
naabu
A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

Adversary Emulation Framework

Python PoC scanner and exploit for CVE-2026-84434, an unauthenticated arbitrary file upload in Gravity Forms <=3.1.0.4 via hidden File Upload fields.…

Vendor-neutral NDJSON attack-graph format with node/edge taxonomy, AWS/GCP/Azure mappings, derivation rules, and an exposure DB for offensive…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Generate wordlists using pattern logic and expressions.

Configure your Pi Zero 2W to be a BadUSB

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

This script will attempt to mitigate the copy_fail attack. CVE-2026-31431

Wireless penetration testing framework. Automates WPA/WPA2/WEP/WPS attacks - recon to exploitation in one command. aircrack-ng + hashcat + PMKID.

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

Automates sending JSON payloads to multiple IPs via curl to test for CVE-2025-1974 (IngressNightmare), classifying responses and generating XML…

Purpleteam scripts simulation & Detection - trigger events for SOC detections

OpenSSH RCE Massive Vulnerable Scanner

Simple Automation script for juniper cve-2023-36845

A small utility to deal with malware embedded hashes.


Collection of 60 Python-based DDoS attack tools for network stress testing and security assessment, featuring automated packet flooding scripts to…