Stars
Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code
A list of all Active Directory machines from HackTheBox
HookChain: A new perspective for Bypassing EDR Solutions
Interview questions to screen offensive (red team/pentest) candidates
75k+ WordPress Nuclei templates, updated daily from Wordfence intel—filter by severity/tags/CVE and scan in one line. 🚀🔒
Automatic SSTI detection tool with interactive interface
The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.
Snaffler reimplementation in Python - https://github.com/SnaffCon/Snaffler
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
A Haskell solver for the general "Bridge and Torch Problem". This implementation is a part of my BSc's final year project at the University of Nottingham.
A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.
BC-SECURITY / Empire
Forked from EmpireProject/EmpireEmpire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
A multithreaded program to crack PKCS#12 files (p12 and pfx extensions)
Toward ethical, transparent and fair AI/ML: a critical reading list for engineers, designers, and policy makers