
ghostsplice
Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

Scan LLM outputs and AI-generated content for data exfiltration signals (EchoLeak, CVE-2025-32711) before they reach users or downstream systems

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

A collaborative, multi-platform, red teaming framework

Clone and import Chromium cookies and passwords across browsers with offline DPAPI state key decryption, supporting AES-256 GCM encrypted databases…

C# tool for exfiltrating files over DNS using XOR and asymmetric encryption, designed for red team engagements with restricted outbound connections.

Red Team tool for exfiltrating the target organization's Google People Directory that you have access to, via Google's API.

AI-powered threat intelligence platform for automated CVE/ransomware monitoring, domain surveillance, data leak detection, and incident response with…

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

AI coding agents that can't exfiltrate secrets or merge their own PRs.

A Slack bot phishing framework for Red Teaming exercises

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.