gamehacking-cheatsheet. Comprehensive Game Hacking Cheat Sheet for security researchers, reverse engineers, and CTF participants. Covers memory analysis, anti-cheat evasion, exploit development, and game engine reverse engineering for authorized security testing and educational purposes
74ics-incident-response-framework. ICS Incident Response Automation Framework Python framework for executing automated incident response playbooks in ICS/SCADA environments. Supports network isolation, forensic preservation, logic restoration, and safety system interventions. Designed for defenders, researchers, and red team simulations in operational technology networks.
18SCADA-OT-CheatSheet-Advanced-ICS-Hacking-Playbook. All-in-one ICS/SCADA hacking, red teaming, malware analysis, detection, and lab architecture cheat sheet
16awinrm. Modern WinRM shell for red teams and CTFs with automated tool staging, AV bypass, recon, and credential/loot extraction
8heaplessNights. Multi-Tool Offensive Security Arsenal for Red Teaming, CTF, Exploit Development, and Malware Research
5CVE-2021-26828-Ultimate. ScadaFlare Authenticated RCE Exploit Framework for ScadaBR (CVE-2021-26828) OpenPLC ScadaBR
5SignalScout. Physical-layer surveillance detection. Scans for BLE trackers, EMF anomalies, rogue Wi-Fi, and hidden devices.
5modblaster. Like a blaster cannon for Modbus: accurate, configurable, devastating, and adaptive.
3talon. A red team–oriented scripting language for exploits, shellcode, fuzzing, and reverse engineering.
3stuckinthematrix-base. Matrix Breach is a gamified offensive security lab focused on teaching game hacking, reverse engineering, and memory exploitation concepts through a visual, narrative driven simulation environment.
3phantomvector. Offensive simulation engine for RF, logs, and deception ops.
2omni-auth-fc23. Authenticated Modbus FC23 Writer for OmniPLC 3000
2Jenkins-Credential-Decryptor. Offline Jenkins credential decryption tool for post-exploitation, red team operations, and CTFs. Decrypts credentials.xml using master.key and hudson.util.Secret without a running Jenkins instance. Supports legacy and modern encryption formats, with Docker and cross-platform support
2Terrminus-CVE-2026-2406. AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive fingerprinting, and authorized root shell escalation
2JenkinsBreaker. JenkinsBreaker: Offensive CI/CD security research framework focused on Jenkins exploitation, CVE chaining, and pipeline compromise scenarios.
2GhostGraph-C2. GhostGraph-C2: Async, stealthy, modular C2 framework for red teaming and CTFs. Multi-channel fallback, encryption, obfuscation, and basic anti-analysis included.
2llm-vuln-scanner. Security scanner for local LLMs scanning LLM vulnerabilities including jailbreaks, prompt injection, training data leakage, and adversarial abuse
2ics-scada-fuzzer. Protocol-aware ICS/OT fuzzer for Modbus, DNP3, S7comm, IEC 104, and OPC UA. Designed for fuzzing industrial protocols in lab/testbed environments using mutation strategies and PCAP replay.
2dom-clobbering-cheatsheet. Ultimate DOM Clobbering Cheat Sheet - 100+ exploitation vectors for XSS, CSP bypass, and client-side attacks. Covers browser compatibility, framework evasion, and real-world exploit chains for security researchers and bug bounty hunters
1ridpath.
1pdfscapel. PDFScalpel is a forensic PDF analysis and CTF toolkit for security researchers, digital forensics analysts, and penetration testers, providing deep insight into PDF structure, encryption, malware, steganography, metadata, revisions, and document authenticity.
1ZeroWidthStego. Zerowidthstego: Invisible data. Unforgettable power. A full-spectrum zero-width steganography engine for cyber defense, ctf teams, and digital minimalists.
1spectre-c2-operations. Satellite security research platform integrating C2 tasking with orbital intel, RF/protocol analysis, and evidence and first mission workflows
1protofire. Modular OT/ICS protocol fuzzer with plugin support, PCAP replay, and anomaly detection
1