


Search (offline) if your password (NTLM or SHA1 format) has been leaked (HIBP passwords list v8)

Pillage filesystems for sensitive information with Go 🔍


Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Free advanced and modern Windows botnet with a nice and secure PHP panel developed using VB.NET.

CVE-2025-55182 & CVE-2025-66478 proof of concepts

A C2 framework for initial access in Go

Various tips & tricks

OSINT tool to find breached emails, databases, pastes, and relevant information

Steganograpy in Python | Hide files or data in Image Files

For importing, searching, and managing public password breach data

A simple HTTP server for delivering and exfiltrating files/data during, for example, CTFs.

Find credentials in screenshots, save them to your secret manager, and irreversibly redact them from the image — local, offline, OCR-based.

Cross-platform framework for enumerating O365 accounts, password spraying, exfiltrating emails/Teams/OneDrive data, and backdooring EntraID accounts…

🔪 Dumper & ripper for Telegram bots by token. Golang version is also available!

GTRS - Google Translator Reverse Shell

Recursively searches files for sensitive information using customizable regex patterns, designed for penetration testers to rapidly discover secrets…