Skip to content
View soffensive's full-sized avatar

Block or report soffensive

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Google Maps for AWS IAM

TypeScript 259 13 Updated Dec 13, 2025

Kotlin Rewrite of Logger++

Kotlin 13 1 Updated Nov 11, 2025

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Python 718 71 Updated Nov 11, 2025

Kingfisher is a blazingly fast and highly accurate tool for secret detection and live validation across files, Git repos, GitHub, GitLab, Azure Repos, BitBucket, Gitea, AWS S3, Docker images, Jira,…

Rust 695 44 Updated Dec 18, 2025

Repository for the Microsoft Identity Tools PowerShell module which provides various tools for performing enhanced Identity administration activities.

PowerShell 291 61 Updated Nov 18, 2025

YES3 Scanner: S3 Security Scanner for Access and Ransomware Protection

Python 99 8 Updated Aug 7, 2025

Buttercup finds and patches software vulnerabilities

Python 1,414 152 Updated Dec 18, 2025

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

PowerShell 637 69 Updated Oct 19, 2025

Proof of Concepts for malicious maintainers: How to Tamper with Releases built with GitHub Actions Worfklows, presented at fwd:cloudsec Europe 2025

Shell 77 4 Updated Sep 16, 2025

Adobe Experience Manager (AEM) hacking toolkit

Python 101 19 Updated Sep 26, 2025

A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive audit capabilities.

Java 47 4 Updated Nov 17, 2025

Detect common NFS server misconfigurations

Python 89 11 Updated May 27, 2025

asyncio support for botocore library using aiohttp

Python 1,367 205 Updated Dec 15, 2025

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Shell 1,426 115 Updated Feb 17, 2025

📦 Make security testing of K8s, Docker, and Containerd easier.

Go 4,497 591 Updated Nov 5, 2025

match command-line arguments to their help text

Python 13,877 827 Updated Nov 3, 2025

chw00t - Unices chroot breaking tool

C 610 56 Updated Jun 13, 2019

A small utility to modify the dynamic linker and RPATH of ELF executables

C 4,101 515 Updated Dec 15, 2025

Open-source AI agents for penetration testing

Python 18,020 1,845 Updated Dec 16, 2025

Cybersecurity AI (CAI), the framework for AI Security

Python 6,416 871 Updated Dec 19, 2025

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky assignments, and potential misconfigurations.

PowerShell 292 21 Updated Dec 8, 2025

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

Python 1,580 151 Updated Mar 4, 2024

A tool to discover and exploit Nginx alias traversal misconfiguration, the tool can bruteforce the URL path recursively to find out hidden files and directories.

Python 129 20 Updated Dec 10, 2023

Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.

Python 223 15 Updated Jul 24, 2025

AI Red Teaming playground labs to run AI Red Teaming trainings including infrastructure.

TypeScript 1,763 261 Updated Dec 6, 2025

This script automates SQL injection testing using SQLMap with AI-powered decision making.

Python 387 69 Updated Nov 13, 2025

This repository contains all the examples related to a series of tutorials that demonstrate how to use the new Montoya API of Burp Suite to create extensions that will greatly simplify our penteste…

Java 45 6 Updated Dec 10, 2025

An intentionally vulnerable NGINX setup

Dockerfile 243 30 Updated Nov 10, 2020

PyBurp is a Burp Suite extension that provides predefined Python functions for HTTP/WebSocket traffic modification, context menu registration, Intruder payload processing, passive/active scanning, …

Java 34 12 Updated Nov 27, 2025
Next