
CVE-2025-5548
End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

Burp Suite extension for automated detection and exploitation of HTTP request smuggling vulnerabilities, supporting HTTP/1.1 and HTTP/2-downgrade…

Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.

Android deeplink misconfiguration detector and exploitation tool

Automated exploit for CVE-2022-42889 (Text4Shell) with a vulnerable Dockerized app for testing and manual exploitation guidance.

eBPF-based runtime detector for container breakout vulnerabilities in runc and Docker, monitoring syscalls and Docker daemon calls to detect…

Vulnerability scanner for Spring4Shell (CVE-2022-22965)

Burp Active Scan extension to identify Log4j vulnerabilities CVE-2021-44228 and CVE-2021-45046

A hybrid security scanner for detecting CVE-2025-55182 in Next.js and Waku applications. Features combined static code analysis and safe dynamic…

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

Free and Open Source Reverse Engineering Platform powered by rizin

A powerful and user-friendly binary analysis platform!

Program for determining types of files for Windows, Linux and MacOS.

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

A plugin to introduce interactive symbols into your debugger from your decompiler

Deobfuscation via optimization with usage of LLVM IR and parsing assembly.

WinDbg x64 extension that disassembles live functions and uses an LLM to produce verified pseudocode.