Stars
Fully automatic censorship removal for language models
Hunt down social media accounts by username across social networks
Fully autonomous AI Agents system capable of performing complex penetration testing tasks
🍹 An easy, convenient way to automatically update Homebrew.
An agentic skills framework & software development methodology that works.
Master programming by recreating your favorite technologies from scratch.
Hundreds of models & providers. One command to find what runs on your hardware.
MQTT exploit and Pentesting guide for penetration tester
A pure PowerShell solution for Entra OAuth authentication, enabling easy retrieval of access and refresh tokens
PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via Microsoft Graph, recursively downloads files, and logs every…
A curated list of awesome applications, softwares, tools and shiny things for macOS.
A streamlined tool for discovering private TLDs for security research.
A tool that helps you find the real IP addresses hiding behind Cloudflare by checking subdomains.
Growing list of apps and tools for enhancing social media experiences.
Your own personal AI assistant. Any OS. Any Platform. The lobster way. 🦞
Partial python implementation of SharpGPOAbuse
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.
Fast, multi-protocol credential brute-forcer. Parses Nmap, Nessus, and Nexpose output to automatically test default and custom credentials across 28 protocols.
Scripts to build a trimmed-down Windows 11 image.
mkaring / ConfuserEx
Forked from yck1509/ConfuserExAn open-source, free protector for .NET applications
A script to enumerate Google Storage buckets, determine what access you have to them, and determine if they can be privilege escalated.
Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.
retrieve information via O365 and AzureAD with a valid cred
New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click