

Embed a reverse shell in Notion pages using the Notion API as a proxy, enabling stealthy remote shell sessions with encrypted and authenticated…

An advanced JWT extraction & decoding tool for bug bounty hunters! 🏴☠️

AI-driven vulnerability discovery and live validation

Open-source interactive security awareness training library with 130+ SCORM exercises covering phishing, vishing, BEC, MFA fatigue, and OWASP AI/LLM…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

AI-powered bug bounty hunting toolkit that works with or without subscription.

IFRIT is an AI-powered reverse proxy that intercepts incoming requests in real time, classifying each one as legitimate or malicious. Legitimate…

AI agent framework for black-box security testing with autonomous multi-agent orchestration, built-in pentesting tools, and MCP integration for bug…

Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

Autonomous AI penetration testing agent that orchestrates multi-agent recon, exploitation, post-exploitation, and reporting with persistent…

Easily setup a hidden service inside the Tor network

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Autonomous AI red team agent for penetration testing with 13+ specialized agents, 120+ OWASP test cases, and MITRE ATT&CK integration. Supports 15+…

Proof-of-concept exploit for CVE-2023-49314 demonstrating code injection in Asana Desktop on macOS via Electron Fuses, with automated vulnerability…

基于MemShellParty的Agent内存马二开,使其兼容主流操作系统,适用于在无回显命令执行场景下实现打入内存马。

A collection of hacking / penetration testing resources to make you better!

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…