
wireshark
Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Multi-protocol honeypot simulator supporting 50+ network services with deep interaction, TCP/UDP/ICMP logging, JA3 fingerprinting, and virtual…

Exploit for CVE-2025-41744 targeting Sprecher Automation SPRECON-E-C ICS devices, extracting default cryptographic keys to decrypt and tamper with…

Open-source IoT Platform - Device management, data collection, processing and visualization.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

A fork and successor of the Sulley Fuzzing Framework

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

A collection of fascinating and bizarre Censys Search Queries

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Python scripts for security assessment of industrial PLCs: scanning, enumeration, control, and exploitation of Beckhoff, Siemens, Schneider,…

Repository that tracks public exploits, vulnerabilities and advisories that I [co-]discovered or [co-]authored.

Real world and CTFs exploiting web/binary POCs.

IoT and Operational Technology Honeypot

Python testing framework for industrial protocol implementations and devices. Provides packet crafting, fuzzing, and discovery for KNXnet/IP, Modbus,…

CVE-2018-11311 disclosure and exploit for hardcoded FTP credentials (myscada:Vikuk63) in mySCADA myPRO 7 HMI/SCADA software, enabling unauthorized…

Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.