
LibAFL
Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...

Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...

A tool that is used to hunt vulnerabilities in x64 WDM drivers

AI-powered offensive security testing using autonomous agents, directly in your terminal.

Exploit for Linux kernel CVE-2026-31431 causing page cache corruption via authencesn AEAD manipulation, targeting privilege escalation in containers…

PoC for CVE-2026-42945 (nginx Rift) — heap buffer overflow in ngx_http_rewrite_module. Includes detect/probe/exploit modes, dual-fixture Docker lab,…

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

PowerShell wrapper bundling 50+ C# offensive security tools for post-exploitation, privilege escalation, credential dumping, lateral movement, and…

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

ADB-Toolkit V2 for easy ADB tricks with many perks in all one. ENJOY!

A byte code analyzer for finding deserialization gadget chains in Java applications

Practice Go programming and implement CobaltStrike's Beacon in Go

Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

Find exploits in local and online databases instantly

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Original proof-of-concept exploits for React2Shell (CVE-2025-55182), demonstrating remote code execution in Next.js applications via Webpack chunk…

A fully functional DanderSpritz lab in 2 commands

This tool will setting up your backdoor/rootkits when backdoor already setup it will be hidden your spesisifc process,unlimited your session in…