Seismograph

What’s gaining stars on GitHub right now

SecFathy/xss-specialist

KEV-gated continual-learning XSS specialist with execution-authoritative browser verification

SecurityPython
4.6 Early signal Magnitude out of 10 — how fast interest is growing, not a quality score. Star growth looks organic. Data as of September 28, 2026, 18:44 UTC.
Open on Seismograph Open on GitHub

About the project

Research prototype for XSS discovery: an offline study on specializing a small LLM via KEV-gated continual learning plus a live authorized assessment system where findings are confirmed only by execution in a headless browser.

Useful for

README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.

Why it’s trending

Stars per day

04080September 27, 2026September 28, 2026

Bars are daily stars, the line is the usual pace. Red marks spike days.

Numbers

Total stars
97
Today
73 · ≈ 90 by evening
Forks
8
Issues and pull requests
0
Watchers
0
Language
Python
Latest release
xss-decision-0.8b-kev-specialist-v2 · September 28, 2026
Created
September 27, 2026
Last push
September 28, 2026

Star trust

Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.

These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.

Spotted in

Share

README badge

Paste it into your README — the badge shows the current magnitude and links to this page.

Seismograph: 4.6
[![Seismograph](https://gitnova.dev/badge/SecFathy/xss-specialist.svg?lang=en)](https://gitnova.dev/en/r/SecFathy/xss-specialist)

More in this category

  1. 5.1
    JoasASantos/Offensive-Security-AI-Models

    A curated list of open-weight uncensored LLMs fine-tuned for cybersecurity tasks such as red teaming, penetration testing and security research. Each entry lists base model, size, context, VRAM and uncensoring method.

    Early signalSecurity+78 stars today, ≈ 98 by evening

  2. 5.0
    dagowda/notRDP

    A Havoc C2 plugin that creates a hidden alternate Windows desktop, streams it to a browser viewer, and forwards mouse and keyboard input while staying invisible to the target user.

    Early signalSecurityC+41 stars today, ≈ 54 by evening

  3. 5.0
    angusdevgo/Seep-Reverse-Lab

    Agent-native reverse engineering workbench for binaries and CWE-602 client-side authorization auditing: unifies Radare2, JADX, Apktool, Frida and IDA via 23 MCP tools with automatic task routing.

    Early signalSecurityPython+74 stars today, ≈ 94 by evening

  4. 4.8
    derv82/wifit3

    Cross-platform USB Wi-Fi auditor in Python: scans networks, captures WPA handshakes and PMKIDs, attacks WPS and WEP via its own userland drivers without aircrack-ng.

    Early signalSecurityPython+46 stars today, ≈ 63 by evening

  5. 4.6
    TwoSevenOneT/InjectSetConsole

    Proof of Concept for Windows process code injection via a named pipe, without using VirtualAllocEx or WriteProcessMemory. Demonstrates an EDR evasion technique for security researchers.

    Early signalSecurityC+++15 stars today, ≈ 21 by evening

  6. 4.4
    newliver666/apk-reverse

    An Agent Skill for Android APK reverse engineering: unpacking, ad removal, dex patching, repacking, and runtime/server analysis. Loaded by an agent (Claude Code, Codex) while it works.

    PeakingSecurityPython+72 stars today, ≈ 115 by evening