
NextPass
A tool which can be used to generate password list or dictionary from the details of the target

A tool which can be used to generate password list or dictionary from the details of the target

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.

Zero shot vulnerability discovery using LLMs

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks

A tool that checks if a TorchServe instance is vulnerable to CVE-2023-43654

Lightweight CLI tool that runs AI coding agents inside isolated Bubblewrap sandboxes with strict filesystem, network, and credential isolation to…

Expose and detail an unauthenticated stored XSS vulnerability in the Google Cloud Vertex AI Python SDK affecting versions 1.98.0 to 1.130.9.

A productionized greedy coordinate gradient (GCG) attack tool for large language models (LLMs)

An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE…

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…

Guardian is a production-ready AI-powered penetration testing automation CLI tool that leverages Google Gemini and LangChain to orchestrate…

Sentinel detection lab for MCP attack chains: CVE-2026-26118 SSRF token theft, tool poisoning, cross-server exfiltration, identity post-exploitation.…

A diagnostic framework for measuring LLM vulnerability to Affective Contextual Erosion (ACE) and related liminal attack vectors. **Delirium** is not…

CVE-2025-67511: Tricking a Security AI Agent Into Pwning Itself

Professional PoC for CVE-2025-59536 and related CVEs. Demonstrates an MCP Tool Confirmation Prompt Misrepresentation in Anthropic Claude_Code leading…