Security-testing methodology as portable, tool-agnostic agent skills for Claude Code and any agent runtime: white-box bug hunting, AI-agent and LLM red-teaming, supply-chain risk, and appsec depth.
Official desktop client for GLM-5.3. 1M-token codebase auditing, RL-powered zero-day discovery, and exploit chaining. FREE unmetered access until October!
A multi-scan recon tool that combines Masscan with two Nmap passes to detect port state changes and improve accuracy.
iOS 26.1 vm_map_clip race + vm_fault_wire_object_pages OOB kernel exploit harness (patched in 26.6)
A cPanel and WHM authentication bypassing tool
PoCs for three vulnerabilities (plus one chained exploit) in DeepSeek Harness: !!js config execution, read-only sandbox full-fs reads, vm sandbox exec escape → unconfined host RCE
Unlocking _everything_ on the CPU with DRAM scrambling
A labeled benchmark for MCP security scanners with hard negatives that measure whether a scanner cries wolf.
Mythic C2 profile that uses Zoom Team Chat (Server-to-Server OAuth) as a duplex command-and-control bus.
Vulnerability assessment and penetration testing of Metasploitable2 in an isolated VMware laboratory environment.
Pre-authentication RCE in Cisco CUCM 15.x via Apache Axis JNDI injection — independent chain, survives Silent;Call patches
Pre-authentication SIP request smuggling in Cisco Expressway X14.x via Content-Length integer overflow