Skip to content
View B1luuU's full-sized avatar

Block or report B1luuU

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Two paired Claude skills · 90+ recon modules · 48 secret-regex patterns · 80+ dorks · 9 read-only credential validators · 27 attack-path templates · 5,500+ lines of structured tradecraft. Drop-in S…

Python 1,989 377 Updated Jun 8, 2026

Collection of Facebook Bug Bounty Writeups

837 151 Updated Mar 11, 2026

Agent skills for Obsidian. Teach your agent to use Obsidian CLI and open formats including Markdown, Bases, JSON Canvas.

43,397 3,089 Updated Jun 8, 2026

Disposable webmail server (similar to Mailinator) with built in SMTP, POP3, RESTful servers; no DB required.

Go 2,239 217 Updated Apr 2, 2026

MCP server + REST API para validacao de CPFs e consulta ao TRT3 com solver de CAPTCHA CRNN

Python 19 12 Updated Apr 27, 2026

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Kotlin 1,372 207 Updated Jul 15, 2026

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

TypeScript 1,364 108 Updated Jul 22, 2026

An agent-managed museum exhibit, built in Rust with Gajae-Code / LazyCodex — developed and maintained with no human intervention.

Rust 194,928 109,479 Updated Jun 26, 2026

An MCP server to let AI agents control Intruder

Python 26 7 Updated Apr 28, 2026

AndroHunter

Java 430 72 Updated Mar 8, 2026

Lightweight S3 misconfiguration and takeover detection tool

Python 9 3 Updated Mar 4, 2026

A list of established remote companies

8,901 707 Updated Jul 23, 2026

Android deeplink misconfiguration detector and exploitation tool

Python 91 11 Updated Feb 22, 2026

WebSocket Penetration Testing Toolkit for Burp Suite

Java 30 3 Updated Mar 5, 2026

A Model Context Protocol (MCP) server for querying the CVE-Search API

Python 102 15 Updated Jul 26, 2025

JSON Web Token Hack Toolkit

Rust 1,013 120 Updated Jul 26, 2026

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Python 200 51 Updated Feb 22, 2026

Persistent Context Across Sessions for Every Agent – Captures everything your agent does during sessions, compresses it with AI, and injects relevant context back into future sessions. Works with C…

JavaScript 88,657 7,705 Updated Jul 23, 2026

A Burp Suite extension for GraphQL security testing.

Java 66 10 Updated Mar 29, 2026

AI-Powered Dark Web OSINT Tool

Python 6,054 1,168 Updated Jul 15, 2026

Cloudflare Turnstile 绕过工具 | Cloudflare Bypass Tool based on SeleniumBase UC Mode | 支持 Mac/Windows/Linux

Python 404 73 Updated Jul 14, 2026

Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual setup required – just connect your device and start testing.

JavaScript 133 28 Updated Apr 15, 2026

Python-based static analyzer for Android APKs that extracts attack surface and flags high-risk vulnerability patterns with lightweight taint heuristics.

Python 60 16 Updated Feb 22, 2026

A tool for automating interactions with Android devices - including ADB, AndroGuard, and Frida interactivity.

Python 165 13 Updated Apr 14, 2024

A tool for analysing Android APKs and extracting root, integrity, and tamper detection checks.

Python 81 4 Updated Apr 13, 2024

A comprehensive penetration testing operations dashboard for managing projects, tasks, findings, clients, and assets. Built with Next.js, Express, and MongoDB.

TypeScript 311 52 Updated May 22, 2026

An advanced Frida-based instrumentation suite designed for Android App VAPT and security auditing.

JavaScript 5 2 Updated Dec 30, 2025

A fast and efficient subdomain hijacking scanner that checks for takeover vulnerabilities by matching HTTP response bodies against predefined service fingerprints.

Go 31 6 Updated Apr 12, 2026

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before t…

TypeScript 46,182 5,341 Updated Jul 24, 2026
Next