
ADRecon
PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

Controlled penetration testing lab demonstrating CVE-2011-2523 exploitation and mitigation techniques.

Gentoo overlay for security tools as well as the heart of the Pentoo Livecd

Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

attempting to detect smart glasses nearby and warn you

Weaponizes vulnerable signed drivers to bypass EDR kernel callbacks, object callbacks, ETW TI provider, and userland hooks for LSASS memory dumping…

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of…

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Metlo is an open-source API security platform.

The Hunt for Malicious Strings

Find your device and control it remotely. Works over SMS, instant messengers, or FMD Server's web interface. A secure open source alternative to…

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

Android client for Prey: reliable device tracking and security tool

CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

Local-first AI red team for web, API, and LLM application security. Attacker-style reasoning, evidence-backed findings, and skills for AI coding…

Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.

A "plugin" for Android Java to allow asking the user about SSL certificates