Skip to content
Change the repository type filter

All

    Repositories list

    • Cairn

      Public
      AI 自动化通用问题解决 / AI 自动化渗透测试系统
      GNU Affero General Public License v3.0
      19000Updated Apr 22, 2026Apr 22, 2026
    • 全能协议分析工具:浏览器抓包 + MITM 代理 + 指纹伪装 + AI 分析 + MCP Server 无缝对接 AI Agent/IDE | All-in-one protocol analysis toolkit — built-in browser capture, MITM proxy, JS hook…
      TypeScript
      415000Updated Apr 22, 2026Apr 22, 2026
    • LeakDetector 是一款专为红队渗透测试人员和安全研究员设计的自动化信息泄露侦察工具。
      2000Updated Apr 21, 2026Apr 21, 2026
    • rophi

      Public
      Injecting code by recompiling shellcode into a ROP chain.
      C++
      11000Updated Apr 20, 2026Apr 20, 2026
    • ExchangeHound is a defensive BloodHound OpenGraph collector for on-prem Microsoft Exchange that maps mailbox delegation and Exchange privilege relationships to …
      PowerShell
      MIT License
      9000Updated Apr 17, 2026Apr 17, 2026
    • DSCourier

      Public
      PowerShell
      MIT License
      19000Updated Apr 16, 2026Apr 16, 2026
    • Modify machine code in binaries with alternative x64 assembly opcodes for AV evasion
      Python
      20000Updated Apr 16, 2026Apr 16, 2026
    • Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.
      C
      MIT License
      29000Updated Apr 16, 2026Apr 16, 2026
    • RedSun

      Public
      The Red Sun vulnerability repository
      C++
      MIT License
      393000Updated Apr 15, 2026Apr 15, 2026
    • BlueSAM

      Public
      A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.
      C
      MIT License
      20000Updated Apr 15, 2026Apr 15, 2026
    • A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique
      C
      MIT License
      12000Updated Apr 14, 2026Apr 14, 2026
    • reflectra

      Public
      Modular User-Defined Reflective Loader (UDRL) built on Crystal Palace for controlled DLL execution and evasion research.
      C
      MIT License
      1000Updated Apr 14, 2026Apr 14, 2026
    • Tool designed to parse and analyze Microsoft Defender AV signature definition files
      C#
      Other
      4000Updated Apr 12, 2026Apr 12, 2026
    • winrm

      Public
      Command-line tool and library for Windows remote command execution in Go
      Go
      Apache License 2.0
      140000Updated Apr 7, 2026Apr 7, 2026
    • BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell
      C
      7000Updated Apr 6, 2026Apr 6, 2026
    • Android APK security analysis tool. Decompiles DEX, scans for vulns, parses manifests and certs. Runs in your browser.
      JavaScript
      11000Updated Apr 4, 2026Apr 4, 2026
    • Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)
      Nim
      MIT License
      11000Updated Apr 4, 2026Apr 4, 2026
    • PHP-Code-Audit-Skill是一个专注于PHP代码审计的Skill
      32000Updated Mar 25, 2026Mar 25, 2026
    • 为 AI Agent 设计的 JS 逆向 MCP Server,内置反检测,基于 chrome-devtools-mcp 重构 | JS reverse engineering MCP server with agent-first tool design and built-in anti-detection. Re…
      TypeScript
      Apache License 2.0
      161000Updated Mar 24, 2026Mar 24, 2026
    • Source code for the CrystalC2 client.
      Kotlin
      MIT License
      9000Updated Mar 22, 2026Mar 22, 2026
    • gorat

      Public
      GO-RAT is a simple cross platform remote access tool (RAT) framework with a command-and-control server and client agent, designed for learning/testing in contro…
      Go
      Apache License 2.0
      1000Updated Mar 22, 2026Mar 22, 2026
    • Local account pool, dashboard & Anthropic-compatible API proxy for Notion AI. Built with Go + React. 本地 Notion AI 多账号池管理与 API 代理工具,提供配额监控、Web 反向代理与 Anthropic 兼容…
      Go
      Other
      15000Updated Mar 21, 2026Mar 21, 2026
    • Security testing toolkit for Claude Code: curated SecLists wordlists, injection payloads, and expert agents for authorized pentesting, CTFs, and bug bounties
      PHP
      32000Updated Mar 21, 2026Mar 21, 2026
    • 适用于Node.js环境下的Suo5内存马.
      JavaScript
      6000Updated Mar 20, 2026Mar 20, 2026
    • KslDump

      Public
      KslDump — Why bring your own knife when Defender already left one in the kitchen?
      Python
      MIT License
      32000Updated Mar 17, 2026Mar 17, 2026
    • LLMMap-2

      Public
      Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.
      Python
      MIT License
      22000Updated Mar 14, 2026Mar 14, 2026
    • conquest

      Public
      Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.
      Nim
      BSD 3-Clause "New" or "Revised" License
      46000Updated Mar 12, 2026Mar 12, 2026
    • x64DbgMCPServer made from c# with Claude, Windsurf and Cursor support
      C#
      78000Updated Mar 11, 2026Mar 11, 2026
    • daystrom

      Public
      Daystrom is a CLI tool that provides full operational coverage over Palo Alto Prisma AIRS AI security capabilities
      TypeScript
      1000Updated Mar 11, 2026Mar 11, 2026
    • 🚀 Transparent proxy injector for Antigravity. Force SOCKS5/HTTP proxy without TUN mode on Windows. | 专为 Antigravity 打造的免 TUN 强制代理工具,支持 DLL 注入与进程流量劫持。
      C++
      Other
      218000Updated Mar 8, 2026Mar 8, 2026
    ProTip! When viewing an organization's repositories, you can use the props. filter to filter by custom property.