Stars
memory introspection and reverse engineering hypervisor powered by leveraging Hyper-V
Busybox-style Beacon Object Files for *nix post-exploitation. Reimplements common Unix utilities as BOFs for use in stripped environments (Docker containers, Kubernetes pods, minimal VMs) where no …
Platform for emulation and dynamic analysis of Linux-based firmware
Safely detect whether a UniFi OS Server is vulnerable to CVE-2026-34908
Orchestrate detonating your MalDev in VMs with different EDRs to see their detection surface.
The easiest, and most secure way to access and protect all of your infrastructure.
A Ghidra agentic reverse engineering skill.
A small, fast, and embeddable programming language based on Lua with a gradual type system.
A curated list of awesome embedded and IoT security resources.
Web3 security skills kit — smart contract auditing, blockchain client analysis, and on-chain exploit investigation.
Automatic Tailscale reverse proxy for Docker containers. Zero sidecars. Label-based config. Automatic HTTPS.
Hysteria is a powerful, lightning fast and censorship resistant proxy.
Store sensitive files in the cloud, or on shared media without trusting the host. LUKSbox is a Rust-based encrypted-container tool with passphrase, FIDO2 (YubiKey, Titan, Nitrokey, Windows Hello), …
This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found within the library
Proof-of-Concept exploit for CVE-2026-32223
SOAPy is a Proof of Concept (PoC) tool for conducting offensive interaction with Active Directory Web Services (ADWS) through a SOCKS5 proxy.
Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code
SURF - Advanced Go HTTP client with Chrome/Firefox browser impersonation, HTTP/3 with QUIC fingerprinting, JA3/JA4 TLS emulation, and anti-bot bypass for web automation and scraping.
Projectify, a free project management software
Hardware-agnostic USB to CAN adapter firmware
NTLM HTTP relay tool with SOCKS proxy for browser session hijacking