
OWASP-Hunting
Curated collection of payloads for ethical security testing and bug bounty hunting, covering common web vulnerabilities and attack vectors.

Curated collection of payloads for ethical security testing and bug bounty hunting, covering common web vulnerabilities and attack vectors.

Checker for CVE-2024-3094 where malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of…

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

A curated list of AI Security materials and resources for Pentesters, Bug Hunters, and Security Researchers.

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Educational repository detailing CVE-2026-46300 (Fragnesia), a Linux kernel local privilege escalation vulnerability. Provides technical analysis,…

Collection of malware source code for a variety of platforms in an array of different programming languages.

A collection of Claude Code skills that help security teams stay secure

Community curated list of templates for the nuclei engine to find security vulnerabilities.

A collection of useful resources for hacking WordPress and it's plugins and themes

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3…

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

The system of record for AI-written software. A persistent graph of entities, relationships, changes, and provenance, so humans and AI agents see…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Proof of concept code for Datadog Security Labs referenced exploits.

Contained is all my reference material for my OSCP / Red Teaming. Designed to be a one stop shop for code, guides, command syntax, and high level…

Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…