
CVE-2025-14174-analysis
Analysis and PoC for CVE-2025-14174 - ANGLE Metal OOB write (iOS Safari, macOS Chrome)

Analysis and PoC for CVE-2025-14174 - ANGLE Metal OOB write (iOS Safari, macOS Chrome)

AI-powered skill router pack for reverse engineering, penetration testing, and security research. Routes AI agents to correct methodologies and…

A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

⚡️An awesome list of the best Termux hacking tools

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

A toolset for reverse engineering and fuzzing Protobuf-based apps

Android security insights in full spectrum.

Extract endpoints from apk files.

Next Generation SSLKillSwitch with much more support!

Analysis of public exploits or my 1day exploits

Model Context Protocol server for Firefox DevTools - enables AI assistants to inspect and control Firefox browser through the Remote Debugging…

Web-based Source Code Vulnerability Scanner

Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified web UI

Free XP on bug bounty, vulnerability scanning by wrapping well maintained tools, to perform automated tests. Alongside AI agents for binary analysis,…

WebKit NavigateEvent.canIntercept SOP bypass via cross-port interception — iOS 26.3.1 BSI (CVE-2026-20643)

Arkhota, a web brute forcer for Android.

Backporting CVE-2021-1748 patch for iOS <=14.3