Skip to content
View abdilahrf's full-sized avatar

Block or report abdilahrf

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Go static taint-analysis engine that finds vulnerabilities in WordPress plugins — WordPress-aware (capability tiers, nonce≠authz, REST/AJAX entrypoints). Detects SQLi, XSS, IDOR, privesc, RCE. Buil…

Go 11 1 Updated Jun 6, 2026

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Kotlin 1,260 198 Updated Jun 10, 2026

PostScript examples useful for attacking Ghostscript.

PostScript 12 4 Updated Aug 1, 2024

Command-line client for WebSockets, like netcat (or curl) for ws:// with advanced socat-like functions

Rust 8,552 328 Updated Dec 27, 2025

A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.

Python 146 12 Updated Dec 23, 2025

Shell 216 64 Updated Sep 7, 2025

convert case style of words

Go 63 12 Updated Jan 12, 2024

Deobfuscate obfuscator.io, unminify and unpack bundled javascript

TypeScript 2,724 313 Updated Jun 15, 2026

MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering and easy input-output support.

Go 1,637 216 Updated Jun 15, 2026

HackerOne资产更新 | 每日更新HackerOne资产,对HackerOne的资产进行爬行和整理,SRC资产更新仅会增加,不会进行删除,每天更新的可以进行差异化对比来获取到新的项目资产范围

Python 240 141 Updated Jun 15, 2026

A tool to compare two APK files at the dex level. Useful for checking the impact of things like fullMode and dex optimisations.

Kotlin 247 7 Updated Sep 23, 2024

Frida scripts to rewrite mobile applications at runtime to directly MitM all HTTPS traffic

JavaScript 2,174 278 Updated Jun 14, 2026

NeXSS is a modern, self-hosted Blind XSS (Cross-Site Scripting) hunter and callback listener built with Next.js. It helps security researchers and penetration testers discover and validate blind XS…

TypeScript 33 6 Updated Jan 14, 2026

Unified datasets for public cloud provider IP ranges. Providers include AWS, Azure, CloudFlare, DigitalOcean, Fastly, Google Cloud and Oracle Cloud.

Shell 108 17 Updated Jun 15, 2026

An up-to-date export of cloud provider IP address ranges

372 50 Updated Jul 25, 2025

Fast, multi-protocol credential brute-forcer. Parses Nmap, Nessus, and Nexpose output to automatically test default and custom credentials across 30+ protocols.

Go 2,479 429 Updated Jun 15, 2026

Empty project to quick start Proof of Concept app development

Java 37 5 Updated Feb 15, 2025

🔓A Curated List Of Modern Android Exploitation Conference Talks

737 62 Updated May 29, 2026

Python-based static analyzer for Android APKs that extracts attack surface and flags high-risk vulnerability patterns with lightweight taint heuristics.

Python 59 15 Updated Feb 22, 2026

Repo containing reports and PoCs for a selection of vulnerabilities I have discovered and that have been assigned a CVE identifier.

Kotlin 21 2 Updated Mar 12, 2026
Python 7 1 Updated Oct 25, 2025

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

Go 877 67 Updated Jan 5, 2026

ART环境下自动化脱壳方案

Python 2,695 635 Updated Jan 13, 2025

An MCP Server for Chrome DevTools, following the Chrome DevTools Protocol. Integrates with Claude Desktop and Claude Code.

Python 299 48 Updated Oct 6, 2025

DursVuln - Nmap Scripting Engine (NSE)

Lua 22 2 Updated Jul 16, 2025

Plugin for JADX to integrate MCP server

Java 2,322 220 Updated May 28, 2026

A tool for reverse engineering Android apk files

Java 24,779 3,951 Updated Jun 15, 2026

Command-line tool that allows searching and downloading app packages (known as ipa files) from the iOS App Store

Go 9,415 797 Updated May 26, 2026
Go 196 25 Updated Jun 17, 2025
Next