#1Tools for collecting and analyzing publicly available information from online sources.
Kitploit 추천

An open, vendor-neutral verification standard for traceable, reviewable, and rights-aware open-source intelligence. Current release: OOVS v0.1.0.

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0


FOFA API를 쿼리하고, 사용자 지정 필드(IP, port, cert, TLS 등)를 추출하며, 결과를 중복 제거하고 중단된 검색을 재개하는 멀티스레드 Python 도구입니다.

Python 2.7

공개 코드 저장소와 코드 스니펫 플랫폼을 스캔하여 AI 서비스 API 키를 추출하고 검증하며, 실시간 대시보드와 다중 형식 보고서 출력을 제공합니다.

Searches Elasticsearch database for email addresses

이 저장소는 대상 네트워크 스캔 중 발견된 특정 보안 취약점에 대해 식별, 분석 및 오픈소스 인텔리전스(OSINT) 수집 과정을 문서화합니다.

DugganUSA threat-intelligence contributions to the IETF Hackathon — real-world agentic-attack benchmark vectors, CVE-2026-33697 attestation analysis,…

🔵 실제 공격에서 악용된 Microsoft MSDT RCE 제로데이인 Follina(CVE-2022-30190)에 대한 위협 분석 라이트업. 정적 분석, VirusTotal, OSINT, MITRE ATT&CK T1059 및 Windows 이벤트 ID 4688을…

L1 SOC 분석: 공개적으로 노출되어 RCE에 취약한 MikroTik RouterOS의 OSINT 탐지 및 위험 검증 | 도구: Shodan, NIST NVD

PoC, Hunting React2Shell about CVE-2025-55182

SOC 분석가를 위한 CVE-2024-3400 (PAN-OS 명령어 삽입) 조사 및 해결 단계별 워크스루. 탐지, 로그 분석, 위협 인텔리전스, 차단, 그리고 아티팩트와 IOCs를 통한 복구를 다룹니다.

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

Wordpress 사용자 이름 열거 /CVE-2017-5487,WordPress < 4.7.1 -