
keeper
Simple Secure Keeper for Secrets

Simple Secure Keeper for Secrets

POC for CVE-2026-4444 demonstrating JWT algorithm confusion via untrusted kid injection, including vulnerable Node.js server and Python exploit for…

JSON Web Token (JWT) encoding and decoding for Kit

ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication token based…

Embed multiple secret messages in LLM chat token choices using arithmetic/Discop steganographic coders, with bit-exact decoding and steganalysis…

A cryptographic framework for Baochip-1x .

Infisical is the open-source platform for secrets, certificates, and privileged access management.

Secure tunneling daemon implementing VPN protocols with TLS encryption, certificate authentication, and routing/firewall configuration for private…

A lightweight, cryptography-powered, open-source toolkit built to enforce Zero Trust security for infrastructure, applications, and data in the…

Implementation of Kerberos, PKI, and ASN.1/DER providing authentication, authorization, and cryptographic services for secure networks.

Detects the algorithm of input JWT Token and provide options to generate the new JWT token based on the user selected algorithm.

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

Asymmetric cryptography library for generating signed URLs on embedded devices, enabling time-limited resource access using PSA Crypto API with…

Exploit for Oracle Access Manager padding oracle vulnerability (CVE-2018-2879)

Python POC, Exploit for CVE-2026-29000

The goal of Axiom is to provide a completely anonymous, decentralized, and censorship-resistant social media platform. To make this possible, the…

Demo of CVE-2021-27568: Insecure randomness in token generation

General-purpose cryptography library implementing SSL/TLS protocols, symmetric/ asymmetric ciphers, message digests, and X.509 certificate handling…