
Name-That-Hash
Identify 300+ hash types instantly via CLI or web app. Prioritizes popular hashes, provides summaries, and integrates with HashCat and John the…

Identify 300+ hash types instantly via CLI or web app. Prioritizes popular hashes, provides summaries, and integrates with HashCat and John the…

CVE-2026-39987 for marimo 0.20.4 PoC

WVCTF or WebVulnCTF is a gamified web platform which promotes training in pentesting and web application development security in an entertaining way.…


:triangular_flag_on_post: A CLI tool & library to enhance and speed up script/exploit writing with string conversion/manipulation.

RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data


Multi-threaded network reconnaissance tool that automates service enumeration, port scanning, and information gathering for penetration testing and…

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Linux enumeration tool for pentesting and CTFs with verbosity levels

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific…

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an…

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK…

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…