7h30th3r0n3

Elite
@7h30th3r0n3

Evil-M5Project. Evil-M5Project is an innovative tool developed for ethical hacking and exploration of WiFi networks. It's compatible with Cardputer, Atoms3, Fire, core2. You can scan, monitor, and interact with WiFi networks in a controlled environment. This project is designed for educational purposes, aiding in understanding network security and vulnerabilities

2.5k

Raspyjack. Small offensive network toolkit for Raspberry Pi (+ Waveshare 1.44″ LCD HAT) and Cardputer Zero inspired by pager and sharkjack fonctionnalities. For redteam and educational purposes only.

1.1k

Evil-BW16. Evil-BW16 is a dual band 2.4 Ghz and 5.8 Ghz deauther, manageable via serial, it is automated and configurable

133

NanoC6-ESP32-Honeypot. NanoC6 and ESP32 Honeypot with Web UI for config, SPIFFS Persistence and Webhook Alerts.

76

OllamaHound. Mass reconnaissance, version fingerprinting, CVE tester and live exploitation framework for Ollama open instances.

62

PwnGridSpam. A standalone ESP-32 PwngridSpam attack to Spam face and name on all pwnagotchi near you, and cause a DoScreen (Deni Of Screen PWND part)

55

Awesome-GPT-Agents. A curated list of GPT agents for cybersecurity

24

Pwnagotchi-plugins. A small collection of created and modified script and plugins for pwnagotchi

23

CVE-2026-9082-Drupal-PoC. Drupal Core PostgreSQL SQL Injection PoC - CVE-2026-9082. Ethical PoC for the Drupal vulnerability allowing anonymous SQL injection through the JSON:API module on PostgreSQL-backed sites.

22

shell-backdoor. all shell backdoor in the world

19

StormInk. A python script to check printer across the world that allow printing on port 9100 trough pjl

19

MindJack. MindJack. Get into the mind of AI agents. Read their memories. Rewrite their instructions. Security toolkit that extracts conversation history and demonstrates prompt injection across 10 AI coding assistants, 56 attack scenarios, zero dependencies.

16

WFOP. Who The Fuck Open a Port !!

12

nyanBOX. A compact ESP32 Wroom32U toolkit for wireless security—scan, analyze, jam, and spoof RF, Wi-Fi, and BLE protocols, all from a simple menu-driven interface.

11

Flipper. Playground (and dump) of stuff I make or modify for the Flipper Zero

10

adb-shot. adb-shot is a small script that allows you to stream the phone screen via adb by quickly pulling screenshots as quickly as the phone or connection can handle it

10

WifiReplay. A python script to replay captured pcap on desired channel for research and test

9

OpenCanaryChecker. OpenCanaryChecker is a script to parse usefull information of opencanary log, very usefull to get realtime informations

9

SecLists. SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

7

Simple-Password-Session-Stealer. a simple fake linux password ask that output credential in a file

6

awesome-m5stack-cardputer. Awesome M5Stack Cardputer

6

M5PixelFlow. GIF and JPG viewer for M5Stack devices

5

PEASS-ng. PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

5

RatioTracker. RatioTracker is a command-line security auditing tool that checks whether a BitTorrent tracker correctly validates announce data and enforces ratio integrity against actual transfer activity.

5

7h30th3r0n3.

4

ctfd-ai-cheater-detector. Behavioral analysis tool to detect AI/LLM-assisted participants in CTFd competitions

4

LFI-scan. LFI-Scan-v1.0 is a perl direction traversal scanner which find the right path and store it in a file.

3

RTSP-Eyes. A script to view several RTSP streams at the same time with separate box

3

Chimera. Hybrid AI orchestration - Claude Code as the brain, Codex CLI as the muscle. Multi-model sub-agent delegation.

3

CVE-2025-51586-PrestaShop-PoC. PrestaShop AdminLogin Email Enumeration PoC - CVE-2025-51586. This repository provides an ethical Proof-of-Concept (PoC) for the PrestaShop vulnerability allowing user enumeration through the AdminLogin password reset mechanism. It explains the impact, setup, and usage of the PoC script.

1

pharhost-temp.

1

wall-of-flipper. Wall of Flipper - BLE Flipper Zero scanner with live dashboard for events

1
32
Apply