
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Linux operating system for embedded devices with writable filesystem, package management, and build framework. Enables custom firmware creation for…

Penetration tests guide based on OWASP including test cases, resources and examples.


Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

No-root network monitor, firewall and PCAP dumper for Android

🌴Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details,…

Project Wycheproof tests crypto libraries against known attacks.

A self-hosted Fuzzing-As-A-Service platform

OWASP-maintained Top 10 API security risks document and documentation portal with best practices for building, breaking, and defending APIs.

A curated list of resources (books, tutorials, courses, tools and vulnerable applications) for learning about Exploit Development

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how…

Demystifying Exploitable Bugs in Smart Contracts

This project has stopped to maintenance, please to https://github.com/knownsec/pocsuite3 project.

HardeningKitty - Checks and hardens your Windows configuration

Curated database of vulnerable and malicious Windows drivers with YARA, Sigma, ClamAV, and Sysmon detection rules for proactive threat hunting and…