Back to home

Projects

Offensive tooling in progress — ASM, mobile pentesting, and red team infrastructure

Work in progress

WIP

Survex

Attack Surface Management Platform

Modular ASM + automated pentesting CLI (private repo: github.com/SMBullet/Survex). Runs a 28-module pipeline on domains/IPs/CIDRs, with recon, active vuln testing, risk scoring, scan diff/history, dark HTML + JSON reporting, and Slack/Discord webhook alerting.

GoCobraSQLiteNucleihttpxffufdalfoxsqlmap

Open details

WIP

Mobile Pentest Toolkit

Offensive Mobile Assessment Framework

Automates SSL pinning bypass, root/jailbreak detection bypass, API traffic interception, and static + dynamic analysis workflows. Cuts setup time on iOS and Android assessments so you can focus on actual exploitation.

PythonFridaObjectionADBjadxBurp Suite
WIP

Payloader

Web Security Research Platform

Static, client-side payload library with 20 attack categories, a constraint-based XSS generator, WAF bypass transforms, global search, encoder/decoder, favorites, and a deliberately vulnerable XSS lab.

HTMLJavaScriptCSSJSON