Skip to content
View icheernoom's full-sized avatar
😆
Focusing
😆
Focusing

Block or report icheernoom

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
46 stars written in HTML
Clear filter

A list of public penetration test reports published by several consulting firms and academic security groups.

HTML 9,351 2,131 Updated Nov 24, 2025

Automagically reverse-engineer REST APIs via capturing traffic

HTML 9,216 345 Updated Jan 19, 2026

A guide to smart contract security best practices

HTML 7,593 1,483 Updated Mar 28, 2025

Gather and update all available and newest CVEs with their PoC.

HTML 7,533 959 Updated Feb 4, 2026

the LLM vulnerability scanner

HTML 6,914 775 Updated Feb 4, 2026

Metasploitable3 is a VM that is built from the ground up with a large amount of security vulnerabilities.

HTML 5,422 1,237 Updated Feb 13, 2025

Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀

HTML 5,393 956 Updated Nov 18, 2025

Official OWASP Top 10 Document Repository

HTML 5,219 1,016 Updated Jan 6, 2026

Automate the creation of a lab environment complete with security tooling and logging best practices

HTML 4,900 1,015 Updated Jul 6, 2024

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

HTML 3,775 796 Updated Jun 14, 2025

ChatGPT Jailbreaks, GPT Assistants Prompt Leaks, GPTs Prompt Injection, LLM Prompt Security, Super Prompts, Prompt Hack, Prompt Security, Ai Prompt Engineering, Adversarial Machine Learning.

HTML 3,620 461 Updated Nov 12, 2025

Application Security Verification Standard

HTML 3,329 796 Updated Jan 31, 2026

HTTPLeaks - All possible ways, a website can leak HTTP requests

HTML 2,091 207 Updated Jan 3, 2026

Active Directory and Internal Pentest Cheatsheets

HTML 2,029 379 Updated Jan 28, 2026

An addon root hiding service for KernelSU

HTML 2,021 285 Updated Feb 4, 2026

ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.

HTML 1,883 298 Updated Jun 15, 2020

CVE-2021-40444 PoC

HTML 1,712 479 Updated Dec 25, 2021

WADComs is an interactive cheat sheet, containing a curated list of offensive security tools and their respective commands, to be used against Windows/AD environments.

HTML 1,635 193 Updated Aug 29, 2025

Malware samples, analysis exercises and other interesting resources.

HTML 1,608 234 Updated Jan 13, 2024

vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.

HTML 1,322 330 Updated Jan 10, 2025

OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

HTML 1,319 806 Updated Feb 2, 2026

A directory of direct links to delete your account from web services.

HTML 1,218 426 Updated Feb 2, 2026

A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE ATT&CK® framework.

HTML 1,207 135 Updated Feb 3, 2026

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

HTML 823 169 Updated Oct 11, 2023

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area.

HTML 676 108 Updated Apr 22, 2022

OWASP Foundation Web Respository

HTML 601 90 Updated Nov 24, 2025

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting) vulnerabilities on sites where injections are blocke…

HTML 552 86 Updated Jan 30, 2026

Certified Red Team Operator

HTML 448 122 Updated Apr 17, 2022

Commodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLT

HTML 405 122 Updated Feb 4, 2026
Next