
MaliciousBrowserExtensions
This Repository is created after my own research into malicious browser extensions, by brining the work of many others and news articles into one…

This Repository is created after my own research into malicious browser extensions, by brining the work of many others and news articles into one…

💚🇺🇸🗽Secure remote browsing anywhere, any way you like it.

Malicious Extension Database

Google patched CVE-2025-10585, a Chrome V8 zero-day under active exploitation — here’s what it is, why it matters, and how to stay safe.

Browser extension for OSINT search and IoC analysis. Auto-detects and refangs indicators of compromise, then queries 65+ threat intelligence and…

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

A powerful and user-friendly browser extension that streamlines investigations for security professionals.

Browser extension for OSINT that searches threat intelligence and reconnaissance data from selected IOCs (IP, domain, URL, hash, SNS) via multiple…

Browser extension that warns users about recently registered domains to prevent phishing attacks. Queries RDAP to check domain age and displays…

Offline browser extension providing defensive analysis and detection guidance for CVE-2026-20127, with packet visualization, IOC extraction, and…

Collects comprehensive triage data from macOS for incident response, including system logs, file listings, browser data, shell history, and…

InfoHound is an OSINT to extract a large amount of data given a web domain name.

Strelka Web UI for File Submission and Analysis

A graphing toolkit for threat research - and other things

OsintNET is a browser-based OSINT platform for domain intelligence, website risk scanning, SERP discovery, image intelligence and AI image detection.

"One crafted HTTP request can compromise your entire server." — React Security Team, Dec 2025