Lists (5)
Sort Name ascending (A-Z)
- All languages
- Assembly
- Astro
- Batchfile
- C
- C#
- C++
- CSS
- Dart
- Dockerfile
- Erlang
- GDScript
- Go
- Go Template
- HCL
- HTML
- Java
- JavaScript
- Jinja
- Jupyter Notebook
- Kotlin
- LLVM
- Markdown
- Nim
- Objective-C
- Open Policy Agent
- PHP
- Perl
- PowerShell
- Python
- Ruby
- Rust
- SCSS
- Shell
- Swift
- TypeScript
- Vim Script
- Visual Basic
- Visual Basic .NET
- Vue
- XSLT
- YARA
- Zig
Starred repositories
DeepSeek Harness: Everything is a Plugin.
PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp
POC tool for ResetNightmare (CVE-2026-27912)
MaxMind's GeoIP2 GeoLite2 Country, City, and ASN databases
Lab4PurpleSec is a modular Purple Team homelab combining a vulnerable Active Directory environment (GOAD), a Docker-based web DMZ, pfSense + Suricata, and a Wazuh SIEM. It provides a realistic, ope…
Graph theory (network) library for visualisation and analysis
The fastest browser for AI agents to run browser automation, built for sharing your logged-in browser state with your AI agents, like Codex or Claude Code, without disturbing you. Zero cost, zero c…
An agent-first decompiler designed to be refined by other agents. Kuna is written in Rust and was originally ported from Ghidra.
Simple LLM service identification - translate IP:Port to Ollama, vLLM, LiteLLM, or 60+ other AI services in seconds
Agent skill for beautiful, verifiable architecture, workflow, sequence, data-flow, and lifecycle diagrams—self-contained HTML with motion and crisp export.
A smarter, self-hosted AI assistant — multi-user, multi-agent.
A desktop operator console for Sliver C2, built with Wails. Provides a native, lightweight GUI interface for Sliver by directly interfacing with its gRPC service no proxies or protocol reimplementa…
Protocol research client: x.ai signup → SSO → Grok Build OAuth → CLIProxyAPI auth export (authorized use only)
RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0, 8.8.1
Free Active Directory pentesting tool for Linux. Automates AD and LDAP enumeration, Kerberoasting, ASREPRoast, password spraying, ADCS/ESC1, DCSync, RBCD, gMSA, shadow credentials, NTLM relay and c…
wp2shell (CVE-2026-63030 & CVE-2026-60137) - full RCE chain
cursor-byok is a local implementation of Cursor's backend. https://github.com/leookun/cursor-byok/releases
A modular, stack-agnostic toolkit of security review skills for AI coding agents to autonomously find, reproduce, and patch vulnerabilities.
Python Exploitation Framework, V8 Engine Debugger, Proxy interceptor, marketplace, post-exploitation, backdoor generator,....
Skills for Designers and Engineers.
WebStrike 是一套以 Chromium 系浏览器扩展(Manifest V3) 为受控端点的指挥与控制(C2)套件。与传统以进程/驱动为主的 C2 相比,其工作重心落在 浏览器安全域:在合规授权与攻防演练场景下,可显著降低与终端 EDR 在 进程注入、驱动、内核回调 等层面的直接对抗成本,同时将能力锚定在用户 真实访问的 Web 会话 上。
DeepSeek-native AI coding agent for your terminal. Engineered around prefix-cache stability — leave it running.