Skip to content
View mrtnrdl's full-sized avatar
🏠
Working from home
🏠
Working from home

Organizations

@TheFalsePositives

Block or report mrtnrdl

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A simple Bash script to discover all domains associated with a specific Microsoft 365 tenant - new replacement for check_mdi

Shell 16 2 Updated Sep 23, 2025

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Java 916 227 Updated Dec 19, 2025

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 2,212 380 Updated Dec 14, 2025

AI Security Shared Responsibility Model

85 8 Updated Sep 26, 2025

💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh

Python 3,553 461 Updated Nov 14, 2025

wallabag is a self hostable application for saving web pages: Save and classify articles. Read them later. Freely.

PHP 12,266 845 Updated Dec 15, 2025

An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability

940 121 Updated Dec 31, 2021

JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by outputting data as JSON for ingestion into BloodHound.

Python 107 5 Updated Sep 2, 2025

📄 Configuration files that enhance Cursor AI editor experience with custom rules and behaviors

MDX 36,288 3,082 Updated Oct 24, 2025

Free, no-nonsense, super fast blogging.

CSS 4,467 145 Updated Dec 19, 2025

c4 GenAI Suite

TypeScript 157 16 Updated Dec 16, 2025

A repository containing many free shaders to use with ghostty (the terminal)

GLSL 980 63 Updated Nov 10, 2025

The most intuitive desktop API client. Organize and execute REST, GraphQL, WebSockets, Server Sent Events, and gRPC 🦬

TypeScript 17,097 646 Updated Dec 19, 2025

A Magisk/KernelSU module that automatically adds user certificates to the system root CA store

Shell 2,254 244 Updated Jun 24, 2025

Set of tools to assess and improve LLM security.

Python 3,933 681 Updated Dec 19, 2025

A tool to dump exposed .git repositories

Rust 73 4 Updated Jun 3, 2025

A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.

Go 133 13 Updated May 7, 2025

Damn Vulnerable MCP Server

Python 1,234 124 Updated Dec 8, 2025

Subdomain takeover vulnerability checker

Go 1,470 199 Updated Sep 10, 2024

Questions that I ask myself at the end of each year and each decade.

1,265 160 Updated Dec 6, 2025

HTTP parameter discovery suite.

Python 5,976 843 Updated Feb 20, 2025

Small tool to Grab subdomains using Shodan api.

Go 519 68 Updated Sep 1, 2025

Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.

Java 8,524 918 Updated Dec 15, 2025

Fragaria-27 macropad keyboard

HTML 5 Updated Nov 9, 2024

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

Go 819 65 Updated Dec 15, 2025

802.11 Attack Tool

Rust 1,733 107 Updated Dec 19, 2025

💀 Don't fear the Reaper 👻

Go 712 76 Updated Dec 17, 2025

Methodology, links, tools for OSINT in different countries

691 72 Updated Nov 1, 2025

The modern API client that lives in your terminal.

Python 11,012 214 Updated Oct 14, 2025

An open-source personal API framework.

TypeScript 114 19 Updated Dec 16, 2025
Next