Skip to content
View cure53's full-sized avatar

Sponsors

@dcramer
@jgraph
@healthchecks
@hata6502
@openclaw
@cybozu

Block or report cure53

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Prompt-injection guardrail for LLM applications. Compact model that outperforms larger open-source guards. No regex, no signatures. Demo: anton.securelayer7.net

TypeScript 66 19 Updated May 31, 2026

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

JavaScript 17,098 851 Updated Jun 12, 2026

A small collection of potentially useful contract templates

432 63 Updated Jan 5, 2026

rewrite constructor arguments, call DOMPurify, profit

JavaScript 75 8 Updated Mar 2, 2026

Use DOMPurify on server and client in the same way

TypeScript 585 16 Updated Jun 11, 2026

A manager for your secrets.

JavaScript 966 94 Updated Jul 13, 2024

Some public notes

1,277 76 Updated Jul 13, 2019

A toolset for reverse engineering and fuzzing Protobuf-based apps

Python 1,670 200 Updated May 19, 2026

Enumerate Typo3 version and extensions

Python 175 34 Updated Jul 2, 2024

A collection of JavaScript engine CVEs with PoCs

2,319 404 Updated Sep 3, 2019

SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

Python 2,993 264 Updated Jun 28, 2024

TCP/UDP Non-HTTP Proxy Extension (NoPE) for Burp Suite.

Java 1,661 240 Updated May 25, 2024

Write any JavaScript with 6 Characters: []()!+

JavaScript 8,595 681 Updated Mar 10, 2025

Rip web accessible (distributed) version control systems: SVN/GIT/HG...

Perl 1,771 317 Updated Jul 19, 2024

Smallest possible syntactically valid files of different types

HTML 2,295 194 Updated Jul 18, 2024

A weekly selection of the relevant Chromium and Firefox intents

271 2 Updated Jan 19, 2025

A Firefox extension for whitelist driven safe JavaScript execution.

JavaScript 79 16 Updated Jul 25, 2018

minimalistic secure XMPP client in OCaml

OCaml 256 19 Updated Oct 21, 2024

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 71,514 25,030 Updated Jun 12, 2026
Bikeshed 271 34 Updated Jun 12, 2026

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Shell 10,145 2,098 Updated Jun 6, 2026

XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

PHP 1,750 361 Updated Sep 12, 2020

user.js -- Firefox configuration hardening

JavaScript 2,884 233 Updated Apr 7, 2026
Java 34 10 Updated Aug 5, 2015

WS-Attacker is a modular framework for web services penetration testing. It is developed by the Chair of Network and Data Security, Ruhr University Bochum (https://nds.rub.de/ ) and the Hackmanit G…

Java 495 115 Updated Oct 3, 2024

RIPS - A static source code analyser for vulnerabilities in PHP scripts

PHP 364 63 Updated May 21, 2016

Magic hashes – PHP hash "collisions"

834 104 Updated Mar 23, 2025

scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.

JavaScript 4,140 437 Updated Jun 11, 2026
Next