Skip to content
View soffensive's full-sized avatar

Block or report soffensive

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

The open source coding agent.

TypeScript 145,534 16,507 Updated Apr 19, 2026

Tools for publishing transcripts for Claude Code sessions

Python 1,448 156 Updated Feb 12, 2026

Static analysis for GitHub Actions

Rust 4,209 170 Updated Apr 18, 2026

Opinionated defaults, documentation, and workflows for Claude Code at Trail of Bits

Shell 1,867 138 Updated Apr 2, 2026

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

C# 264 27 Updated Apr 18, 2026
Python 3 Updated Apr 16, 2026

Command-line client for WebSockets, like netcat (or curl) for ws:// with advanced socat-like functions

Rust 8,461 324 Updated Dec 27, 2025

🤹 Caido AI Skills

TypeScript 180 13 Updated Apr 17, 2026

Personal Burp extensions to simplify research & testing

Python 6 Updated Feb 23, 2026

A Burp Suite extension for analyzing Next.js Server Actions - server-side functions identified by hash IDs and `Next-Action` headers.

Python 53 8 Updated Aug 8, 2025

contaiNERD CTL - Docker-compatible CLI for containerd, with support for Compose, Rootless, eStargz, OCIcrypt, IPFS, ...

Go 10,025 766 Updated Apr 18, 2026

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

JavaScript 1,564 184 Updated Jan 16, 2026

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.

Go 220 27 Updated Apr 18, 2026

Standalone utility for service discovery on open ports!

Go 753 72 Updated Jan 13, 2026

A collection of static SSH keys (public and private) that have made their way into software and hardware products.

853 119 Updated Feb 13, 2025

Set Linux as router in one command. Support Internet sharing, redsocks, Wifi hotspot, IPv6. Can also be used for routing VM/containers 🛰️

Shell 2,004 181 Updated Mar 14, 2026

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Python 43,168 4,519 Updated Apr 13, 2026

CyberStrikeAI is an AI-native security testing platform built in Go. It integrates 100+ security tools, an intelligent orchestration engine, role-based testing with predefined security roles, a ski…

Go 3,347 558 Updated Apr 18, 2026

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Kotlin 982 156 Updated Apr 9, 2026

Maester is a PowerShell based test automation framework to help you stay in control of your Microsoft security configuration.

HTML 853 234 Updated Apr 16, 2026

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

Go 735 85 Updated Aug 26, 2025

A growing collection of MCP servers bringing offensive security tools to AI assistants. Nmap, Ghidra, Nuclei, SQLMap, Hashcat and more.

Python 524 71 Updated Apr 8, 2026

GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.

Python 509 46 Updated Apr 17, 2026

Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations, and compliance violations across your Kubernetes clusters, …

Go 76 1 Updated Sep 13, 2025

Autoswagger by Intruder - detect API auth weaknesses

Python 1,926 183 Updated Aug 8, 2025

A comprehensive security checklist for MCP-based AI tools. Built by SlowMist to safeguard LLM plugin ecosystems.

826 71 Updated Apr 28, 2025

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Shell 721 75 Updated Apr 9, 2026

🛡️ High-performance WAF & CDN detection tool. Identify protection layers (Cloudflare, Akamai, AWS, Fastly, and more), run effectiveness and enforcement tests with evasion payloads, and generate pos…

Rust 111 5 Updated Mar 9, 2026
Next