I'm a CHECK Team Leader web app pentester and I largely build quick and dirty scripts to exploit web vulnerabilities. Some of my stuff is also in /nettitude.
- xss_payloads - Do better than
- zeropress - Dumb script for finding dumb PHP mistakes
- version-detective - Work out a target site's framework version using git
- Random Scripts - A few surprisingly useful tools that get used in pentests quite a lot
You can reach me on @strawp.