
nullscan
A modular framework designed to chain and automate security tests.

A modular framework designed to chain and automate security tests.

AST-based Python code transformation & deobfuscation framework

Command-line security assessment framework for React and Next.js applications, analyzing React Server Components for misconfigurations, with…

Fuzz testing framework for network protocols.

Spring Framework RCE (Quick pentest notes)

Professional-grade Denial of Service (DoS) exploitation framework for CVE-2025-55184 targeting React Server Components. Features 8 attack modes, WAF…

An API hooking framework for intercepting and monitoring Windows applications

Framework for penetration testing. The software can identify everything from cross-site scripting to SQL injection. Developers can also use this…

Encrypted command‑and‑control (C2) research framework for cybersecurity education, red team labs, and secure client‑server communication experiments.

BlueKeep (CVE-2019-0708) vulnerability checker integrated with Goby's network asset discovery and scanning framework for rapid security assessment.

CVE-2022-22963 is a vulnerability in the Spring Cloud Function Framework for Java that allows remote code execution. This python script will verify…

一个针对shiro反序列化漏洞(CVE-2016-4437)的快速利用工具/A simple tool targeted at shiro framework attacks with ysoserial.

Advanced AI-Powered Exploitation Framework | CVE-2025-4664 & CVE-2025-2783 & CVE-2025-2857 & CVE-2025-30397 |

Jok3r - Network and Web Pentest Framework

Spring Framework RCE via Data Binding on JDK 9+ / spring4shell / CVE-2022-22965

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

Example exploitable scenarios for CVE-2024-22243 affecting the Spring framework (open redirect & SSRF).

ReactGuard provides framework- and vulnerability-detection tooling for CVE-2025-55182 (React2Shell)