
LibAFL
Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...

Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

A small set of tools to convert packets from capture files to hash files for use with Hashcat or John the Ripper.

Automation for internal Windows Penetrationtest / AD-Security

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements,…

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources

Dradis Framework: Collaboration and reporting for IT Security teams

Generates randomized, lint-validated C2 malleable profiles for Cobalt Strike, automating HTTP/S, DNS, SMB, and SSH beacon configuration with…

Open source C2 server created for stealth red team operations

MCP Server for Metasploit

Open-source framework for hosting Attack/Defense CTF competitions with automated gamebot, script execution, VPN routing, and cloud-based…

Go-based exploit development framework with built-in phases for target verification, version scanning, exploitation, and C2. Supports multiple…

Modular security scanning orchestrator that combines specialized agents for vulnerability detection, reconnaissance, and fingerprinting across…

Windows-native penetration testing swiss army knife for lateral movement, credential access, data exfiltration, and vulnerability scanning across…

👶 BabySploit Beginner Pentesting Toolkit/Framework Written in Python 🐍

Cobalt Strike aggressor script for generating, formatting, and encrypting beacon shellcode with support for multiple exit methods, syscalls, and…

Autonomous white-hat security auditor for AI-driven code review, bug bounty research, exploit construction, and execution-grounded verification.