
Lucifer
A Powerful Penetration Tool For Automating Penetration Tasks Such As Local Privilege Escalation, Enumeration, Exfiltration and More... Use Or Build…

A Powerful Penetration Tool For Automating Penetration Tasks Such As Local Privilege Escalation, Enumeration, Exfiltration and More... Use Or Build…

Exploit tool for CVE-2026-45833 in ChromaDB, enabling malicious model generation, reconnaissance, and data exfiltration from target collections via…

Static analysis CLI that scans codebases for LLM prompt-injection, data-exfiltration, jailbreak, and unsafe agent/tool vulnerabilities. Runs fully…

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data…

Remote Access Trojan (RAT) source code for learning C2 communication, payload delivery, and post-exploitation techniques in Windows environments.

Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB

The code for personally reproducing the corresponding vulnerability

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Embed multiple secret messages in LLM chat token choices using arithmetic/Discop steganographic coders, with bit-exact decoding and steganalysis…

Exploiting CVE-2021-44228 in vCenter for remote code execution and more.

:key: (THIS CODE IS OUTDATED FOR NEW CHROME VERSIONS) Decrypt chromium based browsers passwords, cookies, credit cards, history, bookmarks, autofill.…

Reproduction lab for CVE-2026-54316 (Claude Code WebFetch huggingface.co bare-hostname permission bypass / exfiltration)

The SteaLinG is an open-source penetration testing framework designed for social engineering

👁️ (s)AINT is a Spyware Generator for Windows systems written in Java. [Discontinued]

A simple utility to convert EXE files to JPEG images and vice versa.

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…