9 projects
vaultrip
Post-exploitation credential harvesting and extraction engine
breachsql
Context-aware SQL injection scanner with WAF detection and evasion
stingxss
Context-aware reflected & DOM XSS scanner with WAF detection and evasion
phaseaccess
Native IDOR and broken object-level authorization detection engine
commonhuman-cli
Shared CLI/terminal UX primitives for CommonHuman-Lab tools
commonhuman-payloads
Shared payload collections, encoders, and WAF signatures for CommonHuman-Lab tools
commonhuman-core
Shared HTTP, crawling, and scanning infrastructure for CommonHuman-Lab tools
gloomproxy-sdk
SDK for building GloomProxy scanner plugins
gloamfire
Purple-team attack replay platform for SOC and detection validation