
crapsecrets
A library for detecting known secrets across many web frameworks

A library for detecting known secrets across many web frameworks

Software-only proof of concept for CVE-2025-52464 in Meshtastic Direct Messages

ROCA: Infineon RSA key vulnerability

OpenSSL Heartbleed (CVE-2014-0160) vulnerability scanner, data miner and RSA key-restore tools.

This script check if your list of server is accepting Export cipher suites and could be vulnerable to CVE-2015-0204

[CVE-2019-14615] iGPU Leak: An Information Leakage Vulnerability on Intel Integrated GPU

A checker (site and tool) for CVE-2014-0160

Fast SSL/TLS scanner that discovers supported cipher suites, protocols, and vulnerabilities (Heartbleed, POODLE, CRIME) with certificate chain…

Curated list of web application security resources including books, tools, cheat sheets, labs, and courses for learning penetration testing and…

Testing TLS/SSL encryption anywhere on any port

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

Penetration tests guide based on OWASP including test cases, resources and examples.

Detects Windows and Linux systems with enabled Trusted Platform Modules (TPM) vulnerable to CVE-2017-15361. #nsacyber

This repo describes a vulnerability affecting the QR code based pairing process of the eWeLink IoT devices (CVE-2020-12702).

Paranoid's library contains implementations of checks for well known weaknesses on cryptographic artifacts.

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

A library for detecting known secrets across many web frameworks

AI Smart Contract Security Analysis and PoC Generation Framework