All Scripts
65 total
All
Recon (1)
Mapping (14)
Discovery (23)
Exploitation (19)
Post Exploitation (1)
Misc (4)
Reports & Data (1)
CATEGORY
SCRIPT
AUTHOR
VIEWS
Recon
Combined Scanning
—
185
Mapping
Bash Aliases for Pentesting
—
298
Mapping
Burp Pro to XML
—
164
Mapping
DHCP Leases
—
144
Mapping
DNS Forward and Reverse Lookups
—
191
Mapping
Directory Brute Forcing Using Curl and WC
—
402
Mapping
Domain to IP
—
150
Mapping
Find Live Hosts
—
148
Mapping
IIS Internal IP Disclosure
—
163
Mapping
Identifying Web Server Methods Using Netcat
—
151
Mapping
Ngrep Tools
—
202
Mapping
Nmap Open Port Stats
—
149
Mapping
Nmap Open Ports
—
179
Mapping
Scanning with Propecia
—
164
Mapping
User/Pass List Generator
—
172
Discovery
Automating SSRF Detection: Crafting Custom Nuclei Templates
PentesterScripting
239
Discovery
Automating Shadow API and BOLA Detection with Custom Nuclei Templates
PentesterScripting
219
Discovery
Automating the Discovery of Unauthenticated API Endpoints with Python
PentesterScripting
271
Discovery
Bash Web Requester
—
185
Discovery
Beyond the Docs: Scripting Python for Shadow API Discovery
PentesterScripting
223
Discovery
Building a Burp Suite Extension for Automated Undocumented API Endpoint Discovery
PentesterScripting
173
Discovery
Checking For Ssl Vulnerabilities On The Command Line
—
165
Discovery
Crafting Custom Nuclei Templates for Rapid Vulnerability Detection
PentesterScripting
227
Discovery
Crafting Custom Nuclei Templates to Detect Emerging N-Day Vulnerabilities
PentesterScripting
131
Discovery
Creating a Custom Nuclei Template to Detect Langflow RCE (CVE-2026-33017)
PentesterScripting
31
Discovery
Developing Custom Nuclei Templates to Detect Insecure API Endpoints and Common API Vulnerabilities (e.g., BOLA, Broken Authentication)
PentesterScripting
132
Discovery
Domain Account Bruteforce Tool
—
159
Discovery
Mastering FFUF for Hidden API Endpoint and Parameter Discovery
PentesterScripting
203
Discovery
Mastering FFUF: Advanced Techniques for Hidden Endpoint and API Attack Surface Discovery
PentesterScripting
79
Discovery
SSL Tests - v2, weak ciphers, MD5, Renegotiation
—
327
Discovery
Starting Nessus
—
181
Discovery
Target URL Crawler
—
150
Discovery
Writing Custom Nuclei Templates to Detect API Mass Assignment Vulnerabilities
PentesterScripting
192
Discovery
Writing Custom Nuclei Templates to Detect Exposed Git Repositories
PentesterScripting
132
Discovery
Writing Custom Nuclei Templates to Detect Publicly Exposed Cloud Storage Buckets
PentesterScripting
83
Discovery
Writing a Custom Nmap NSE Script to Detect Exposed Kubernetes Kubelet APIs
PentesterScripting
24
Discovery
Writing a Custom Nuclei Template to Detect CVE-2026-41940: Unauthenticated cPanel Auth Bypass
PentesterScripting
32
Discovery
Writing a Custom Nuclei Template to Detect NGINX Rift (CVE-2026-42945)
PentesterScripting
97
Exploitation
Apache 413 XSS
—
203
Exploitation
Apache EXPECT Header XSS POC
—
150
Exploitation
Automating API Security Testing for Broken Object Level Authorization (BOLA) with Python
PentesterScripting
93
Exploitation
Automating Broken Object Level Authorization (BOLA) Testing in APIs with Python
PentesterScripting
221
Exploitation
Bash Web Parameter Fuzzer
—
291
Exploitation
Crafting Custom Nuclei Templates for Targeted Zero-Day and N-Day Vulnerability Detection
PentesterScripting
108
Exploitation
Crafting Python Scripts for Automated API Authentication Bypass Testing
PentesterScripting
232
Exploitation
Developing a Burp Suite Extension for Automated API Authentication Bypass Detection
PentesterScripting
204
Exploitation
Exploiting AI Workflows: A Python Script for Unauthenticated RCE in Langflow (CVE-2025-3248)
PentesterScripting
64
Exploitation
Exploiting Broken Object-Level Authorization (BOLA) in APIs with a Custom Python Script
PentesterScripting
76
Exploitation
Going up against MySQL
—
156
Exploitation
SQL Injector
—
170
Exploitation
Typo3 CMS Insecure Randomness Exploit
—
158
Exploitation
Writing a Python Exploitation Script for the Langflow Unauthenticated RCE (CVE-2025-3248)
PentesterScripting
31
Exploitation
Writing a Python Script to Automate Broken Object Level Authorization (BOLA) Detection in REST APIs
PentesterScripting
187
Exploitation
Writing a Python Script to Detect and Exploit Misconfigured SUID Binaries for Linux Privilege Escalation
PentesterScripting
228
Exploitation
Writing a Python Script to Exploit Unauthenticated WebSocket RCE (CVE-2026-1731)
PentesterScripting
16
Exploitation
XSS GET to POST
—
224
Exploitation
p0wnpr0xy
—
177
Post Exploitation
LM2NTCrack
—
157
Misc
Password Generators
—
316
Misc
Renew IP
—
229
Misc
String Encoding in the Shell for Obfuscation
—
187
Misc
Wait For
—
321
Reports & Data
CVE Lookups
—
277
—
Discovery
—
0
—
Exploitation
—
0