cyberstars
cyberstars / target / web

Tools for web apps

HTTP/S applications and APIs.

105 tools indexed

Directory, DNS and vhost brute-forcer.

FuzzReconWeb appsNetworks
GoApache-2.0

Generate gopher:// SSRF payloads.

ExploitWeb apps
PythonMIT

Open-source phishing toolkit.

AutomateExploitEndpointsWeb apps
GoMIT

Open-source HTTP toolkit for sec research.

InterceptScanWeb apps
GoMIT

AI agents autonomously drive 150+ security tools via MCP.

AutomateScanWeb appsNetworks
PythonMIT

OSINT-driven hostname discovery.

ReconWeb appsNetworks
PythonApache-2.0

Next-generation crawling framework.

ReconScanWeb apps
GoMIT

Mine historical contacts from web.archive.org snapshots.

ReconWeb apps
PythonMIT

Intentionally vulnerable OWASP LLM Top 10 training platform

AutomateWeb apps
PythonMIT

Local-LLM CLI that drives recon tools and AI-analyzes targets.

ReconScanWeb appsNetworks
PythonMIT

Username OSINT across 3000+ sites.

ReconWeb apps
PythonMIT

Self-hostable email OSINT platform, no API keys required.

ReconWeb apps
PythonMIT

Graph-based OSINT and link analysis.

ReconAnalyzeWeb appsNetworks
JavaProprietary

Exploit development and delivery platform.

ExploitAutomateNetworksEndpoints
RubyBSD-3-Clause

Nika

Cross-file taint-analysis SAST for Java microservices

ScanAnalyzeSource codeWeb apps
PythonApache-2.0

Classic web server scanner.

ScanWeb apps
PerlGPL-2.0

Nox

Modular Go framework for attack surface management and scanning

ScanReconWeb appsNetworks
GoGPL-3.0

Template-based vulnerability scanner.

ScanWeb appsNetworks
GoMIT

Adversary emulation for AI agents, LLM apps and MCP servers

ScanFuzzWeb apps
TypeScriptApache-2.0

Local-first link-analysis and geospatial board for investigations.

ReconWeb apps
JavaScriptGPL-3.0

In-depth attack surface mapping.

ReconScanWeb appsNetworks
GoApache-2.0

Modern intentionally vulnerable web app.

AutomateWeb apps
TypeScriptMIT

Automated pentest + vuln scanner.

ScanExploitWeb appsNetworks
PythonApache-2.0