
PentestGPT
Automated Penetration Testing Agentic Framework Powered by Large Language Models

Automated Penetration Testing Agentic Framework Powered by Large Language Models

A list of public penetration test reports published by several consulting firms and academic security groups.

😎 🔗 Awesome list about all kinds of resources for learning Ethical Hacking and Penetration Testing.

An NFC research toolkit application for Android

An automatic obfuscation tool for Android apps that works in a black-box fashion, supports advanced obfuscation features and has a modular…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Advisories, proof of concept files and exploits that have been made public by @pedrib.

WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This…

Slide decks from my conference presentations

Android kernel exploit for CVE-2025-38352, previously exploited in-the-wild. Targets vulnerable x86_64 Linux kernels v5.10.x.

RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation…

The Redexer binary instrumentation framework for Dalvik bytecode

Open-source instrumentation framework for Android apps and Java middleware, modifying code during on-device compilation via the ART compiler.…

Low Interaction Mobile Honeypot

Cisco ASA Software and ASDM Security Research

Android App Pin Security Issue Allowing Unauthorized Payments via Google Wallet

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…