Skip to content
View xrkk's full-sized avatar

Block or report xrkk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods BYOVD

Python 113 16 Updated Apr 27, 2026

Skills for Real Engineers. Straight from my .claude directory.

Shell 42,088 3,309 Updated Apr 29, 2026

Nutcracker is a powerful, modular and extensible framework designed for mobile security analysis and offensive threat intelligence. Detects and bypasses anti-root/RASP protections, analyzes insecur…

Python 16 3 Updated Apr 29, 2026

🔐 Offensive security knowledge base — 50+ docs covering web exploitation, bug bounty, privilege escalation, CTF writeups, APT emulation, and forensics. Real payloads, real workflows, built from the…

204 34 Updated Apr 22, 2026

Cross-Code Organizer (formerly Claude Code Organizer): cross-harness config dashboard for Claude Code, Codex CLI, MCP servers, skills, memories, agents, sessions, security scanning, context budget,…

JavaScript 287 26 Updated Apr 28, 2026

Wuzen R4T 2026 is an advanced, actively developed Android security research framework designed for ethical hacking and penetration testing. Positioned as a modern successor to outdated remote admin…

208 75 Updated Apr 14, 2026

Local knowledge graph for Claude Code. Builds a persistent map of your codebase so Claude reads only what matters — 6.8× fewer tokens on reviews and up to 49× on daily coding tasks.

Python 14,009 1,562 Updated Apr 21, 2026

AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.

Python 1,325 250 Updated Apr 29, 2026

AI coding assistant skill (Claude Code, Codex, OpenCode, Cursor, Gemini CLI, GitHub Copilot CLI, OpenClaw, Factory Droid, Trae, Google Antigravity). Turn any folder of code, docs, papers, images, o…

Python 37,915 4,189 Updated Apr 29, 2026

15-stage Windows malware development & analysis course in Rust. Red team builds it, blue team detects it. All 15 binaries achieved 0/76 on VirusTotal.

171 20 Updated Mar 27, 2026

RedTeam-Agent: AI-Powered Autonomous Red Team Framework via Model Context Protocol. AI红队与内网渗透自动化框架,支持 gogo, fscan, httpx, nuclei, impacket, playwright 等 15+ 渗透工具,让 LLM 直接化身安全审计黑客。

C 40 4 Updated Apr 24, 2026

An AI red-team agent for authorized labs and web app pentesting workflows. Turns Claude Code / OpenCode / Codex into a structured recon → test → exploit → report workflow, with containerized tools …

Python 37 2 Updated Apr 28, 2026

Pentest Coverage Tracker is a Burp Suite extension that helps penetration testers monitor testing coverage in real time. It logs discovered endpoints and tracks whether their parameters are actuall…

Python 23 2 Updated Mar 16, 2026

Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection resistance, and audit live MCP servers for tool poiso…

Python 230 34 Updated Apr 29, 2026

claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a s…

1,068 181 Updated Apr 15, 2026

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows kernel drivers for exploitable IOCTLs natively u…

Python 361 46 Updated Apr 28, 2026

"ULTRASHIP" Claude Code plugin — 39 skills, 33 tools, 11 agents for ship-ready workflows: planning, review, pentesting, safety guardrails, canary monitoring, SEO/AI-readiness check, penetration tes…

JavaScript 62 7 Updated Apr 18, 2026

Adversarial AI bug hunter with auto-fix skill for Claude Code, Cursor, Codex CLI, GitHub Copilot CLI, Kiro CLI, Opencode, Pi Coding Agent, and more. Multi-agent pipeline finds security vulnerabilit…

JavaScript 205 20 Updated Mar 14, 2026

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Python 217 25 Updated Apr 22, 2026

⚡ ReconNinja v7.1.0 — 38-phase recon framework for pentesters & bug bounty hunters. Subdomain enum → port scan → web recon → WAF/CORS/JS/cloud bucket detection → GitHub OSINT → CVE lookup → AI thre…

Python 37 6 Updated Apr 28, 2026

CVE-2026-3844: Breeze Cache <= 2.4.4 Unauthenticated Arbitrary File Upload to RCE (CVSS 9.8)

Python 4 Updated Apr 25, 2026

Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.

C 40 4 Updated Apr 23, 2026

Watchtower is a simple AI-powered penetration testing automation CLI tool that leverages LLMs and LangGraph to orchestrate agentic workflows that you can use to test your websites locally. Generate…

Python 60 5 Updated Feb 27, 2026

Automate Android devices with an LLM agent that takes natural language commands from messaging apps and runs device tasks autonomously

Kotlin 11 2 Updated Apr 29, 2026

0 Click RCE exploit for CVE-2026-34159 Lama.cpp RPC server

Python 23 10 Updated Apr 23, 2026
Python 20 6 Updated Apr 10, 2026
TypeScript 24 2 Updated Apr 21, 2026

CTF-style Docker lab for CVE-2026-41651 (Pack2TheRoot): PackageKit permissive-polkit local privilege escalation

Shell 4 2 Updated Apr 25, 2026

Rogue Binary Model Context Protocol (MCP): a Docker-packaged binary analysis lab for AI agents. It supports reverse engineering, malware triage, and artifact comparison with compact tool responses …

Rust 19 4 Updated Apr 28, 2026
Next