Check your WAF before an attacker does
-
Updated
Mar 14, 2026 - Python
Check your WAF before an attacker does
evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).
🔥 Web application firewalls (WAF) bypass
ExecEvasion is a lightweight execution-evasion toolkit that generates command variants designed to bypass naive filters and WAF rules by leveraging real shell parsing behavior on Linux and Windows.
StealthNewSQL : The Ultimate NewSQL Injection Tool - Your All-in-One Solution for NewSQL Database Security! 🛡️ Uncover, exploit, and secure NewSQL database vulnerabilities with this feature-packed command-line tool. Whether you're a penetration tester, security researcher, or developer, StealthNewSQL equips you with the ultimate power! 💥
WAF Bypass Payload List
This script is an automation to bypass Cloudflare and Fortigate WAF (SQLi Detection)
🧠 WAFMANCER v2.0 — Next-Gen WAF Evasion Framework. AI-powered payload synthesis. Trust-based WAF manipulation. Bypassed Cloudflare. 50+ mutations. PoC generator. "Not a tool. A research weapon." 🔥
Add a description, image, and links to the waf-bypass-tool topic page so that developers can more easily learn about it.
To associate your repository with the waf-bypass-tool topic, visit your repo's landing page and select "manage topics."