» Hellhound Spider — Async Web Crawler & SPA Mapper [ACTIVE]
Async web crawler engineered for security testing. Maps endpoints, parameters, and security issues across traditional and SPA web applications. v12.0 with three-phase SPA interaction, XHR capture, POST body harvesting, JS endpoint analysis, networkidle wait, subdomain enumeration, and cloud asset probing.
» Hellhound Bounty Hunter — Bounty Hunter [IN DEV]
Hellhound is an autonomous reconnaissance and finding triage assistant built for bug bounty hunters and security researchers. It automates repetitive enumeration workflows, verifies asset validity, checks for dangling DNS takeover vectors, and extracts endpoints—all governed by strict, code-level engagement scope boundaries.
» CMDmap — Autonomous Command Injection Detector [ACTIVE]
Autonomous command injection detector with SPA-aware crawler and 5-tier injection engine that auto-escalates from direct output through timing-based blind detection to OOB callbacks. Every finding verified, timestamped, and delivered with a ready-to-run curl PoC.
» SOLDIER-BOY — Personal Assitant[private]
A Jarvis like personal assistant built for personal helps like fixing issue around project and personal help assitant.
| Repository | Contribution |
|---|---|
| project-hellhound/x5sentry | Advanced scanning mechanics — DOM, mXSS, uXSS, Blind XSS detection payloads via headless Playwright injection |
| cyart/cytrack | Multi-agent orchestration layer coordinating independent offensive scanners across complex web routing structures |
