I'm an ex-StarCraft II pro who retired back in 2014 and have been developing since then.
I made a free web app security platform for vibe coders and small businesses/startups. WraithScan (https://wraithscan.com) has a double meaning... as you can guess cloaked wraiths + comsat scanning but also is a web scanner for detecting attack vectors for your web app.
Cloaked wraiths are seen as cheesy these days, right?
Anyways, it tests for the following vulnerabilities:
- SQL injection
- XSS
- Open redirects
- Exposed .env / backup files
- Misconfigured CORS
- Misconfigured SSL/TLS settings
- Insecure headers
- Insecure cookies
- Directory listings
- Common CVEs
- and more
There's a paid tier for some graybox testing (and blackbox on the way) but still relatively cheap.
Anyways, please check it out. Open to all roasts, feedback, comments! Thank you!