
web3-decoder
Burp Suite extension for decoding Ethereum JSON-RPC calls and smart contract interactions, supporting multiple chains and automatic ABI retrieval.

Burp Suite extension for decoding Ethereum JSON-RPC calls and smart contract interactions, supporting multiple chains and automatic ABI retrieval.

APK decompiler & secrets scanner for Android security research! Extract leaked API keys, hardcoded credentials, endpoints from APK files. apk2url,…

Reusable offensive security skills and plugins for AI agents, covering reconnaissance, exploitation, C2, payload development, and reporting across…

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

Spartacus DLL/COM Hijacking Toolkit

HRShell is an HTTPS/HTTP reverse shell built with flask. It is an advanced C2 server with many features & capabilities.

Cmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine &…


Converting your AR150 to a Wifi Pineapple NANO

A Virtual environment for Pentesting IoT Devices

Command-line and Python debugger for instrumenting and modifying native software behavior on Windows and Linux.

Comprehensive toolkit for Ghidra headless.

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

Automatic analysis of SWF files based on some heuristics. Extensible via plugins.

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.