
nmap
High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

An all-in-one hacking tool to remotely take over Android devices.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Free email OSINT tool, 2500+ platforms, identity clustering, breach detection. No API keys required. pip install mailaccess

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Find and redact secrets in AI coding agent histories (Claude Code, and more).

Exploit tool for CVE-2026-45833 in ChromaDB, enabling malicious model generation, reconnaissance, and data exfiltration from target collections via…

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Steganography Tool for JPG Images

An anonymizer tool for replacing PII and similar data in dev/test databases copied from production

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

CVE-2026-63030 & CVE-2026-60137 RCE chain proof-of-concept

POC of CVE-2026-51031 for arbitrary local file read

An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.

Scanner: CVE-2026-9082 Drupal PostgreSQL SQLi via JSON:API — Python scanner for unauthenticated SQLi leading to RCE (CISA KEV)

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data…

CVE-2025-48932 - Unauthenticated SQL injection exploit for Invision Community ≤ 4.7.20. Fully automated exploitation with database enumeration,…

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)