Lists (1)
Sort Name ascending (A-Z)
Stars
Run GLM-5.2 (744B MoE) on a 25GB-RAM consumer machine — pure C, zero deps, experts streamed from disk. Tiny engine, immense model. 🐦
A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab.…
A library of practical AI-agent loops and an installable skill for finding, adapting, and designing repeatable agent workflows.
How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind each phase.
An evolving recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh
A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if hand…
A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.
Offensive knowledge, offline. One search box for every playbook.
Decentralized C2 framework built on libp2p
A Ghidra agentic reverse engineering skill.
Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID
This cheatsheet maps common impacket workflows to their modern alternatives
Async BOF to automatically extract or renew Kerberos TGTs on a target system.
A theoretical reconstruction of the Claude Mythos architecture, built from first principles using the available research literature.
Python tool for converting files and office documents to Markdown.
A BloodHound OpenGraph collector that models Windows local privilege escalation as interconnected attack paths.
Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephemeral access into restricted environments using Tailscale’s …
Open Source Implementation of Cobalt Strike's Malleable C2
A growing collection of MCP servers bringing offensive security tools to AI assistants. Nmap, Ghidra, Nuclei, SQLMap, Hashcat and more.
The agent harness performance optimization system. Skills, instincts, memory, security, and research-first development for Claude Code, Codex, Opencode, Cursor and beyond.
haha150 / NAC-RPi5
Forked from l4rm4nd/NAC-RPi4Bash Script to Initialize a Raspberry Pi 5 for NAC Bypassing
Chisel new generation, written in rust. SSH under WSS with some customization.
Ralph is an autonomous AI agent loop that runs repeatedly until all PRD items are complete.
Adversary simulation and Red teaming platform with AI