


Determine privileges from cloud credentials via brute-force testing.

pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents

Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.

Pivotal CRM's patch for an initial deserialization vulnerability was incomplete. The fix switched from BinaryFormatter to JSON.NET but left…

Step-by-step guide to building custom Kali NetHunter kernels for Android: source retrieval, toolchain selection, cross-compilation, and flashing.

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

Set of tools to audit SIP based VoIP Systems

OWASP Thick Client Application Security Verification Standard

CVE-2026-36522: unauthenticated NaN injection via MAVLink PARAM_SET in ArduPilot ArduPlane (CWE-1287, DoS/integrity)


AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.


cve-2024-21413

The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when the Membership Addon is…

A tool for checking if MFA is enabled on multiple Microsoft Services