Skip to content
View B1luuU's full-sized avatar

Block or report B1luuU

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

8 Claude skills · 100+ recon capabilities · 80 secret-regex patterns · 80+ dorks · 9 read-only credential validators · 27 attack-path templates · ~10,000 lines of structured tradecraft. Drop-in SKI…

Python 2,299 423 Updated Aug 11, 2026

Collection of Facebook Bug Bounty Writeups

840 152 Updated Mar 11, 2026

Agent skills for Obsidian. Teach your agent to use Obsidian CLI and open formats including Markdown, Bases, JSON Canvas.

46,323 3,320 Updated Jun 8, 2026

Disposable webmail server (similar to Mailinator) with built in SMTP, POP3, RESTful servers; no DB required.

Go 2,244 219 Updated Apr 2, 2026

MCP server + REST API para validacao de CPFs e consulta ao TRT3 com solver de CAPTCHA CRNN

Python 20 12 Updated Apr 27, 2026

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Kotlin 1,407 208 Updated Aug 5, 2026

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

TypeScript 1,375 111 Updated Aug 11, 2026

An agent-managed museum exhibit, built in Rust with Gajae-Code / LazyCodex — developed and maintained with no human intervention.

Rust 195,053 109,111 Updated Aug 6, 2026

An MCP server to let AI agents control Intruder

Python 26 7 Updated Apr 28, 2026

AndroHunter

Java 451 74 Updated Mar 8, 2026

Lightweight S3 misconfiguration and takeover detection tool

Python 9 3 Updated Mar 4, 2026

A list of established remote companies

8,936 707 Updated Jul 23, 2026

Android deeplink misconfiguration detector and exploitation tool

Python 89 11 Updated Feb 22, 2026

WebSocket Penetration Testing Toolkit for Burp Suite

Java 31 3 Updated Mar 5, 2026

A Model Context Protocol (MCP) server for querying the CVE-Search API

Python 103 15 Updated Jul 26, 2025

JSON Web Token Hack Toolkit

Rust 1,015 122 Updated Aug 15, 2026

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Python 212 55 Updated Feb 22, 2026

Persistent Context Across Sessions for Every Agent – Captures everything your agent does during sessions, compresses it with AI, and injects relevant context back into future sessions. Works with C…

JavaScript 90,842 7,933 Updated Aug 14, 2026

A Burp Suite extension for GraphQL security testing.

Java 67 9 Updated Mar 29, 2026

AI-Powered Dark Web OSINT Tool

Python 6,321 1,213 Updated Aug 7, 2026

Cloudflare Turnstile 绕过工具 | Cloudflare Bypass Tool based on SeleniumBase UC Mode | 支持 Mac/Windows/Linux

Python 416 72 Updated Jul 14, 2026

Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual setup required – just connect your device and start testing.

JavaScript 135 30 Updated Apr 15, 2026

Python-based static analyzer for Android APKs that extracts attack surface and flags high-risk vulnerability patterns with lightweight taint heuristics.

Python 59 16 Updated Feb 22, 2026

A tool for automating interactions with Android devices - including ADB, AndroGuard, and Frida interactivity.

Python 165 13 Updated Apr 14, 2024

A tool for analysing Android APKs and extracting root, integrity, and tamper detection checks.

Python 81 4 Updated Apr 13, 2024

A comprehensive penetration testing operations dashboard for managing projects, tasks, findings, clients, and assets. Built with Next.js, Express, and MongoDB.

TypeScript 312 52 Updated May 22, 2026

An advanced Frida-based instrumentation suite designed for Android App VAPT and security auditing.

JavaScript 5 2 Updated Dec 30, 2025

A fast and efficient subdomain hijacking scanner that checks for takeover vulnerabilities by matching HTTP response bodies against predefined service fingerprints.

Go 42 7 Updated Apr 12, 2026

Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.

TypeScript 46,843 5,410 Updated Aug 14, 2026
Next