gotr00t@projects:~$

Projects

Open-source security tools and exploit development

⭐ 2 Stars

g0tsp1p

Comprehensive SPIP CMS security scanner. Features WAF detection, version fingerprinting, CVE auto-exploitation (CVE-2023-27372, CVE-2024-7954, CVE-2024-8517), user enumeration, password spraying, SSTI/XSS/path traversal testing, and composer.lock analysis.

Python 2 Stars
CMS Scanner SPIP CVE Exploit
View Repository
Recon Tool

crt.sh

Fast subdomain enumeration via crt.sh Certificate Transparency logs with parallel DNS resolution. Features color-coded output, JSON export, stdin support for batch processing, and auto-retry with exponential backoff. Zero external dependencies.

Python Open Source
Recon Subdomain Enum CT Logs
View Repository
Security Tool

SSHark

Advanced SSH security testing and auditing tool. Performs comprehensive SSH server analysis, vulnerability detection, and configuration assessment.

Python Open Source
SSH Security Auditing
View Repository
Exploit Tool

kernelpwned

Linux kernel exploitation toolkit. Collection of kernel exploit techniques, privilege escalation methods, and kernel security research tools.

Python Open Source
Kernel Privilege Escalation Linux
View Repository
Exploit Tool

sudopwned

Sudo vulnerability scanner and exploitation framework. Detects misconfigured sudo permissions and known sudo vulnerabilities for privilege escalation.

Python Open Source
Sudo Privilege Escalation Linux
View Repository
Security Tool

URLVPwn

URL vulnerability scanner and exploitation toolkit. Discovers and exploits common web application vulnerabilities through URL parameter manipulation.

Python Open Source
Web Security URL Scanner Vulnerability
View Repository
CVE Scanner

CVE-2025-68461 Scanner

Automated vulnerability scanner for CVE-2025-68461. Detects vulnerable systems and provides detailed exploitation guidance for security assessments.

Python Open Source
CVE Scanner Exploitation
View Repository
⭐ 853 Stars

Spyhunt

Comprehensive reconnaissance framework for bug bounty hunters. Features subdomain enumeration, vulnerability scanning (XXE, SSRF, SSTI, NoSQLi, CRLF), SMB/FTP testing, and automated security assessments.

Python 853 Stars
Recon Bug Bounty Vulnerability Scanner
View Repository
Security Tool

exp0s3d

Automated exploitation framework for discovering and exploiting known vulnerabilities. Streamlines the process of identifying vulnerable targets and launching appropriate exploits.

Python Open Source
Exploitation Automation Pentest
View Repository
Security Tool

Gsec

GraphQL security testing toolkit. Performs introspection queries, schema analysis, and vulnerability detection for GraphQL APIs including authentication bypass and injection attacks.

Python Open Source
GraphQL API Security Introspection
View Repository
Security Tool

dnsResolv

Fast DNS resolution and enumeration tool. Performs bulk DNS lookups, subdomain discovery, and DNS record analysis for reconnaissance and security assessments.

Python Open Source
DNS Recon Enumeration
View Repository
⭐ 64 Stars

TechackZ

Advanced web technology detection and vulnerability assessment tool. Combines Wappalyzer, custom fingerprinting, and Nuclei with multi-source CVE enrichment from NVD, OSV, ExploitDB, Vulners, and Metasploit.

Python 64 Stars
Tech Detection Nuclei CVE Enrichment
View Repository
⭐ 99 Stars

Valhalla

Web application vulnerability scanner and exploitation framework. Automates the discovery and exploitation of common web vulnerabilities for penetration testing engagements.

Python 99 Stars
Web Security Vulnerability Scanner Exploitation
View Repository
Security Tool

Actuat0r

Spring Boot Actuator security scanner and exploitation tool. Discovers exposed actuator endpoints and exploits misconfigurations for information disclosure and remote code execution.

Python Open Source
Spring Boot Actuator Exploitation
View Repository