
XXERipper
Black-box XXE scanner detecting in-band, error-based, and blind out-of-band injection via statistical baselining, parser fingerprinting, and OOB…

Black-box XXE scanner detecting in-band, error-based, and blind out-of-band injection via statistical baselining, parser fingerprinting, and OOB…

Parses AD Explorer snapshots into BloodHound-compatible JSON or NDJSON for Active Directory reconnaissance and attack path mapping.

🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast. Precise.…

Lightweight Python scanner for CVE-2023-48795 (SSH Terrapin prefix truncation). Performs passive banner grab and KEXINIT parse to detect vulnerable…

Parses Snaffler output file and generate beautified outputs.

Post-Exploitation EVTX Analyzer for BloodHound Mapping

MAPS cloud scanner and response parser for Microsoft Defender research.

CVE-2025-20352 SNMP Exposure Check (onesixtyone + parser)

Parses and resolves a single Active Directory principal's DACL to identify inbound access privileges, resolve SIDs, and log LDAP attributes for…

FAFAF

Python utility that reads accessible gMSA password blobs from Active Directory and extracts plaintext passwords for use in security audits and red…

Different methods to get current username without using whoami

PHP library for executing Telegram OSINT scenarios: search users, parse group members, monitor online status, download photos, and track profile…

Find endpoints on GitHub.

Domain Parser for IPAddress.com Reverse IP Lookup

Parses public sandbox detonation reports to produce threat hunting intelligence, organizes findings via MITRE ATT&CK, assembles IOCs, and generates…

Golang network scanner with arp discovery and own parser

Jquery File Tree 1.6.6 Path Traversal exploit (CVE-2017-1000170)