Stars
Say goodbye to the complex, verbose, and laggy interaction mode of IDA Pro MCP
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Early 2019 - late 2020. R.I.P. CVE-2020-12928 https://h0mbre.github.io/RyzenMaster_CVE/#
DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
KernelGPT: Enhanced Kernel Fuzzing via Large Language Models (ASPLOS 2025)
[EMNLP2025] "LightRAG: Simple and Fast Retrieval-Augmented Generation"
Open-source AI hackers to find and fix your app’s vulnerabilities.
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.
damai大麦抢票原千人群迁移,千个github的star迁移过来的项目。
bata24 / gef
Forked from hugsy/gefGEF - GDB Enhanced Features - bata24's fork
This is an example of a project with continuous fuzzing integration
Linux Runtime Security and Forensics using eBPF
Malware Configuration And Payload Extraction
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static a...
Linux privilege escalation auditing tool
Sec-Fork / POC-20241008
Forked from dontian122/POC收集整理漏洞EXP/POC,大部分漏洞来源网络,目前收集整理了1100多个poc/exp,长期更新。
攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.