
OmniSec-Hex
Browser-local security monorepo with six modules for mobile APK/IPA triage, client-side DAST fuzzing, OSINT directories, offline AI threat scoring,…

Browser-local security monorepo with six modules for mobile APK/IPA triage, client-side DAST fuzzing, OSINT directories, offline AI threat scoring,…

Domain OSINT and security reconnaissance framework running 26 parallel modules for DNS, ports, subdomains, leaked credentials, exposed endpoints,…

66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, exploit…

Open-source threat intelligence platform for malware and observable analysis. Enriches IPs, domains, URLs, and hashes with external sources, performs…

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

Reusable offensive security skills and plugins for AI agents, covering reconnaissance, exploitation, C2, payload development, and reporting across…

Threat intel observatory aggregating CISA KEV, ThreatFox, URLhaus, and MalwareBazaar feeds with search, change tracking, and STIX/CSV/JSONL export.

Repository to index useful tools for CTF's

Curated directory of threat intelligence sources, feeds, frameworks, tools, and research for SOC/CTI teams—covering IOCs, STIX/TAXII formats, and…

Clusters and elements to attach to MISP events or attributes (like threat actors)

Defensive analysis of CVE-2009-4496 in Boa 0.94.14rc21, including source-code review, patch analysis, severity assessment, and ethical scope.

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

Gets updates from various clearnet domains and ransomware threat actor domains

Structured OSINT dataset of LockBit ransomware-linked identities, including usernames, IDs, join dates, Bitcoin addresses, and media artifacts for…

Curated repository of threat actor aliases and naming schemes used by major threat intelligence vendors, enabling cross-vendor search, attribution,…

Yet another Ransomware gang tracker

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.