# SecFathy/xss-specialist > Research prototype for XSS discovery: an offline study on specializing a small LLM via KEV-gated continual learning plus a live authorized assessment system where findings are confirmed only by execution in a headless browser. - Magnitude: 4.6 out of 10 — Early signal - Stars: 97 total · +73 stars today, ≈ 90 by evening - Star trust: star growth looks organic - Category: Security · Language: Python · Created: 2026-09-27 · Last push: 2026-09-28 - GitHub: https://github.com/SecFathy/xss-specialist · Page: https://gitnova.dev/en/r/SecFathy/xss-specialist ## Useful for - Assess an authorized web target for XSS with headless-browser confirmation - Run the local /v1/systemone server for typed XSS decisions - Convert benchmark data into decision-model training format ## Why it’s here - 73 stars so far today, about 90 expected by the end of the day. - The spike has held for 2 days in a row — not a one-off blip. - The repository is 1 day old and already has 97 stars. With less than two weeks of history, there's no usual pace to compare the spike against yet. - Top new repositories this week: #169. - About 8 forks a day — people are taking the code. ## Star trust Star growth looks organic. Star-trust labels are heuristics based on the repository’s behavior, not a check of every stargazer. ## Numbers - Forks: 8 - Issues and pull requests: 0 - Watchers: 0 - Average over the last week: 57 per day - Usual pace: too little history (under two weeks) - Stars in the last hour (measured): 0 - Latest release: xss-decision-0.8b-kev-specialist-v2 (2026-09-28) ## Stars per day, last 2 days (oldest → newest, today is partial) 2026-09-27 … 2026-09-28: 24, 73 ## Spotted in now - Top new repositories this week: #169 ## More in this category 1. **JoasASantos/Offensive-Security-AI-Models** — 5.1 · Early signal · Security · +78 stars today, ≈ 98 by evening A curated list of open-weight uncensored LLMs fine-tuned for cybersecurity tasks such as red teaming, penetration testing and security research. Each entry lists base model, size, context, VRAM and uncensoring method. Full card: https://gitnova.dev/en/r/JoasASantos/Offensive-Security-AI-Models.md 2. **dagowda/notRDP** — 5.0 · Early signal · Security · C · +41 stars today, ≈ 54 by evening A Havoc C2 plugin that creates a hidden alternate Windows desktop, streams it to a browser viewer, and forwards mouse and keyboard input while staying invisible to the target user. Full card: https://gitnova.dev/en/r/dagowda/notRDP.md 3. **angusdevgo/Seep-Reverse-Lab** — 5.0 · Early signal · Security · Python · +74 stars today, ≈ 94 by evening Agent-native reverse engineering workbench for binaries and CWE-602 client-side authorization auditing: unifies Radare2, JADX, Apktool, Frida and IDA via 23 MCP tools with automatic task routing. Full card: https://gitnova.dev/en/r/angusdevgo/Seep-Reverse-Lab.md 4. **derv82/wifit3** — 4.8 · Early signal · Security · Python · +46 stars today, ≈ 63 by evening Cross-platform USB Wi-Fi auditor in Python: scans networks, captures WPA handshakes and PMKIDs, attacks WPS and WEP via its own userland drivers without aircrack-ng. Full card: https://gitnova.dev/en/r/derv82/wifit3.md 5. **TwoSevenOneT/InjectSetConsole** — 4.6 · Early signal · Security · C++ · +15 stars today, ≈ 21 by evening Proof of Concept for Windows process code injection via a named pipe, without using VirtualAllocEx or WriteProcessMemory. Demonstrates an EDR evasion technique for security researchers. Full card: https://gitnova.dev/en/r/TwoSevenOneT/InjectSetConsole.md --- Magnitude (0–10) measures how fast and how unusually interest in a repository is growing right now. It is not a quality score. Days are UTC. “So far today” is a fact; “expected by the end of the day” is a forecast. Summaries and use cases are written by an LLM (DeepSeek V4.1 Flash) from the README and may be inaccurate: verify specific claims (benchmarks, speed, hardware) in the repository itself. Data as of 2026-09-28 18:44 UTC, updated every 30 minutes.