2025Updated last year
- An advanced scanner for exposed secrets in web pages, APIs, and source code.☆14Apr 22, 2025Updated last year
- Frida script that allows to sniff & dump USB traffic on macOS☆16Sep 29, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Authentication Bypass Vulnerability — CVE-2024–4358 — Telerik Report Server 2024☆13Nov 26, 2024Updated last year
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆30Jul 21, 2024Updated 2 years ago
- Collection of templates from various resources☆48Jun 17, 2026Updated 3 months ago
- Thermal pocket printer - BLE protocol reverse engineering, Python CLI, and web GUI☆24Sep 4, 2026Updated last month
- Payload for bug bounty☆103Jul 7, 2024Updated 2 years ago
- POC - CVE-2024–4956 - Nexus Repository Manager 3 Unauthenticated Path Traversal☆16Nov 26, 2024Updated last year
- ☆47May 31, 2024Updated 2 years ago
- Termux website scanner☆22Jun 21, 2021Updated 5 years ago
- [Confluence] CVE-2023-22527 realworld poc☆18Jan 23, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A set of tasks for cracking implementations of smart-contracts with typical vulnerabilities.☆27Dec 2, 2025Updated 10 months ago
- Zimbra CVE-2022-37042 Nuclei weaponized template☆18Aug 29, 2022Updated 4 years ago
- This repository contains scripts about ACL abuse and any other active directory attacking methods.☆36Aug 20, 2023Updated 3 years ago
- Offensive Security Using Python, published by Packt☆40Apr 22, 2026Updated 5 months ago
- Beacon Debugger☆55Oct 28, 2024Updated last year
- ☆50Feb 27, 2026Updated 7 months ago
- RCE through a race condition in Apache Tomcat☆57Dec 21, 2024Updated last year
- WP Juicer Tool for quick scanning of confidential information on WordPress endpoints.☆10Apr 30, 2024Updated 2 years ago
- Exploits Really Simple Security < 9.1.2 authentication bypass (CVE-2024-10924).☆20Nov 19, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A tool for checking a hash:pass pot file for hashes from a user:hash file☆12Oct 23, 2016Updated 9 years ago
- Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit☆18Jun 3, 2024Updated 2 years ago
- ☆21Jun 24, 2024Updated 2 years ago
- An advanced Out-of-Band and In-Band SSRF fuzzing scanner with dynamic request tracking.☆40Jun 18, 2026Updated 3 months ago
- Repo that hold write-ups of various research projects I did and/or overall InfoSec things I investigated/researched.☆22Jan 5, 2025Updated last year
- ex-redirect — An automated open redirect scanner using Wayback Machine archives. Supports subdomain grouping, live URL filtering, and Wor…☆15May 9, 2025Updated last year
- In this workshop session, we will extract firmware from an EV charger, dig into the firmware, and eventually emulate it so we can interac…☆67Jul 2, 2026Updated 3 months ago