Skip to content
Change the repository type filter

All

    Repositories list

    • Safely detect if an Ivanti server is vulnerable to CVE-2025-0282
      Python
      GNU General Public License v3.0
      0200Updated Jan 10, 2025Jan 10, 2025
    • sliver

      Public
      Adversary Emulation Framework
      Go
      GNU General Public License v3.0
      1.2k8.8k20413Updated Jan 7, 2025Jan 7, 2025
    • cloudfox

      Public
      Automating situational awareness for cloud penetration tests.
      Go
      MIT License
      1912k72Updated Dec 30, 2024Dec 30, 2024
    • A productionized greedy coordinate gradient (GCG) attack tool for large language models (LLMs)
      Python
      MIT License
      137500Updated Dec 18, 2024Dec 18, 2024
    • sj

      Public
      A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
      Go
      MIT License
      8357030Updated Nov 15, 2024Nov 15, 2024
    • A small go harness that uses Ollama to orchestrate LLMs in a restricted process flow
      Go
      MIT License
      1500Updated Sep 10, 2024Sep 10, 2024
    • Safely detect whether a FortiGate SSL VPN is vulnerable to CVE-2024-21762
      Python
      GNU General Public License v3.0
      159531Updated Jul 5, 2024Jul 5, 2024
    • Go module that returns supported regions for a service or supported services for a region
      Go
      MIT License
      61501Updated Jun 4, 2024Jun 4, 2024
    • Create your own vulnerable by design AWS penetration testing playground
      Python
      MIT License
      3434301Updated May 23, 2024May 23, 2024
    • jsluice

      Public
      Extract URLs, paths, secrets, and other interesting bits from JavaScript
      Go
      MIT License
      1001.5k71Updated May 22, 2024May 22, 2024
    • This repo provides a terraform module for customers looking to implement Google Cloud connector support for Bishop Fox Cosmos
      HCL
      Apache License 2.0
      1000Updated May 20, 2024May 20, 2024
    • Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing
      Python
      GNU General Public License v3.0
      2513100Updated May 8, 2024May 8, 2024
    • Never ever ever use pixelation as a redaction technique
      TypeScript
      GNU General Public License v3.0
      7387.9k2411Updated Mar 15, 2024Mar 15, 2024
    • CLI that allows user to submit http requests using AWS request signing
      Go
      MIT License
      8600Updated Mar 14, 2024Mar 14, 2024
    • GitGot

      Public
      Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
      Python
      GNU Lesser General Public License v3.0
      2131.5k31Updated Mar 7, 2024Mar 7, 2024
    • eyeballer

      Public
      Convolutional neural network for analyzing pentest screenshots
      Python
      GNU General Public License v3.0
      1261.1k63Updated Feb 19, 2024Feb 19, 2024
    • LLM Testing Findings Templates
      HTML
      MIT License
      146600Updated Feb 14, 2024Feb 14, 2024
    • A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
      Java
      MIT License
      1.8k2500Updated Feb 9, 2024Feb 9, 2024
    • Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.
      HCL
      MIT License
      8448600Updated Feb 1, 2024Feb 1, 2024
    • Python
      GNU General Public License v3.0
      52000Updated Jan 12, 2024Jan 12, 2024
    • Determine the running software version of a remote F5 BIG-IP management interface.
      Python
      MIT License
      186602Updated Jan 3, 2024Jan 3, 2024
    • Go module that provides two lookup functions for the data in https://github.com/fwdcloudsec/known_aws_accounts
      Go
      MIT License
      0200Updated Dec 28, 2023Dec 28, 2023
    • An intentionally-vulnerable GWT-based web application to test tooling and techniques
      Java
      0310Updated Dec 18, 2023Dec 18, 2023
    • Kafka Connect Store Partitioner by custom fields and time; also removing topic from s3 file path
      Java
      Apache License 2.0
      29200Updated Sep 18, 2023Sep 18, 2023
    • 📦 :octocat: GitHub Action for creating GitHub Releases
      TypeScript
      MIT License
      476000Updated Aug 24, 2023Aug 24, 2023
    • RCE exploit for CVE-2023-3519
      Python
      4222040Updated Aug 23, 2023Aug 23, 2023
    • mellon

      Public
      OSDP attack tool (and the Elvish word for friend)
      HTML
      GNU General Public License v3.0
      59510Updated Aug 15, 2023Aug 15, 2023
    • Decrypt encrypted Fortienet FortiOS firmware images
      Python
      GNU General Public License v3.0
      2410100Updated Aug 2, 2023Aug 2, 2023
    • Remove Offensive and Profane Words from Wordlists
      Go
      MIT License
      71402Updated Jul 27, 2023Jul 27, 2023
    • A GitHub action used to zip file contents
      Dockerfile
      MIT License
      32000Updated Jul 26, 2023Jul 26, 2023