> your AI agent picks dependencies from memory; give it dated facts — try starlog.dev ↗ vet your agent's deps ↗ vibe-coding is fine. vibe-importing isn’t. — try starlog.dev ↗ vibe-importing isn’t fine ↗ your agent has never seen your private packages — try starlog.dev ↗ facts for private packages ↗ a linter for the dependencies your AI agent picks — try starlog.dev ↗ a linter for agent deps ↗

All articles

Cybersecurity

Offensive and defensive security tooling explained by a pentester — scanners, exploit frameworks, secrets detection, and the OSS projects shaping modern security work.

358 articles

Cybersecurity

foospidy/payloads: The 13GB Security Payload Archive Every Pentester Should Know About

★ 3.9k Shell May 13, 2026
Cybersecurity

Statistically Likely Usernames: Why Horizontal Password Attacks Beat Vertical Every Time

★ 1.3k Python May 13, 2026
Cybersecurity

PwnGitManager: Surgical Git Repository Extraction for Security Researchers

★ 109 Python May 13, 2026
Cybersecurity

Inside can-i-take-over-xyz: The Crowdsourced Database Securing Subdomain Hygiene

★ 5.7k Python May 13, 2026
Cybersecurity

Red-Teaming-Toolkit: A MITRE ATT&CK-Mapped Arsenal for Offensive Security Operations

★ 10.3k May 13, 2026
Cybersecurity

Curate: Mining VirusTotal's URL Archive for Bug Bounty Reconnaissance

★ 41 Shell May 13, 2026
Cybersecurity

EdOverflow/hacks: The Art of Disposable Security Scripts in /usr/local/bin

★ 100 Shell May 13, 2026
Cybersecurity

LFISuite: Anatomy of an Automated Local File Inclusion Exploitation Framework

★ 1.9k Python May 13, 2026
Cybersecurity

Drupalgeddon2: Dissecting the RCE Exploit That Threatened Millions of CMS Installations

★ 597 Ruby May 13, 2026
Cybersecurity

Cr3dOv3r: Reverse-Engineering a Credential Reuse Attack Framework

★ 2.1k Python May 13, 2026
Cybersecurity

Smith: The Bug Bounty Wrapper That Makes Meg Actually Useful

★ 59 Shell May 13, 2026
Cybersecurity

AWSBucketDump: Weaponizing S3 Misconfigurations With Wordlists and Grep

★ 1.5k Python May 13, 2026
Cybersecurity

CloudGoat: Learning Cloud Penetration Testing by Breaking Things on Purpose

★ 3.6k Python May 13, 2026
Cybersecurity

WhatWeb: Ruby-Powered Web Fingerprinting with 1800+ Plugins for Security Reconnaissance

★ 6.6k Ruby May 13, 2026
Cybersecurity

RecurseBuster: Why HEAD-First Requests Make Recursive Content Discovery Faster

★ 250 Go May 13, 2026
Cybersecurity

Mining Bug Bounty Scopes at Scale: Inside bounty-targets-data's Automated Intelligence Pipeline

★ 3.7k May 13, 2026
Cybersecurity

Sn1per: The Shell-Script Orchestrator That Weaponized 90+ Security Tools

★ 9.8k Shell May 13, 2026
Cybersecurity

Learning Go for Security Work: A Deep Dive into parsiya/Hacking-with-Go

★ 1.8k Go May 13, 2026
Cybersecurity

SpiderFoot: How 200+ OSINT Modules Communicate in a Publisher/Subscriber Pipeline

★ 17.7k Python May 13, 2026
Cybersecurity

Inside gwen001's pentest-tools: A Bug Bounty Hunter's Arsenal of Single-Purpose Security Scripts

★ 3.3k Python May 13, 2026
Cybersecurity

Gurp: Automating Burp Suite Professional from the Command Line with Go

★ 56 Go May 13, 2026
Cybersecurity

ORTBOT: A Red Teamer's Command Reference That Fits in Your Terminal

★ 97 May 13, 2026
Cybersecurity

Running Burp Suite in CI/CD: How Headless-Burp Brings DAST to Your Build Pipeline

★ 234 Java May 13, 2026
Cybersecurity

Automating Burp Suite Pro at Scale: How Carbonator Turns Manual Scans into CI/CD Pipelines

★ 74 Python May 13, 2026