Skip to content
View kittoh's full-sized avatar
💭
Back to programming!
💭
Back to programming!
  • Puerto Princesa City, Philippines
  • X @kittoh_

Block or report kittoh

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

The best-benchmarked open-source AI memory system. And it's free.

Python 55,976 7,248 Updated Jun 19, 2026

Nuclei scripts created by @rxerium for zero days / actively exploited vulnerabilities.

Python 185 33 Updated Jun 17, 2026

Scan websites for exposed Supabase JWTs, enumerate accessible tables, and detect sensitive data exposure automatically.

Python 124 14 Updated Dec 29, 2025

🐛 A list of writeups from the Google VRP Bug Bounty program

Python 1,625 273 Updated May 13, 2026

Rust-powered HTTP Request Smuggling Scanner.

Rust 121 14 Updated Jun 18, 2026

CT Log Scanner

Go 552 112 Updated Dec 26, 2025

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

JavaScript 1,592 185 Updated Jan 16, 2026

Create pretty screenshots of your requests and response right into Caido

Vue 27 3 Updated May 18, 2026

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

Python 2,453 269 Updated Dec 7, 2025

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)

Python 251 58 Updated Dec 12, 2025

A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon

JavaScript 1,322 192 Updated Jan 26, 2024

Cybersecurity AI (CAI), the framework for AI Security

Python 9,162 1,352 Updated Jun 11, 2026

Bug Bounty Hunting Framework Designed to Help Beginners Compete w/ the Pros

JavaScript 662 142 Updated Mar 28, 2026

A local-only GUI tool to analyze `.js.map` source map files.

HTML 63 4 Updated Jul 12, 2025

Subdomain Enumerator and Simple Crawler

Rust 373 87 Updated May 22, 2026

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting) vulnerabilities on sites where injections are blocke…

JavaScript 671 114 Updated May 29, 2026

Abuse trust-boundaries to bypass firewalls and network controls

Go 421 72 Updated Jul 24, 2025

X9 a tool to create URLs with many parameter

Python 30 6 Updated Feb 8, 2026

🤖 LLM-powered agent for automated Google Dorking in bug hunting & pentesting.

Python 254 39 Updated Dec 11, 2025

AI/LLM local model integration for analysis of reconftw results

Python 103 19 Updated May 3, 2025

Burp Suite extension to detect Web Cache Deception vulnerabilities, now compatible with the Community Edition. Automates advanced cache poisoning tests and provides detailed exploit examples.

Java 19 3 Updated Jun 11, 2026

Pear 🍐 is extension for music player

TypeScript 31,944 1,833 Updated Jun 17, 2026

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

Go 851 114 Updated May 13, 2026
Python 102 35 Updated Apr 4, 2025
Python 212 34 Updated Jul 11, 2024

Implementation of the Web Cache Deception detection methodology presented in the paper "Web Cache Deception Escalates!"

Python 26 4 Updated May 23, 2026

Tool to find web cache deception

Java 6 1 Updated Oct 22, 2024

detect technologies with wappalyzer alternative

Python 395 68 Updated May 1, 2026
Next