GenAI Security Researcher | AI Red Teamer | Offensive Security Author of AATMF /P.R.O.M.P.T/ SEF frameworks| 50+ CVEs | Same Attack, Different Substrate
Claude-Red. claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.
2.8kThe-LLM-Red-Teamer-s-Playbook. A diagnostic methodology for bypassing LLM defense layers — from input filters to persistent memory exploitation.
38AATMF-Adversarial-AI-Threat-Modeling-Framework. AATMF | An Open Source - Adversarial AI Threat Modeling Framework
25Xposure. fully autonomous credential intelligence platform that discovers, │ │ extracts, correlates, verifies, and reports exposed secrets across your │ │ target's entire attack surface.
14Burp-MCP-Security-Analysis-Toolkit. Burp MCP Security Analysis Toolkit
10offensive-checklist.
9Awesome-Snail-OSINT. an Awesome List of OSINT Resources
8KubeRoast. From-scratch, red-team–oriented Kubernetes misconfiguration & attack-path scanner. Fast, readable, and opinionated toward real-world escalation paths.
6justdastit. The Burp You Can Afford — Open-source CLI DAST toolkit
3SnailHunter. SnailHunter is a fully automated bug bounty hunting platform that combines traditional security tools with AI-powered analysis.
3AwesomeSnailsOsint. A Great Collection of OSINT tools, By Snailbytes
2CVE-2026-3288. Walkthrough: ingress-nginx Configuration Injection via rewrite-target Annotation
2chatpgt01-bypass-text.
2SnailSploit_Recon_extension. SnailSploit Recon is a passive collector. It silently captures everything as you browse — scripts, API calls, forms, headers, cookies, redirects — and correlates them into prioritized attack leads with copy-pasteable commands. Browse 1 page → basic intel. Browse 20 pages → a full dossier.
2aatmf-toolkit. Python
1SnailSploit. C++
1OpenClaw-Env-Injection. GHSA-j425-whc4-4jgc: OpenClaw system.run Env Override Filtering Allowed Dangerous Helper-Command Pivots (CVSS 6.3)
1SnailSploit.com. HTML
1SnailObfuscator. SnailObfuscator uses structurally-aware engines instead of regex string hacking:
1ChatGPT-DNS-Exfill. This repository documents a controlled research experiment that demonstrates how DNS lookups triggered by rendered content can be used to exfiltrate data. The technique leverages the browser's automatic DNS resolution behavior when rendering hostnames, without requiring HTTP requests or file upload
1SnailPath. Smart, low–false-positive directory & route discovery for modern web apps. Async scanner with HTTP/2 (and optional HTTP/3), soft-404 suppression, a JS/sourcemap route miner, adaptive concurrency, API-aware branching, and polished outputs (HTML, JSONL, evidence, Burp/ZAP replay pack).
1ZenFlood. ZenFlood is a low-bandwidth stress testing tool designed to simulate a DDoS attack by holding open a large number of HTTP connections to the target server. This tool is inspired by the Slowloris attack and is designed to test the resilience of web servers to such attacks.
1SnailSploit.
1