
PyRIT
The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to…

Open-source framework for red-teaming generative AI systems: automate attack prompts, score model responses, and audit behavior to identify security…

An information security preparedness tool to do adversarial simulation.

A windows token impersonation tool

Python PoC for CVE-2026-21010 that replays captured SIP digest Authorization headers to bypass nonce uniqueness/expiration and make unauthorized VoIP…

image scaling attacks for multi-modal prompt injection

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks

Proof-of-concept exploit for CVE-2026-21003 demonstrating JWT authentication bypass by omitting the kid header and using the 'none' algorithm to…


A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

Bypass llm guardrails by confusing it with fabricated tool output.

This is the tool to dump the LSASS process on modern Windows 11

Playing around with Stratus Red Team (Cloud Attack simulation tool) and SumoLogic

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

A font-based deception tool for red teaming, security research, and whatever else.