
ICSFuzz
Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

Fuzzing Framework for Modules in Apache HTTPD Server

Golang bindings for PE-sieve

An API hooking framework for intercepting and monitoring Windows applications

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

Linux ptrace-based process tracing and debugging utility for inspecting system calls, memory, and program execution flow.

Python exploit script for CVE-2020-28458, a prototype pollution vulnerability in DataTables. It sends crafted payloads to target URLs, supports proxy…

Java XML serialization library with a focus on CVE-2021-21345 exploit analysis and deserialization vulnerability testing for web applications.

Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input validation,…

XSStrike based XSS scanner with custom features. Detects XSS vulnerabilities in web applications.

Library and CLI for mutating structured data (JSON, XML, X.509) to support grammar-based fuzzing, with multiple mutation strategies and integration…

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

Static Binary Instrumentation tool for Windows x64 executables

Automatic SSTI detection tool with interactive interface

Inject code into running Python processes

LLM powered fuzzing via OSS-Fuzz.

GraphQL server engine fingerprinting tool that sends benign and malformed queries to identify backend technology and assess security defenses via the…

Lightweight fuzzing of a memory snapshot using KVM