
CVE-2026-29000
Forge JWE-wrapped unsigned JWTs to bypass pac4j-jwt signature verification (CVE-2026-29000) and authenticate as any user; includes Python CLI,…

Forge JWE-wrapped unsigned JWTs to bypass pac4j-jwt signature verification (CVE-2026-29000) and authenticate as any user; includes Python CLI,…

A small utility to deal with malware embedded hashes.

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

Python resource library for creating security related tooling

Shell script that monitors for a vulnerable sudo process and triggers authentication lockout to mitigate CVE-2021-3156.

Java SDK for building analytics pipelines that process and enrich unstructured text data with annotations, type systems, and modular analysis engines.

Like curl, but it gets past Anubis and Cloudflare bot-walls.

Bash Script to automate the process of setting up a new Kali Linux virtual machine to look a like HTB PwnBox

High Severity LPE vulnerability in Linux Kernel, with a CVS score of 7.8. An inverted check from user enables a process inside the container to break…

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

Hashcat wrapper to help automate the cracking process

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

Automates Windows memory forensics and DFIR workflows with MemProcFS: YARA/ClamAV scanning, process anomaly detection, and artifact/log extraction.

Suite for reverse shell handling geared toward working within the native shell

An asynchronous enumeration & vulnerability scanner. Run all the tools on all the hosts.

Get process information straight from bash, minimal dependencies.

Apply class remove process from ear/war/jar/zip archive, see https://logging.apache.org/log4j/2.x/