
pentest-guide
Penetration tests guide based on OWASP including test cases, resources and examples.

Penetration tests guide based on OWASP including test cases, resources and examples.

Testing TLS/SSL encryption anywhere on any port

A list of web application security

A checker (site and tool) for CVE-2014-0160

A library for detecting known secrets across many web frameworks

Paranoid's library contains implementations of checks for well known weaknesses on cryptographic artifacts.

A Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).

OpenSSL Heartbleed (CVE-2014-0160) vulnerability scanner, data miner and RSA key-restore tools.

Detects Windows and Linux systems with enabled Trusted Platform Modules (TPM) vulnerable to CVE-2017-15361. #nsacyber

[CVE-2019-14615] iGPU Leak: An Information Leakage Vulnerability on Intel Integrated GPU

Checks for tpm vulnerabilities

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

Dahua CVE-2026-29114

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist,…

This repo describes a vulnerability affecting the QR code based pairing process of the eWeLink IoT devices (CVE-2020-12702).

Formalizing np1sec using Tamarin and other FM (see https://github.com/equalitie/np1sec)

Exploit for cryptographic Issue vulnerability on IBERMATICA RPS [CVE-2023-3350]