x0rium's starred repositories

open-source-ios-apps

:iphone: Collaborative List of Open-Source iOS Apps

qwik

Instant-loading web apps, without effort

Language:TypeScriptLicense:MITStargazers:20115Issues:142Issues:2005

Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

Language:JavaScriptLicense:GPL-3.0Stargazers:16530Issues:571Issues:1456

assemblyscript

A TypeScript-like language for WebAssembly.

Language:WebAssemblyLicense:Apache-2.0Stargazers:16529Issues:198Issues:1408

trufflehog

Find and verify secrets

Language:GoLicense:AGPL-3.0Stargazers:14164Issues:167Issues:571

ag-grid

The best JavaScript Data Table for building Enterprise Applications. Supports React / Angular / Vue / Plain JavaScript.

Language:TypeScriptLicense:MITStargazers:11952Issues:214Issues:5961

poisontap

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using Raspberry Pi Zero & Node.js.

AFL

american fuzzy lop - a security-oriented fuzzer

Language:CLicense:Apache-2.0Stargazers:3478Issues:82Issues:91

emba

EMBA - The firmware security analyzer

Language:ShellLicense:GPL-3.0Stargazers:2465Issues:43Issues:245

awesome-exploit-development

A curated list of resources (books, tutorials, courses, tools and vulnerable applications) for learning about Exploit Development

Exegol

Fully featured and community-driven hacking environment

Language:PythonLicense:GPL-3.0Stargazers:1608Issues:35Issues:83

server

Hashtopolis - distributed password cracking with Hashcat

Language:PHPLicense:GPL-3.0Stargazers:1382Issues:66Issues:734

Cloudmare

Cloudflare, Sucuri, Incapsula real IP tracker.

Language:PythonLicense:NOASSERTIONStargazers:1244Issues:31Issues:45

conti-pentester-guide-leak

Leaked pentesting manuals given to Conti ransomware crooks

routeros

RouterOS Security Research Tooling and Proof of Concepts

Language:C++License:BSD-3-ClauseStargazers:846Issues:113Issues:0

NimPlant

A light-weight first-stage C2 implant written in Nim.

Language:NimLicense:MITStargazers:731Issues:13Issues:21

awesome-command-control

A collection of awesome Command & Control (C2) frameworks, tools and resources for post-exploitation and red teaming assignments.

spy-extension

A Chrome extension that will steal literally everything it can

Language:TypeScriptLicense:MITStargazers:610Issues:11Issues:4

TOP

TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things

Language:ShellStargazers:592Issues:29Issues:0

Arsenal

Arsenal is a Simple shell script (Bash) used to install tools and requirements for Bug Bounty

Language:PythonLicense:Apache-2.0Stargazers:249Issues:11Issues:5

awesome-malware

:computer::warning: A curated collection of awesome malware, botnets, and other post-exploitation tools.

CVE-2023-22809-sudoedit-privesc

A script to automate privilege escalation with CVE-2023-22809 vulnerability

rulesfinder

Machine-learn password mangling rules

CVE-2023-25136

OpenSSH 9.1 vulnerability mass scan and exploit

BesoToken

A tool to Impersonate logged on users without touching LSASS (Including non-Interactive sessions).

Language:C++License:GPL-2.0Stargazers:94Issues:2Issues:0

RNN-Passwords

Using RNNs for password cracking

cve-2022-31898

Exploit POC code for CVE-2022-31898, a command injection for GL-iNet routers with firmware below 3.215

Language:PythonLicense:GPL-3.0Stargazers:16Issues:1Issues:0

minio-telegram-bot

Bot telegram to upload files to an S3 (minio)

Language:GoLicense:Apache-2.0Stargazers:7Issues:2Issues:0