GitHub Actions Cache Native Malware - for Educational and Research Purposes only.
☆143Jan 28, 2026Updated 2 months ago
Alternatives and similar repositories for Cacheract
Users that are interested in Cacheract are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Example repository for GitHub Actions Time of Check to Time of Use (TOCTOU vulnerabilities)☆38Jan 25, 2026Updated 2 months ago
- GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.☆505Mar 6, 2026Updated last month
- How GitHub Actions workflows can be hacked☆181Aug 23, 2024Updated last year
- This tools used for Automating finding of subdomain, and checking for alive subdomain, and gathering js files from all the subdomain and …☆23Jun 28, 2024Updated last year
- Supply Chain Security Research - Living Off The Pipeline tools☆149Updated this week
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Azure Post Exploitation Framework☆245Oct 27, 2025Updated 5 months ago
- ☆192Apr 16, 2025Updated last year
- poutine, a supply chain vulnerability scanner for build pipelines☆414Updated this week
- Octoscan is a static vulnerability scanner for GitHub action workflows.☆253Mar 30, 2026Updated 2 weeks ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆87Mar 2, 2025Updated last year
- A collection of position independent coding resources☆111Nov 15, 2025Updated 5 months ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆27Aug 18, 2024Updated last year
- ☆12Feb 4, 2025Updated last year
- Local SYSTEM auth trigger for relaying - X☆154Jul 23, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆356Updated this week
- MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆93Oct 14, 2025Updated 6 months ago
- A python polymorphic engine for C programs☆11Dec 8, 2023Updated 2 years ago
- Scan your dev machine for AI agents, MCP servers, IDE extensions, and suspicious packages - in seconds.☆89Apr 8, 2026Updated last week
- Proof-of-concept modular implant platform leveraging v8☆54Mar 4, 2025Updated last year
- A Rust PoC implementation of the Early Bird process hollowing technique, inspired by https://github.com/boku7/HOLLOW.☆31Feb 7, 2025Updated last year
- ☆14Jan 8, 2026Updated 3 months ago
- RansomWhen is a tool to enumerate identities that can lock S3 Buckets using KMS, resulting in ransomwares, as well as detect occurances o…☆61Feb 5, 2025Updated last year
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆39Sep 25, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆46Nov 7, 2024Updated last year
- Dll injection through code page id modification in registry. Based on jonas lykk research☆16Jun 18, 2022Updated 3 years ago
- StoneKeeper C2, an experimental EDR evasion framework for research purposes☆209Dec 25, 2024Updated last year
- ☆18Feb 2, 2026Updated 2 months ago
- Linux CS bypass technique☆33Feb 4, 2025Updated last year
- A tool for folks who `git clone` first and ask questions later☆67Sep 12, 2025Updated 7 months ago
- A PoC for Early Cascade process injection technique.☆215Jan 30, 2025Updated last year
- Data about all known supply-chain attacks through history☆65May 28, 2025Updated 10 months ago
- A service container for interacting with SRA's VECTR☆16Apr 9, 2025Updated last year
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- ☆17Jul 31, 2021Updated 4 years ago
- ☆50Jun 4, 2025Updated 10 months ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆191Jan 17, 2026Updated 2 months ago
- Cloud subdomains identification tool☆62Apr 15, 2025Updated last year
- This repository contains a number of insecure self-hosted applications that allows interested security engineers to test vulnerabilities …☆26Apr 30, 2025Updated 11 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Sep 20, 2024Updated last year
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Aug 28, 2024Updated last year