A tiny flask app for helping red-teamers, purple teamers, and pentesters in delivery, data exfiltration, and some attacks (SSRF, XXE, XSS, Session Hijacking, Session Riding).
-
Updated
Aug 18, 2025 - Python
A tiny flask app for helping red-teamers, purple teamers, and pentesters in delivery, data exfiltration, and some attacks (SSRF, XXE, XSS, Session Hijacking, Session Riding).
tool kit when going pentest, bugbounty
Enumerate a web application by performing the following checks: whois, dns tld and domain information, traceroute, ssl/tls version and supported ciphers, certificate information. Analyze http responses, detect comments and resources in the page. Reveal exposed resources by performing url bruteforce and exploiting google dorks
Add a description, image, and links to the pentest-webapp topic page so that developers can more easily learn about it.
To associate your repository with the pentest-webapp topic, visit your repo's landing page and select "manage topics."