
nono
safe execution paths for agents - zero trust, zero setup, zero latency.

safe execution paths for agents - zero trust, zero setup, zero latency.

A POC on how to exploit CVE-2022-27518

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

Security event correlation engine for ELK stack

DejaVU - Open Source Deception Framework

Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.

A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.

Modular attack toolkit exploiting Azure DevOps REST API for reconnaissance, privilege escalation, and persistence using stolen cookies or PATs.


IPSpinner works as a local proxy that redirects requests through external services.

A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.


A proof of concept demonstrating the use of Google Drive for command and control.

The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD