- Trieste - Italy
- @ilmila
Stars
A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects
A vulnerability scanner for container images and filesystems
A suite of tools to automate software compliance checks.
The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.
This is a simple bash script to fix errors with apt update, upgrade MetaSploit and run some upgrades to improve the system usability without breaking it, by using Pimpmykali script.
🔍 ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nln…
A static analyzer for Java, C, C++, and Objective-C
A collection of my Semgrep rules to facilitate vulnerability research.
"Opening Pandora's Box through ATFuzzer: Dynamic Analysis of AT Interface for Android Smartphones" ACSAC 2019
Burp Suite Extension useful to verify OAUTHv2 and OpenID security
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
A collection of exploits created or modified by me
DLL and PowerShell script to assist with finding DLL hijacks
A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon
Automated deployment of Windows and Active Directory test lab networks. Useful for red and blue teams.
Draw.io libraries for threat modeling diagrams
MalQR is a collection of malicious QR Codes and Barcodes you can use to test the security of your scanners.
DOM XSS scanner for Single Page Applications
This script is intended to automate your reconnaissance process in an organized fashion
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Quickly test various encoding for a given value in Burp Intruder
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.