
Burp-Encode-IP
Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

Complete credential attack suite for authorized security testing — SSH, FTP, Web Login, Bruteforce, Dictionary attacks

Improved DOS exploit for wordpress websites (CVE-2018-6389)

CVE Reproduction: cve-2025-61882-oracle_ebs_rce_reproduction


Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools

Một tập lệnh Python để DDOS một trang web bằng phương pháp nhiều phương pháp HTTP Flood, một trang web bình thường chỉ cần 5s để sập hoàn toàn!

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

FlowAnalyzer is a tool to help in testing and analyzing OAuth 2.0 Flows, including OpenID Connect (OIDC).

Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Open-source adversary emulation for AI agents and MCP servers.


POC for Veeam Backup and Replication CVE-2023-27532

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis