
ZSC
OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/

OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

The WASM Based Security Toolkit for the Web First Paradigm

The most comprehensive LLM + MCP security guide i.e. OWASP aligned, real CVEs, actionable checklists

Open-source adversary emulation for AI agents and MCP servers.

A collection of awesome platforms, blogs, documents, books, resources and cool stuff about security

pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents

Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.

An OWASP-aligned intentionally vulnerable platform for learning and testing AI, LLM, RAG, MCP, and Agentic AI security.

An empirical security testbed evaluating prompt injection, confused-deputy vulnerabilities, and tool-calling defenses in LLM agents.

Open-source prompt injection attack console. Test AI security by firing categorized attacks at any endpoint.

AI security agent that runs in your terminal, orchestrating local tools, runbooks, and agents for authorized AppSec, pentest, OSINT, and CTF…

Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

Proof-of-concept exploit for CVE-2022-23808, a stored XSS vulnerability in phpMyAdmin 5.1.1 setup script, with payload and reproduction steps for…

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis


CVE-2024-27198 & CVE-2024-27199 PoC - RCE, Admin Account Creation, Enum Users, Server Information