Lists (1)
Sort Name ascending (A-Z)
Stars
claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a s…
Firmware security research platform combining binary analysis, taint tracing, and emulation across IoT, edge AI, mobile devices, and robotics.
A Beacon Object File (BOF) for Adaptix C2 based on the work of jayesther OSEP_enum.ps1
Executes PowerShell from an unmanaged process
Extract uncompiled, uncompressed SPA code from Webpack source maps.
The agent that grows with you
Look up a NAFDAC registration number and get product details
Capture HTTP/HTTPS traffic from Android apps and send to Proxyman for debugging.
A simple LSPosed module to bypass signature checks for apks installed from outside google play
Android deeplink misconfiguration detector and exploitation tool
SSLPinDetect is a tool for analyzing Android APKs to detect SSL pinning implementations by scanning for known patterns in decompiled code. It helps security researchers and penetration testers iden…
A Magisk/KernelSU module that automatically adds user certificates to the system root CA store
⭐ A simple, fast and powerful blog & document theme built by Astro
A Frida MCP server to enable autonomous AI assistance for Android instrumentation
A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnerability.
API Security Vulnerability Scanner designed to help you secure your APIs.
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security s…
The repo contains a series of challenges for learning Frida for Android Exploitation.
Obtain GraphQL API schema even if the introspection is disabled
Another Windows Local Privilege Escalation from Service Account to System
graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology is behind a given GraphQL endpoint.
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files
best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.