Lists (1)
Sort Name ascending (A-Z)
Starred repositories
Offensive security toolkit for Claude Code
GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.
A visual reference of 118 essential red team tools, frameworks & standards, organized like a periodic table. Includes a printable PDF version.
GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrary commands, using argument injection.
CVSS v4.0 calculator
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
A collection of data fetchers, and simple quarterly and yearly CVE forecasting models.
A cloud-native Go microservices framework with cli tool for productivity.
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
Easily fine-tune, evaluate and deploy gpt-oss, Qwen3, DeepSeek-R1, or any open source LLM / VLM!
Learn C and build your own programming language in under 1000 lines of code!
Godot Engine – Multi-platform 2D and 3D game engine
stoRPer, a modular adaptable AWD Pico based robot rover
CALDERA plugin for adversary emulation of AI-enabled systems
CoseSignTool is a platform-agnostic command line application to COSE sign files and validate COSE signatures. CoseHandler is a library of functions for COSE signing and validation for use by .NET a…
In-depth attack surface mapping and asset discovery
OWASP Foundation Web Respository
MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore
The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.
The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis
Sophos-originated indicators-of-compromise from published reports
Automation to assess the state of your M365 tenant against CISA's baselines
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.