
wp2shell-checker
WordPress Core Unauthenticated RCE (CVE-2026-63030, CVE-2026-60137)
Integrated platforms for developing, executing, and managing penetration tests.

WordPress Core Unauthenticated RCE (CVE-2026-63030, CVE-2026-60137)

Fully featured and community-driven hacking environment

A collaborative, multi-platform, red teaming framework

A AI general-purpose state-space search engine, validated first on autonomous penetration testing.

Frieren is a micro-framework designed for use in routers and Single Board Computers (SBCs). This framework is built to be lightweight, efficient, and…

Automated Penetration Testing Agentic Framework Powered by Large Language Models

Cybersecurity AI (CAI), the framework for AI Security

Generate Caddy redirector configs from Cobalt Strike or Sliver C2 profiles.

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

An open-source self-hosted purple team management web application.

Elite exploitation toolkit for CVE-2025-55182 (React Server Components RCE). Async polymorphic payloads, advanced WAF/CDN bypass, proxy rotation,…

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

A simple C2 Framework written in modern C++

A modular C2 framework

Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes…

Guardian is a production-ready AI-powered penetration testing automation CLI tool that leverages Google Gemini and LangChain to orchestrate…

Open Source Implementation of Cobalt Strike's Malleable C2

Autonomous security operations agent for threat intelligence, vulnerability research, IOC analysis, and red teaming. Supports dual-mode operations…