
sentrymcp
A static + runtime security scanner for MCP (Model Context Protocol) servers

A static + runtime security scanner for MCP (Model Context Protocol) servers
Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

This Repositories contains list of One Liners with Descriptions and Installation requirements


A collection oneliner scripts for bug bounty

List of regex for scraping secret API keys and juicy information.

A tool for pointesters to find candies in SharePoint

Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information

Curated Google Dork search patterns for web security and bug bounty reconnaissance, covering exposed files, admin panels, CMS instances, logs, and…

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

Slack enumeration and exposed secrets detection tool

Notes about attacking Jenkins servers

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

how to look for Leaked Credentials !



Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…