A single archive of public exploit PoCs and vulnerability research
Bleeding edge django template focused on code quality and security
Daily updated lists of cloud, bot, and service IP ranges
High-performance reconnaissance and vulnerability scanning tool
Utilize all available CPU cores for accepting new client connections
A list of useful payloads and bypass for Web Application Security
Automatic SQL injection and database takeover tool
Check breached emails and find exposed passwords from public dumps
Utility for sending notifications, on demand and when commands finish
A TLS MITM proxy for Non-HTTP traffic, with support for TLS upgrades
Automated framework for running pentesting tools and workflows
AWS Encryption SDK
Privacy and Security focused Segment-alternative, in Golang
A tool that allows you to create vulnerable environments
Simple and flexible tool for managing secrets
Automation framework for reconnaissance and penetration testing tasks
A Burp Extension for GraphQL Security Testing
Alerta monitoring system
Skills for threat modeling, scanning, triage, patching, etc.
A Claude Code skill bundle for bug hunting
CTFs as you need them
Know the dangers of credential reuse attacks
WAFW00F allows one to identify and fingerprint Web App Firewall
With Django Hijack, admins can log in and work on behalf of others
Generate probable usernames from LinkedIn company employee lists