


Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, exploit…

Automating Host Exploitation with AI

This tool is a command line utility that allows you to convert any binary file into a QRcode movie. The data can then be reassembled visually…

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data…

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

A transparent PII redaction proxy for LLM API traffic. Sits between an application and an LLM provider (currently Anthropic), pseudonymizing…

Sigma detection rules for AI agent security monitoring

A small Rust CLI that strips secrets from your clipboard on demand.

Security benchmark for evaluating OpenClaw agents against adversarial execution contexts including poisoned files, injected skills, misleading tool…

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Scan LLM outputs and AI-generated content for data exfiltration signals (EchoLeak, CVE-2025-32711) before they reach users or downstream systems

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

AI Prompt Secret Scanner: local proxy and Claude Code hook that blocks secrets before they reach AI APIs