
fastjson exploitation tool supporting Tomcat and Spring for advanced security testing.

RunAs Utility Credential Stealer implementing techniques for credential theft using hooks, keylogging, and remote debugging.

A security scanner for your LLM agentic workflows.

A tool for analyzing vulnerabilities using DeepSeek and Burp Suite.

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.

EWSTool is a post-exploitation tool for Exchange mail servers, enabling email list retrieval, email search, and email download.

AutoAudit is a large language model (LLM) designed for enhancing cybersecurity through advanced AI-driven threat detection and response.

An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms.

Nuclei POC is a tool for automating the collection and validation of Nuclei vulnerability POCs from GitHub.

Automated Adversary Emulation Platform for cyber security, assisting red teams and automating incident response.