Skip to content
██╗ ██╗ █████╗ ███╗ ███╗██████╗ ███████╗███████╗ ██████╗██╗ ██╗██████╗ ███████╗
██║ ██║██╔══██╗████╗ ████║██╔══██╗██╔════╝██╔════╝██╔════╝██║ ██║██╔══██╗██╔════╝
██║ ██║███████║██╔████╔██║██████╔╝███████╗█████╗ ██║ ██║ ██║██████╔╝█████╗ ╚██╗ ██╔╝██╔══██║██║╚██╔╝██║██╔═══╝ ╚════██║██╔══╝ ██║ ██║ ██║██╔══██╗██╔══╝ ╚████╔╝ ██║ ██║██║ ╚═╝ ██║██║ ███████║███████╗╚██████╗╚██████╔╝██║ ██║███████╗
╚═══╝ ╚═╝ ╚═╝╚═╝ ╚═╝╚═╝ ╚══════╝╚══════╝ ╚═════╝ ╚═════╝ ╚═╝ ╚═╝╚══════╝
L A B S

Security Research Division — VampSecure Studios

ToolsPythonLicenseFocus

Professional-grade security tooling for authorized penetration testing, vulnerability research and defensive operations.
Herramientas de seguridad profesionales para pruebas de intrusión autorizadas, investigación de vulnerabilidades y operaciones defensivas.


🛠 Toolkit

ToolCategoryDescription / DescripciónFindings
🔍 RECONNAISSANCE & ATTACK SURFACE · RECONOCIMIENTO & SUPERFICIE DE ATAQUE
vamp-passive-reconRECONPassive ASM — DNS, WHOIS, certificate transparency, GitHub dorks, Shodan OSINT, tech fingerprinting
ASM pasivo — DNS, WHOIS, transparencia de certificados, dorks GitHub, OSINT Shodan, fingerprinting tecnológico
RECON-NNN
vamp-shodan-huntOSINTShodan OSINT exposure hunter — 4 modes: CVE-exposed hosts, product enumeration, org attack surface, raw query. Global exposure count, geo/org distribution, SHOD findings. No Shodan SDK required
Cazador OSINT de exposición en Shodan — 4 modos: hosts con CVE indexado, enumeración de productos, superficie de ataque de org, consulta raw. Recuento global, distribución geo/org, hallazgos SHOD. Sin SDK de Shodan
SHOD-NNN
vamp-subdomain-takeoverRECONSubdomain takeover detector — CNAME dangling, service fingerprinting, 40+ provider signatures
Detector de subdomain takeover — CNAME colgantes, fingerprinting de servicios, 40+ firmas de proveedores
SDT-NNN
vamp-cloud-enumCLOUDAsync public bucket/blob finder — S3, Azure Blob, GCP Storage. 462+ candidate names per target
Buscador async de buckets/blobs públicos — S3, Azure Blob, GCP Storage. 462+ nombres candidatos por objetivo
CLOUD-NNN
🔬 VULNERABILITY INTELLIGENCE · INTELIGENCIA DE VULNERABILIDADES
vamp-cve-oracleVULNRBVM engine — NVD + CISA KEV + EPSS scoring + Shodan global exposure count per CVE, asset inventory, CVE-CPE correlation
Motor RBVM — NVD + CISA KEV + EPSS + recuento de exposición global Shodan por CVE, inventario de activos, correlación CVE-CPE
RBVM-NNN
vamp-forticheckVULNMulti-vendor edge device scanner — FortiOS, F5 BIG-IP, Palo Alto, Cisco ASA with live CVE probes + Shodan pre-scan discovery per vendor
Escáner multi-vendor de dispositivos de borde — FortiOS, F5 BIG-IP, Palo Alto, Cisco ASA con sondas CVE en vivo + descubrimiento Shodan pre-escaneo por vendor
FTC-NNN
vamp-ssl-auditCRYPTOTLS/SSL auditor with SSLabs-style grading — protocol versions, cipher suites, cert chain, HSTS
Auditor TLS/SSL con calificación estilo SSLabs — versiones de protocolo, suites de cifrado, cadena de certificados, HSTS
SSL-NNN
🌐 WEB & API SECURITY · SEGURIDAD WEB & API
vamp-http-auditWEBHTTP security auditor — security headers, CORS, CSP, clickjacking, open redirect, GraphQL introspection
Auditor de seguridad HTTP — cabeceras de seguridad, CORS, CSP, clickjacking, redirección abierta, introspección GraphQL
HTTP-NNN
vamp-wp2shell-auditWEBCMS security scanner — WordPress, Joomla & Drupal plugin/theme enumeration, known exploits
Escáner de seguridad CMS — WordPress, Joomla & Drupal, enumeración de plugins/temas, exploits conocidos
WP-NNN
vamp-jwt-auditWEBJWT token auditor — alg:none, weak secrets (300K wordlist), JWKS confusion, claim tampering
Auditor de tokens JWT — alg:none, secretos débiles (wordlist 300K), confusión JWKS, manipulación de claims
JWT-NNN
vamp-graphql-auditWEBGraphQL DAST — introspection detection, BOLA/IDOR fuzzing, alias DoS, injection (SQLi/SSTI/XSS), subscription abuse. Standalone CLI, no Burp required
DAST GraphQL — detección de introspección, fuzzing BOLA/IDOR, DoS por alias, inyección (SQLi/SSTI/XSS), abuso de suscripciones. CLI independiente, sin Burp
GQL-NNN
🏗 INFRASTRUCTURE & CONTAINERS · INFRAESTRUCTURA & CONTENEDORES
vamp-docker-auditINFRADocker daemon security auditor — socket exposure, privileged containers, secret ENV vars, network misconfig
Auditor de seguridad Docker — exposición de socket, contenedores privilegiados, secretos en ENV, mala configuración de red
DOCK-NNN
vamp-k8s-auditINFRAKubernetes security auditor — RBAC, privileged pods, network policies, secrets management, image risks
Auditor de seguridad Kubernetes — RBAC, pods privilegiados, políticas de red, gestión de secretos, riesgos de imagen
K8S-NNN
vamp-arp-sentinelNETWORKARP spoofing & MITM detector — passive monitoring, gateway verification, alert on anomalies
Detector de ARP spoofing y MITM — monitorización pasiva, verificación de gateway, alertas ante anomalías
ARP-NNN
vamp-icmp-shadowNETWORKICMP covert channel lab — exfiltration simulation, tunnel detection, firewall bypass probes
Lab de canal encubierto ICMP — simulación de exfiltración, detección de túneles, sondas de bypass de cortafuegos
SEC-NNN
vamp-gcp-auditCLOUDGCP offensive auditor — IAM/SA key age, GCS public buckets, GKE legacy ABAC, Cloud Functions secret env vars, open firewall rules, incomplete audit logging. No Google SDK required
Auditor ofensivo GCP — antigüedad de claves IAM/SA, buckets GCS públicos, ABAC heredado GKE, secretos en Cloud Functions, reglas de firewall abiertas, logging de auditoría incompleto. Sin SDK de Google
GCP-NNN
🔑 SECRETS & CODE SECURITY · SECRETOS & SEGURIDAD DE CÓDIGO
vamp-secrets-scannerSASTSecrets & sensitive data scanner — git history, 80+ patterns, CI/CD pre-commit hook, SARIF output
Escáner de secretos y datos sensibles — historial git, 80+ patrones, hook pre-commit CI/CD, salida SARIF
SEC-NNN
vamp-entropy-watchSASTEntropy-based ransomware & exfil detector — file system monitoring, Shannon entropy analysis
Detector de ransomware y exfiltración por entropía — monitorización del sistema de archivos, análisis de entropía Shannon
ENT-NNN
⚡ EMERGING THREAT COVERAGE · COBERTURA DE AMENAZAS EMERGENTES
vamp-llm-probeAI SECLLM endpoint auditor — 6 phases: recon, injection, jailbreak, extraction, access controls + Phase 6 bilingual dataset red team (666+30 jailbreaks · 210+50 injection vectors · 390 forbidden questions · EN+ES native detection)
Auditor de endpoints LLM — 6 fases: reconocimiento, inyección, jailbreak, extracción, controles + Fase 6 red team bilingüe (666+30 jailbreaks · 210+50 vectores de inyección · 390 preguntas prohibidas · detección nativa EN+ES)
LLM-NNN
vamp-mcp-auditAI SECMCP tool poisoning auditor — 17 injection regexes + 50 real-world payload dataset, privilege escalation, data exfiltration, OWASP Agentic Top 10. First OSS tool for MCP security (200K+ vulnerable instances)
Auditor de envenenamiento de herramientas MCP — 17 regex de inyección + dataset de 50 payloads reales, escalada de privilegios, exfiltración de datos, OWASP Agentic Top 10. Primera herramienta OSS para seguridad MCP (200K+ instancias vulnerables)
MCP-NNN
📧 EMAIL SECURITY · SEGURIDAD DE EMAIL
vamp-mail-auditEMAILEmail security auditor — SPF, DKIM (RSA key length), DMARC policy, open relay, STARTTLS enforcement
Auditor de seguridad email — SPF, DKIM (longitud de clave RSA), política DMARC, relay abierto, cumplimiento STARTTLS
MAIL-NNN
📊 LOGS & FORENSICS · LOGS & ANÁLISIS FORENSE
vamp-log-analyzerFORENSICForensic log analyzer — 25 MITRE ATT&CK detectors, cross-source correlation (web/Linux/DB), STIX 2.1 export, chain-of-custody ZIP, behavioral baseline, stdlib-only
Analizador forense de logs — 25 detectores MITRE ATT&CK, correlación multi-fuente (web/Linux/BD), exportación STIX 2.1, ZIP de cadena de custodia, baseline de comportamiento, solo stdlib
FORA-NNN
vamp-log-hunterSIEMIoC detector for server logs — SQLi, XSS, path traversal, webshells, brute force, scanner fingerprints
Detector de IoC en logs de servidor — SQLi, XSS, path traversal, webshells, fuerza bruta, fingerprints de escáner
LOG-NNN
🎯 REPORTING & ORCHESTRATION · INFORMES & ORQUESTACIÓN
vamp-penreportREPORTProfessional pentest report aggregator — consolidates all VSL JSON outputs into client-ready HTML/PDF
Agregador de informes de pentest profesional — consolida todos los outputs JSON de VSL en un informe HTML/PDF listo para el cliente
aggregator
vamp-orchestratorMETAMeta-tool chaining 12 VSL scanners — parallel execution, unified findings, risk score 0-100
Meta-herramienta que encadena 12 escáneres VSL — ejecución paralela, hallazgos unificados, puntuación de riesgo 0-100
aggregator
vamp-shellcode-labREDARM64 shellcode research lab — macOS/Linux shellcode generation, encoding, analysis (authorized use)
Lab de investigación de shellcode ARM64 — generación, codificación y análisis de shellcode macOS/Linux (uso autorizado)
SEC-NNN

⚡ Quick Start / Inicio rápido

# Clone any tool / Clonar cualquier herramienta
git clone https://github.com/Vampsecure-Labs/vamp-passive-recon
cd vamp-passive-recon && pip install -r requirements.txt
# Run an audit / Ejecutar una auditoría
python3 vamp_passive_recon.py --target example.com --report-html recon.html
# Orchestrate multiple tools in parallel / Orquestar múltiples herramientas en paralelo
git clone https://github.com/Vampsecure-Labs/vamp-orchestrator
python3 vamp_orchestrator.py --targets example.com --report-html full_audit.html
# Consolidate all results into an executive report / Consolidar resultados en informe ejecutivo
git clone https://github.com/Vampsecure-Labs/vamp-penreport
python3 vamp_penreport.py *.json --client "Acme Corp" --report-html executive_report.html

🔄 CI/CD Integration / Integración CI/CD

Every tool exits with standardized exit codes for pipeline automation.
Todas las herramientas usan códigos de salida estandarizados para automatización de pipelines.

Exit CodeMeaning / Significado
0No findings above LOW severity / Sin hallazgos por encima de severidad BAJA
1HIGH severity findings detected / Hallazgos de severidad ALTA detectados
2CRITICAL severity findings — pipeline should fail / Hallazgos CRÍTICOS — el pipeline debe fallar
# GitHub Actions / Forgejo CI example
- name: Secret scanrun: python3 vamp_secrets_scanner.py --path . --output secrets.jsoncontinue-on-error: false # exit 2 = CRITICAL = pipeline fails

📐 Unified Report Format / Formato de informe unificado

All tools produce a consistent JSON schema for interoperability.
Todas las herramientas generan un esquema JSON consistente para interoperabilidad.

{
"tool": "vamp-http-audit",
"version": "2.0",
"target": "https://example.com",
"timestamp": "2026-08-03T12:00:00Z",
"findings": [
{
"id": "HTTP-001",
"severity": "HIGH",
"title": "Missing Content-Security-Policy header",
"description": "...",
"evidence": "...",
"remediation": "..."
}
],
"summary": { "total": 1, "critical": 0, "high": 1, "medium": 0, "low": 0 }
}

Use vamp-penreport to aggregate outputs from multiple tools into a single client-ready report.
Usa vamp-penreport para agregar los resultados de múltiples herramientas en un único informe listo para el cliente.


© VampSecure Studios — VampSecure Labs Security Research Division

All tools are released for authorized security testing only.
Todas las herramientas se publican exclusivamente para pruebas de seguridad autorizadas.

Usage against systems without explicit written permission is prohibited.
El uso contra sistemas sin permiso escrito explícito está prohibido.

Popular repositories Loading

  1. vamp-wp2shell-audit vamp-wp2shell-auditPublic

    Auditor de seguridad WordPress async multi-objetivo: 28 CVEs de plugins, 6 CVEs de temas, núcleo WP, 180 plugins, enumeración de usuarios, descubrimiento de ficheros, cabeceras de seguridad, canary…

    Python 1

  2. vamp-icmp-shadow vamp-icmp-shadowPublic

    VampSecure Labs: ICMP covert channel lab for Blue Team / Red Team training

    Python 1

  3. vamp-passive-recon vamp-passive-reconPublic

    VampSecure Labs: Passive recon engine — subdomain enumeration + HTTP headers analysis

    Python 1

  4. vamp-shellcode-lab vamp-shellcode-labPublic

    VampSecure Labs — Laboratorio shellcode ARM64: mmap RWX, syscalls directas y ejecucion de codigo nativo

    C 1

  5. vamp-subdomain-takeover vamp-subdomain-takeoverPublic

    VampSecure Labs — Subdomain Takeover Vulnerability Scanner

    Python 1

  6. vamp-secrets-scanner vamp-secrets-scannerPublic

    VampSecure Labs — Static Secrets & Credentials Scanner

    Python 1

Repositories

Showing 10 of 27 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…