
delve
Source-level debugger for Go with CLI, API, and headless modes; supports breakpoints, variable inspection, and execution tracing for efficient…

Source-level debugger for Go with CLI, API, and headless modes; supports breakpoints, variable inspection, and execution tracing for efficient…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Next generation web scanner

The Swiss Army knife for automated Web Application Testing

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

A security scanner for your LLM agentic workflows

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…


Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

Coverage-guided fuzzer that uses taint tracking and scalar optimization to solve path constraints without symbolic execution, improving branch…

Scans code diffs with context to build an impact graph and uses LLMs to find vulnerabilities, supporting multi-repo scans and CI gating with SARIF…

A wrapper around grep, to help you grep for things


Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

A collection of useful resources for hacking WordPress and it's plugins and themes