
Purpleteam
Purpleteam scripts simulation & Detection - trigger events for SOC detections

Purpleteam scripts simulation & Detection - trigger events for SOC detections

LLM security testing framework for detecting prompt injection, jailbreaks, and adversarial attacks — 190+ probes, 28 providers, single Go binary

Exploit PoCs for CVE-2025-30374, a Taipy class pollution bug, demonstrating RCE, reflected XSS, DoS, and OpenAI credential leakage with Docker-based…

A simple PoC on the Remote Code Execution (RCE) Vulnerability of CraftCMS designated as CVE-2025-32432 written in Go

Adversary Emulation Framework

Crystal Palace library for proxying Nt API calls via the Threadpool

Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

Stop prompt injection attacks before they reach your LLM — zero API costs, runs entirely locally, integrates in 2 minutes. Prompt injection is the…

Test your prompts, agents, and RAGs. Red teaming/pentesting/vulnerability scanning for AI. Compare performance of GPT, Claude, Gemini, DeepSeek, and…

Modular LLM vulnerability scanner that probes for hallucination, data leakage, prompt injection, jailbreaks, and toxicity using static, dynamic, and…

image scaling attacks for multi-modal prompt injection

The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).

Open-source adversary emulation for AI agents and MCP servers.

Tools and PoCs for Windows syscall investigation.

Call stack spoofing for Rust

Remove API hooks from a Beacon process.

Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime