Skip to content

roeyk/Bywaf

Offensive & Pentesting

A Python‑based commandlet framework for auditable web application and network testing workflows with an interactive shell, SQLite event store, artifact handling, and report generation

Python Latest v0.13.0 · 1mo ago Security brief →

Features

  • Interactive shell with plugin commandlets
  • SQLite‑backed durable events, artifacts, notes, and metadata
  • Pipeline syntax for chaining scans (e.g., hostscanner | portscanner)
  • First‑class evidence handling with SHA‑256 provenance
  • Extensible plugin system for custom workflows

Recent releases

View all 6 releases →
Review required
v0.11.0 New feature
Auth Dependencies

Internal refactor + plugin security

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
4
Forks
0
Languages
Python Shell

Install & Platforms

Install via
pip

Alternative to

Bash Metasploit Airflow Python scripts

Beta — feedback welcome: [email protected]