
caronte
A tool to analyze the network flow during attack/defence Capture the Flag competitions

A tool to analyze the network flow during attack/defence Capture the Flag competitions

Command line tool to fetch, decode, brute-force and craft session cookies of a Flask application by guessing secret keys.

Automated JWT security testing tool that exploits known CVEs, tampers with payloads, performs JKU/X5U injection, key confusion attacks, and verifies…

An automatic Blind ROP exploitation tool

Fast Steganography bruteforce tool written in Rust useful for CTF's

Open-source multi-purpose remote access tool for Microsoft Windows


Crypto tool for pentest and ctf : try to uncipher data using multiple algorithms and block chaining modes. Usefull for a quick check on unknown…

Multi-threaded URL enumeration/content-discovery tool in Python.

NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.

This tool aims at automating the identification of potential service running behind ports identified manually either through manual scan or services…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

CVE-2025-55182 React Server Components Remote Code Execution Exploit Tool

Automated ret2win exploit tool for CTF challenges. Finds stack offset, generates payloads, supports remote exploitation, and attaches GDB for…

Evaluation framework that tests whether large language models follow invisible Unicode-encoded instructions embedded in normal-looking text, with…

AutoBlue - Automated EternalBlue (CVE-2017-0144 / MS17-010) exploitation tool leveraging Nmap and Metasploit for ethical hacking, penetration…

A simple tool wrapper to automate the enumeration, fingerprinting, and PSK extraction of an IPSec VPN gateway.

CVE-2025-14847 (MongoBleed) scanner and exploit tool. Unauthenticated MongoDB heap memory leak via zlib decompression. Detection, memory extraction,…