
KUMO-Domain-Recon-Tool
Domain OSINT and security reconnaissance framework running 26 parallel modules for DNS, ports, subdomains, leaked credentials, exposed endpoints,…

Domain OSINT and security reconnaissance framework running 26 parallel modules for DNS, ports, subdomains, leaked credentials, exposed endpoints,…

Community curated list of templates for the nuclei engine to find security vulnerabilities.

0-day malware detection for binaries, source & scripts (that doesn't suck)

📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.

A containerized enterprise-style lab for researching and defending against CVE-2026-27483.

Multi-phase reconnaissance and attack-surface scanner that maps domains, IPs, ASNs, cloud assets, and CVEs into a knowledge graph with CVSS scoring…

Lightweight web-attack monitor. One Go binary + SQLite. Not OSSEC, not a WAF.

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

Collection of quality safety articles. Awesome articles.

CVE-2017-4878 Samples - http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html

Vulnerability detection scripts for the n8n product.

VEDAS-Driven Autonomous Generation + Community Contributions of Suricata & Nuclei Rules for over 12000 CVEs

CVE-2023-38831 - WinRAR

Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration tests and…

Passive Laravel middleware that detects and logs SQL injection, XSS, RCE, bot scanners, and 175+ attack patterns. Features a built-in dashboard,…

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

OpenSSF Scorecard - Security health metrics for Open Source

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.