Skip to content
Change the repository type filter

All

    Repositories list

    • cirro

      Public
      Creating attacks paths across management and data planes
      Rust
      GNU General Public License v3.0
      1500Updated Apr 7, 2026Apr 7, 2026
    • cirrodash

      Public
      Dashboard for Cirro
      TypeScript
      GNU General Public License v3.0
      1500Updated Apr 7, 2026Apr 7, 2026
    • Azure CLI extension for Cirro collection
      Python
      Apache License 2.0
      1300Updated Apr 7, 2026Apr 7, 2026
    • Python
      MIT License
      1000Updated Apr 6, 2026Apr 6, 2026
    • sliver

      Public
      Adversary Emulation Framework
      Go
      GNU General Public License v3.0
      1.5k11k1986Updated Apr 2, 2026Apr 2, 2026
    • Python
      MIT License
      0000Updated Mar 26, 2026Mar 26, 2026
    • sj

      Public
      A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
      Go
      MIT License
      10983830Updated Mar 24, 2026Mar 24, 2026
    • cloudfox

      Public
      Automating situational awareness for cloud penetration tests.
      Go
      MIT License
      2262.3k70Updated Mar 24, 2026Mar 24, 2026
    • Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.
      HCL
      MIT License
      10355900Updated Mar 12, 2026Mar 12, 2026
    • eyeballer

      Public
      Convolutional neural network for analyzing pentest screenshots
      Python
      GNU General Public License v3.0
      1471.3k63Updated Mar 8, 2026Mar 8, 2026
    • Create your own vulnerable by design AWS penetration testing playground
      Python
      MIT License
      5144010Updated Feb 16, 2026Feb 16, 2026
    • sliver-wasm-stager

      Public archive
      A stager and implant that executes remote Web Assembly
      Rust
      GNU General Public License v3.0
      106400Updated Feb 4, 2026Feb 4, 2026
    • badPods

      Public
      A collection of manifests that will create pods with elevated privileges.
      Shell
      MIT License
      11969100Updated Dec 30, 2025Dec 30, 2025
    • Go module that returns supported regions for a service or supported services for a region
      Go
      MIT License
      61800Updated Dec 12, 2025Dec 12, 2025
    • Safely test Arista NGFW for information disclosure
      Python
      MIT License
      0300Updated Dec 4, 2025Dec 4, 2025
    • Python
      MIT License
      0500Updated Dec 3, 2025Dec 3, 2025
    • Python
      01200Updated Oct 30, 2025Oct 30, 2025
    • raink

      Public
      Use LLMs for document ranking
      Go
      MIT License
      617010Updated Apr 17, 2025Apr 17, 2025
    • sonicrack

      Public
      Decrypt encrypted SonicOSX firmware images
      Python
      GNU General Public License v3.0
      31900Updated Feb 24, 2025Feb 24, 2025
    • A productionized greedy coordinate gradient (GCG) attack tool for large language models (LLMs)
      Python
      MIT License
      2315811Updated Dec 18, 2024Dec 18, 2024
    • A small go harness that uses Ollama to orchestrate LLMs in a restricted process flow
      Go
      MIT License
      01700Updated Sep 10, 2024Sep 10, 2024
    • Safely detect whether a FortiGate SSL VPN is vulnerable to CVE-2024-21762
      Python
      GNU General Public License v3.0
      1710731Updated Jul 5, 2024Jul 5, 2024
    • jsluice

      Public
      Extract URLs, paths, secrets, and other interesting bits from JavaScript
      Go
      MIT License
      1371.8k72Updated May 22, 2024May 22, 2024
    • This repo provides a terraform module for customers looking to implement Google Cloud connector support for Bishop Fox Cosmos
      HCL
      Apache License 2.0
      0100Updated May 20, 2024May 20, 2024
    • Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing
      Python
      GNU General Public License v3.0
      2413400Updated May 8, 2024May 8, 2024
    • Never ever ever use pixelation as a redaction technique
      TypeScript
      GNU General Public License v3.0
      8008.3k2213Updated Mar 15, 2024Mar 15, 2024
    • CLI that allows user to submit http requests using AWS request signing
      Go
      MIT License
      7600Updated Mar 14, 2024Mar 14, 2024
    • GitGot

      Public
      Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
      Python
      GNU Lesser General Public License v3.0
      2161.6k30Updated Mar 7, 2024Mar 7, 2024
    • LLM Testing Findings Templates
      HTML
      MIT License
      167400Updated Feb 14, 2024Feb 14, 2024
    • A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
      Java
      MIT License
      1.9k3600Updated Feb 9, 2024Feb 9, 2024
    ProTip! When viewing an organization's repositories, you can use the props. filter to filter by custom property.