Delorean. NTP Main-in-the-Middle tool
256AndroidPINCrack. Bruteforce the Android Passcode given the hash and salt.
196fiesta. Tool implementing side-channel attacks against HTTPS
13Jail0wnMe. Use a JailBreakMe 3.0 PDF file and change its Payload in order to get a reverse shell.
7fiesta-old-py. FIESTA Attack
7WebSearch. Search vhost names given a host range. Powered by Bing.
6FaceCat. Covert Channel PoC using FaceBook
6tcpprox. A small command-line TCP proxy utility written in Python
5Necromant. Python Script that search unused Virtual Hosts in Web Servers
4guesser. Universal char by char guesser for Injections Attacks (and probably more)
3docker-breach. Docker image to exploit BREACH & TIME vulnerabilities
2docker-metasploit. Metasploit docker image based on remnux/metasploit
2phd. Files related to my PhD
2metasploit-framework. Metasploit Framework
1docker-llm-playground. This is a docker compose using ollama, open-webui and a custom filter implementing a LLM firewall. It was designed to train your skills in Prompt Injection and LLM security.
1docker-crime. Docker image to exploit CRIME vulnerability
1docker-r-masked-ngrams. Docker image for the paper: Selvi, J., Rodríguez, R. J., & Soria-Olivas, E. (2019). Detection of algorithmically generated malicious domain names using masked N-grams. Expert Systems with Applications, 124, 156-163.
1