
markdown-exfil-tester
Black-box test whether an LLM chatbot is vulnerable to markdown/HTML exfil (CVE-2025-32711 class). Spins up a sink, sends payloads, renders in…

Black-box test whether an LLM chatbot is vulnerable to markdown/HTML exfil (CVE-2025-32711 class). Spins up a sink, sends payloads, renders in…

Demos for Black Hat Europe 2025's The Forensic Trail On GitHub: Hunting For Supply Chain Activity

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras


AFL + DynamoRIO = fuzzing binaries with no source code on Linux

GUI based offensive penetration testing tool (Open Source)

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…

Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Zero-dollar attack surface management tool

Android security insights in full spectrum.

High-performance black-box fuzzer for web applications with built-in payload engine, request verification, tampering, encoding, and advanced…

Automates incident response tasks via Carbon Black Response API: file/registry deletion, process killing, sensor isolation, binary collection, and…

A simple and scalable Android bot emulation framework, as presented at Black Hat Europe 2021's Arsenal, as well as atHack 2021's Arsenal

TCP tunneling over HTTP/HTTPS for web application servers

DLL-injectable internal game cheat for Plutonium BO2 zombies

Install the tools and start Attacking , black-tool v5.5.5 ! ⬛

C2/post-exploitation framework