Lists (32)
Sort Name ascending (A-Z)
ai
AI skills
Android
blockchain
Blue Team
Cloud
Crypto
devops
devrust
DFIR
driver
entraID
Evasion
For Dev go
For GobypassAV dev
hardening
knowledge
Kubernetes
Lab
maldev
OSINT
Pentest Tools
Pentest Tools internal
For internal pentest or redteamPhishing
Purple team
R&D
RAG
red team
reverse
Tools sysadmin
Vuln & PoC
Web
Starred repositories
Passive network fingerprinting and analysis engine
POC tool for ResetNightmare (CVE-2026-27912)
Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
Self-hosted Microsoft 365 security operations dashboard — aggregates Defender XDR, Entra ID Protection, Intune, Compliance and more into one place.
Visibility into AI agent activity on endpoints, with on-device detection, optional pre-action blocking, and forensic reconstruction.
Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and comprehensive network discovery. Export results as BloodHound‑…
A utility for downloading and packaging the Microsoft CRT & Windows SDK headers and libraries needed for compiling and linking programs targeting Windows.
Deployment of an Active Directory Tier Model structure to support Tier 0, Tier 1, and Tier 2 objects.
PhantomFS is a Windows honeypot that projects convincing decoy files — credentials, financials, SSH keys — into a virtual directory via ProjFS, then fires instant Event Log and Toast alerts the mom…
OpenTofu lets you declaratively manage your cloud infrastructure.
DSPy: The framework for programming—not prompting—language models
Self-hosted homelab infrastructure visualizer — interactive network diagram with live status monitoring
Configurable, community-driven AI-landscape intelligence pipeline — collectors → dedupe → profile-scored ranking → one LLM analyst call → email brief, with 3-layer no-repetition memory. PR your own…
Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.
Never stop coding. Free MIT AI gateway: one endpoint, 330+ providers (90+ free), 1200+ models — Kimi, Claude, GPT, Gemini, GLM, DeepSeek, MiniMax. Works with Claude Code, Codex, Cursor, OpenCode, C…
Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)
A powerful WAF (HTTP 403/401) and URL parser bypass tool developed in Go, designed to preserve exact URL paths and structures during testing.
Orchestrate detonating redteam artifacts in VMs with different EDRs to see their detection surface.
An open source, API enabled collaboration platform for Red and Purple Team engagements.
Technical Reference to multiple relay techniques
The most powerful and modular diffusion model GUI, api and backend with a graph/nodes interface.
CAPSlock is an offline Conditional Access (CA) analysis tool built on top of a roadrecon database. It helps defenders, auditors, and red teams understand how Conditional Access policies actually be…
High-Quality Voice Cloning TTS for 600+ Languages
Fast, efficient, battle-tested at Alibaba's scale. Hybrid architecture code review tool: deterministic pipelines + LLM Agent, precise line-level comments, built-in multi-language ruleset (NPE, thre…
Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)