
morphHTA
morphHTA - Morphing Cobalt Strike's evil.HTA

morphHTA - Morphing Cobalt Strike's evil.HTA

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port…

Tool to look for several security related Android application vulnerabilities

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

application server attack toolkit

This repository provides a centralized resource for operational cyber defense and offense, compiling Theory, Tools, Operating Procedures, and…

Mobile application testing toolkit

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Automated Application Generation for Stack Overflow Types on Wireless Routers

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

An iQOO Z9 5G and vivo T3 5G jailbreak/root CVE-2026-43499 Android application and payloads. Both devices use the MediaTek Dimensity 7200 (MT6886)…

Proof-of-concept validation harness for Electron boundary hardening, modeling renderer/main-process isolation, IPC policy enforcement, and navigation…

This tool demonstrates the application of fundamental physics discoveries to cybersecurity.

Demonstration on exploitation on Drupal 7.57 (CVE-2018-7600) with and without WAF(Web Application Firewall)

Starkiller is a Frontend for PowerShell Empire.

PowerShell Runspace Post Exploitation Toolkit

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.