
Panoptic
Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Microsoft Threat Intelligence Security Tools

Terminal UI for browsing and replaying AWS WAF v2 logs from CloudWatch, S3, and the sampling API, with YAML filtering, auth detection, and…

Python ADB-based Android device management and security audit toolkit with an interactive menu for root detection, permission dumps, debuggable app…

Proof-of-concept checker for CVE-2025-10951, an unauthenticated path traversal in ml-logger, validating arbitrary file read via /glob and /stream…

Zeek log enrichment tool that adds host information and known entity references to enhance network security monitoring and incident response.

Proof-of-concept exploit for CVE-2026-39938: unauthenticated local file inclusion in Cacti <= 1.2.30, enabling arbitrary file read and remote code…

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

Java-based Bluetooth honeypot that captures and stores malware from BlueBugging and BlueSnarfing attacks, with a GUI for monitoring and log analysis.

Local proof-of-concept scanner that detects plaintext database passwords in llama-stack initialization logs, using regex pattern matching to identify…

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

chat log tool, easily use your own chat data. 聊天记录工具,轻松使用自己的聊天数据

Parses and resolves a single Active Directory principal's DACL to identify inbound access privileges, resolve SIDs, and log LDAP attributes for…

AnySniff is a tool for monitoring TCP connections of processes like AnyDesk on Windows. It uses the CVE-2024-52940 vulnerability to track open…

Python-based directory traversal exploit for CVE-2020-17519 (Apache Flink) with multi-threading, proxy support, and configurable depth for retrieving…

Change monitoring app that checks the content of web pages in different periods.

Proof-of-concept exploit for FortiOS authentication bypass (CVE-2024-55591) that allows unauthenticated access to system logs via WebSocket on…