Classic & union-based SQLi payloads against search & login
Obfuscated payloads to bypass signatures — tests Attack Score
Reflected XSS via script tags, event handlers, SVG
EICAR test files disguised as invoices
50 rapid password attempts against admin account
40 requests with rotating user-agents to scrape pricing
Endpoint discovery, schema violations, JWT tampering
Leaked creds + account takeover sequence
Execute all attacks in sequence — the complete assault
Choose an attack from the sidebar to view details and launch the assault against the target.