

Analyzes DNS delegation and DNSSEC security by probing resolvers and authoritative servers, then validating, diagnosing, and visualizing zone…

Enterprise-grade toolkit to audit and migrate legacy infrastructure to hybrid post-quantum cryptography (PQC).

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

🔐 A CLI tool to extract server certificates

RPKI Relying Party and RTR server that validates BGP route origin authorizations and serves validated data to routers over the RTR protocol.

Using @charmbracelet to create an Ethereum browser with style

SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

BGT-Pentest-LAB Final Project: Xiaomi HyperOS System Updater OTA Signature Verification Bypass (CVE-2024-4309) Deep Analysis.

OWASP Thick Client Application Security Verification Standard

Single Packet Authorization > Port Knocking

Ultra-lightweight RTOS for IoT with preemptive scheduling, TLS/DTLS, MQTT, CoAP, POSIX compatibility, and MPU-based memory protection. Kernel under…

OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code

RunPE implementation with multiple evasive techniques (2)

A very simple way to find out which SSL ciphersuites are supported by a target.

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

Scans SSL/TLS certificates for expiry dates, issuer details, and OCSP status. Sends notifications via webhook, Telegram, or Slack. Supports proxy per…

Perl scripts for SSL/TLS analysis: check protocol and cipher support, verify certificates, test OCSP, and detect Heartbleed across SMTP, HTTPS, and…