GitHub - jonaslejon/malicious-pdf: 💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
usestrix/strix: ✨ Open-source AI hackers for your apps 👨🏻💻
aliasrobotics/cai: Cybersecurity AI (CAI), the framework for AI Security
Unleashing the Hound: How AI Agents Find Deep Logic Bugs in Any Codebase
GitHub - RedSiege/Chromatophore: Utilities for obfuscating shellcode [exp]
Slice: SAST + LLM Interprocedural Context Extractor
GitHub - jumpycastle/rre-burp: Burp extension for Recursive Request Exploits (RRE) — DEFCON 2025 [app] [exp]
GitHub - 0x4m4/hexstrike-ai: HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities. [app] [sys]
Buttercup is now open-source!
GitHub - loerting/dalvikus: Android reverse-engineering tool / smali editor [rev] [sys]
GitHub - atiilla/whiterabbit-mcp: A lightweight, extensible cybersecurity toolkit that connects AI assistants to security tools through the Model Context Protocol (MCP), enabling AI-assisted security research, scanning, and analysis. [app]
GitHub - irsdl/ysonet: Deserialization payload generator for a variety of .NET formatters [app] [exp]