
reburp
A Burp Suite extension that exposes the full Montoya API as a local REST API, with Swagger UI

A Burp Suite extension that exposes the full Montoya API as a local REST API, with Swagger UI

An LLM-driven fuzzing pipeline powered by the GitHub Security Lab Taskflow Agent

Research code for red-teaming AI auto-mode monitors, including simulation evals, fuzzing, and monitor implementations for Claude Code and Codex…

Browser-local security monorepo with six modules for mobile APK/IPA triage, client-side DAST fuzzing, OSINT directories, offline AI threat scoring,…

Fix-Like Artifacts With Embedded Defects

An open, local-first security testing platform for pentesters, AI agents, CI/CD pipelines, and teams.

Evidence-driven Linux kernel vulnerability research harness used in the investigation of CVE-2026-31720

A benchmark for LLM-driven bug discovery: 77 challenges across 43 open-source projects (C/C++/Java).

🐢 Open-Source Evaluation & Testing library for LLM Agents

A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security…

LLM powered fuzzing via OSS-Fuzz.

Nuclei templates and exploit resources for CRLF based desync attacks

Collection of CVE(work) on tenserflow binary pwning it

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

AI Smart Contract Security Analysis and PoC Generation Framework

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

DHCP exhaustion script written in python using scapy network library

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)