
masq
Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

Detaped is a Python disassembler and decompiler for Duktape. The intended use is for source code review and analysis in situations where you only…

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

MCP server for Slither static analysis of Solidity smart contracts

Mobile Application Vulnerability Detection

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Zero shot vulnerability discovery using LLMs

Triggering and Analyzing Android Kernel Vulnerability CVE-2019-2215


CVE-2025-55182 and CVE-2025-66478