
TurkoRat
Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Zero-trust anti-forensic HTTP client. Wipes secrets. Severs traces. CPR in a Stealth Tank. 👻

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Automated OSINT tool for phone number discovery, pattern detection, and cross-platform correlation.

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Twitter Intelligence OSINT project performs tracking and analysis of the Twitter

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Automated email OSINT tool that verifies emails, checks data breaches and password leaks, finds related emails/domains, scans pastebin dumps, and…

Automated OSINT framework for reconnaissance, data harvesting, and threat intelligence gathering with modular crawlers, scanners, and extraction…

AI-powered threat intelligence platform for automated CVE/ransomware monitoring, domain surveillance, data leak detection, and incident response with…

Real-time geospatial OSINT platform aggregating flight, vessel, and satellite data with dark web search, social media dorking, and AI-powered…

Self-hosted dark web OSINT platform. Automated threat intelligence from query to graph in 13 steps. Free alternative to Recorded Future, DarkOwl, and…

Automated phishing campaign toolset that spawns dedicated AWS EC2 instances with integrated PhishingFrenzy and BeEF, plus subdomain discovery and…

Uscrapper Vanta: Dive deeper into the web with this powerful open-source tool. Extract valuable insights with ease and efficiency, from both surface…

CVE-2025-48932 - Unauthenticated SQL injection exploit for Invision Community ≤ 4.7.20. Fully automated exploitation with database enumeration,…

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

Proof-of-concept exploit for CVE-2025-11973 demonstrating local file inclusion (LFI) in WordPress via file:// protocol, with automated exfiltration…

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…