> cat /dev/github | grep security-tools

Security-Tools

Clippy

2026-08-31 Kotlin ★ 440
Clippy is an Android tool designed to enhance link management by allowing users to easily copy links from their device's sharing menu. Its primary use case is to provide a cleaner and more secure link experience by enabling users to copy either the original URL or a version stripped of URL shorteners and tracking parameters. Notable features include seamless integration with the sharing options of various apps and straightforward functionality for copying both raw and cleaned links.

lumioguard-tools

2026-08-31 TypeScript ★ 15
LumioGuard Tools is a suite of web assessment tools that enables users to analyze public URLs for various vulnerabilities and performance indicators without repository access or user credentials. It features three core components: Slopmeter, which identifies design and structural weaknesses; Leakpeek, which detects exposed vulnerabilities in backend configurations; and Citecheck, which evaluates the accessibility of content for crawlers. Each tool provides a comprehensive report scoring findings to quantify risks effectively.

awesome-embedded-security

2026-08-31 JavaScript ★ 55
Awesome Embedded Security is a curated repository offering a comprehensive collection of tools, resources, and training focused on enhancing security in embedded systems. It covers a wide range of topics, including firmware analysis, reverse engineering, hardware hacking, and IoT security, featuring notable tools for binary analysis, debugging, fuzzing, and secure boot processes. This repository serves as a valuable resource for cybersecurity professionals seeking to conduct thorough assessments and improve the security posture of embedded devices.

remote-desktop-monitor

2026-08-31 ★ 71
Wolfeye PC Monitor is a lightweight remote monitoring tool designed for Windows that enables users to view live screen activity and access automated screenshot logs from any modern web browser. It is particularly useful for managing remote teams, enhancing corporate data protection, and ensuring compliance through real-time visibility and minimal system impact. Notable features include instant screen streaming, customizable screenshot intervals, and a quick setup process that requires no complex network configuration.

windows-ai-privacy-toolkit

2026-08-30 ★ 73
The Windows AI Privacy Toolkit is a privacy-centric tool designed to scan and manage AI features on Windows PCs, enabling users to identify and disable specific functionalities according to their privacy preferences. Key features include a detailed inventory of AI components, documented privacy summaries for individual features, and the ability to perform bulk toggling, all without cloud dependencies. It emphasizes user control and reversibility of changes, making it suitable for single-player and personal use.

dfang

2026-08-30 Rust ★ 10
Dfang is a tool designed for defanging and refanging indicators of compromise (IOCs) such as email addresses, URLs, and IP addresses to ensure safe transmission in potentially malicious environments. It features a command-line interface as well as a Rust library that allows developers to integrate the defanging functionality directly into their applications without external dependencies. Notable capabilities include transforming IOCs into unclickable formats and restoring them to their original state for analysis.

UnityResolve-V3

2026-08-28 C++ ★ 11
UnityResolve-V3 is a development tool designed to enhance Unity game development through assembly manipulation and runtime field access. Its primary use case includes modifying player attributes and handling method calls dynamically in the Unity engine, notably with functionality for accessing and manipulating class properties and methods. Key features include inline static fields and methods for streamlined access to Unity's runtime classes, providing developers with powerful capabilities for gameplay dynamics.

spicedb-operator

2026-08-27 Go ★ 105
The SpiceDB Operator is a Kubernetes operator designed for managing SpiceDB clusters, enabling the creation, management, and scalability of these clusters through a single Custom Resource. Notable features include automated datastore migrations during version upgrades, as well as simple integration with Kubernetes tools using YAML configurations. This tool streamlines the deployment and configuration of SpiceDB, leveraging Kubernetes' orchestration capabilities.

Intelbras-SIM-Next-Enterprise

2026-08-26 ★ 10
Intelbras SIM Next Enterprise - Local Windows build featuring every professional module and a simple install routine.

CertoraProver

2026-08-25 Kotlin ★ 329
Certora Prover is a formal verification tool designed for analyzing and ensuring the correctness of smart contracts. Primarily used in blockchain development, it leverages advanced SMT solvers and integrates various programming languages to validate contract logic against specified properties. Notable features include support for multiple solvers, a cloud platform for ease of use, and detailed reporting capabilities for diagnostics.

git-alerts

2026-08-25 Go ★ 234
GitAlerts is a tool designed to detect and monitor public repositories created under organization user accounts, which cannot be controlled by GitHub administrators. It provides features such as secrets detection using TruffleHog and Gitleaks, monitoring for new repository creation, and integration with Slack for notifications, all while offering both a command-line interface and a web platform with advanced search capabilities, filtering, and asynchronous scanning.

web3-bug-bounty-hunting-ai-skills

2026-08-25 ★ 136
The "web3-bug-bounty-hunting-ai-skills" repository provides a structured knowledge base for enhancing smart contract security assessments using AI tools like Claude Code. It compiles extensive information from Immunefi reports and DeFiHack reproductions, offering detailed methodologies, bug classifications, grep patterns, and practical case studies to streamline the bug bounty hunting process. Notable features include targeted scoring systems, a comprehensive grep arsenal, and templates for proof of concept and reporting, which facilitate efficient and informed security auditing.

ctfbridge

2026-08-24 Python ★ 10
CTFBridge is a unified Python interface designed for seamless interaction with multiple Capture The Flag (CTF) platforms. Its notable features include auto-detection of platform types from URLs, a clean authentication flow, challenge enrichment capabilities, persistent session management, and an async-first architecture for efficient scripting and automation. The tool simplifies accessing and managing CTF challenges, submissions, and leaderboards across various platforms.

zanadir

2026-08-23 Go ★ 165
Zanadir is a tool designed to analyze CI/CD setups within repositories, providing enhancements and suggestions for security practices and best practices across various supported CI actions including GitHub Actions, CircleCI, and GitLab. It features a repository scanning capability that identifies issues in categories such as software composition analysis, secrets detection, and static application security testing, with customizable output formats including table, JSON, and SARIF for integration with other tools. Contributions to further enhance its features are encouraged within the open-source community.

cratos-fastapi

2026-08-22 Python ★ 13
Cratos FastAPI serves as a proxy API for the MISP Threat Sharing Platform, enabling the seamless extraction of threat indicators in various formats for consumption by security tools such as SIEMs, firewalls, and EDRs. Key features include tag-based feed classification, scoped access tokens for enhanced security, multi-tenancy support, and flexible output formats tailored to specific consumer requirements, facilitating efficient integration of threat intelligence into security workflows without exposing MISP credentials.

wolfsentry

2026-08-22 C ★ 55
wolfSentry is an embedded Intrusion Detection and Prevention System (IDPS) and firewall designed for resource-constrained environments, offering both static and dynamic traffic filtering capabilities. It features flexible configuration through APIs and JSON input, dynamic reconfiguration with atomic transition, and seamless integration with lwIP and wolfSSL for efficient tracking and management of network traffic. Its lightweight design allows for deployment on various embedded platforms while maintaining deterministic performance and minimal memory usage.

converged-security-suite

2026-08-21 Go ★ 74
The Converged Security Suite is a comprehensive toolkit designed to implement and validate security features for Intel platforms, including Intel Trusted Execution Technology and Intel Boot Guard. Its primary use case involves providing both testing and provisioning capabilities for various Intel security features, along with support for some AMD Secure Processor functionalities. Notable features include dedicated test suites for validation and the ability to provision multiple security technologies, ensuring enhanced platform integrity and security compliance.

lc-detectionforge

2026-08-21 Vue ★ 15
DetectionForge is a specialized detection engineering environment that enables security engineers to create, validate, and test detection rules specifically for the LimaCharlie platform. Key features include syntax checking, historical testing with LimaCharlie’s replay capabilities, and an intuitive workflow for iterative rule development using a modern Progressive Web Application architecture built with Vue 3 and TypeScript. The tool emphasizes seamless integration with LimaCharlie, allowing for comprehensive impact analysis and configuration management.

pass-the-passkey

2026-08-20 C# ★ 206
The Pass-the-Passkey repository offers a suite of tools designed to exploit and assess the vulnerabilities of WebAuthn and FIDO2 authentication methods in Windows. Key features include the Passkey Injector for intercepting and modifying authentication assertions, SharpPasskeys for executing payloads to retrieve user credentials, and the WebAuthn Hook for tampering with the assertion workflow through API interception. This toolkit is invaluable for security researchers and penetration testers aiming to understand and enhance the security of passkey-based authentication systems.

ggshield-action

2026-08-20 ★ 352
GitGuardian Shield (ggshield-action) is a GitHub Action designed to detect exposed credentials and other security vulnerabilities across commits and pull requests. Utilizing GitGuardian's public API, it identifies over 400 types of secrets in your code, allowing for integration into CI/CD workflows to enhance security. Key features include seamless GitHub integration, a stateless scan mechanism, and customizable scanning options.

kontext

2026-08-20 Go ★ 211
Kontext is a runtime governance tool designed for AI agents that enables local policy decisions, pre-action enforcement, and maintains an authorization ledger. It captures tool-use events, evaluates policies prior to action execution, and provides mechanisms for recording decisions, facilitating a balance between security and agent utility. Key features include local enforcement of policies, an observation mode for testing policy impacts, and compatibility with various execution environments, ensuring that security actions are seamlessly integrated into AI workflows without constant reliance on external services.

LastPass-Password-Vault-Edition

2026-08-19 ★ 14
password manager for Windows — LastPass with install and config notes. Store credentials securely with autofill across browsers and desktop apps. Whole application surface is usable — integrations and exports included.

loopback4-ratelimiter

2026-08-19 TypeScript ★ 36
loopback4-ratelimiter is a LoopBack 4 extension that enables rate limiting functionality for LoopBack applications by leveraging the express-rate-limit package. It supports various storage backends, including Redis, Memcache, and MongoDB, for managing rate limiting data, and allows for customizable configurations such as key generation and default options for enabling or disabling rate limits across APIs. Notable features include its easy integration into LoopBack applications and flexibility in configuring storage options based on application needs.

loopback4-vault

2026-08-19 TypeScript ★ 26
The `@sourceloop/vault` is a LoopBack 4 extension that integrates with HashiCorp's Vault, providing a simplified interface for secret management in Node.js applications. It enables developers to easily connect to Vault by configuring endpoint and authentication credentials, and allows access to various Vault operations through the injected `vaultConnector`. Notable features include seamless configuration updates with a reconnect method and comprehensive support for the capabilities of the underlying `node-vault` client.

TokenUniverse

2026-08-19 Pascal ★ 669
Token Universe is a sophisticated tool designed for experimentation with Windows security mechanisms, allowing users to create, view, and modify access tokens, manage Local Security Authority, and spawn processes under varying privilege levels. Its notable features include comprehensive token functionality such as user logon attempts, token editing capabilities, and access checks, making it suitable for security researchers and developers focused on Windows environment security analysis. The tool supports functionality across a broad spectrum of Windows versions, from Windows 7 onwards.

Wazuh-MCP-Server

2026-08-19 Python ★ 51
Wazuh-MCP-Server is a defensive blue team framework designed to integrate with Claude Desktop or any MCP client, serving as a complement to offensive security tools. It provides access to over 100 SOC tools, including multi-provider threat intelligence, alert enrichment, and advanced threat correlation capabilities using the MITRE framework. Notable features include a modular architecture, a variety of transport options for communication, and extensive configuration options for integrating with Wazuh SIEM and various threat intelligence sources.

agentmetry

2026-08-19 Python ★ 12
Agentmetry is an open-source endpoint flight recorder specifically designed for AI coding agents, capturing detailed logs of tool calls, approvals, and denials to provide visibility into agent actions. Its primary use case is enhancing incident response by generating a comprehensive JSONL trail and correlating events with MITRE ATT&CK tactics, issuing critical alerts when a series of actions could signify an attack. The tool can function locally on Windows and Linux machines, with optional forwarding to SIEM solutions like Loki, Elastic, Splunk, or Google SecOps for centralized monitoring.

ps-fuzz

2026-08-19 Python ★ 704
Prompt Fuzzer is an interactive security assessment tool designed for GenAI applications, evaluating the robustness of system prompts against a variety of dynamic attacks, including jailbreak and prompt injection. It adapts its testing methodology to the specific characteristics of the application, allowing for iterative improvement through a Playground chat interface. Notable features include support for multiple LLM providers, a command-line interface, and multi-threaded testing capabilities.

py-gitguardian

2026-08-18 Python ★ 89
py-gitguardian is a Python client library for the GitGuardian API, designed to detect over 200 types of secrets and potential security vulnerabilities in various text contents. It enables developers to integrate scanning capabilities into their applications, whether scanning individual files, entire codebases, or content from chat applications. Notable features include the ability to perform multi-file scans, handle API responses, and easily convert results to JSON or dictionaries for further processing.

lockstep

2026-08-17 TypeScript ★ 47
Lockstep is a personal security checklist platform designed to assist users in tracking their security habits and checklist progress through a streamlined web interface. Its notable features include profile-based progress tracking, dual-language support (Turkish), and customizable checklist categorization with priority levels and filters, all backed by Docker-ready deployment for persistent data management.

certi

2026-08-17 Python ★ 10
Certi is a Python-based tool designed for monitoring SSL Transparency logs, aiding users in tracking their issued certificates across multiple domains. Its primary features include domain monitoring with alert notifications through various channels (enabled by Apprise), and a REST API for managing domains, thus enhancing the security and oversight of SSL certificates. Utilizing frameworks like FastAPI and Loguru, Certi provides a structured approach to certificate log analysis for both organizations and individuals.

drop

2026-08-17 Go ★ 52
Drop is a productivity-focused sandboxing tool for Linux that enables users to create isolated environments for executing programs and LLM agents while maintaining access to their existing work environment. Notable features include the use of Linux mount namespaces for an independent root filesystem, selective read-only access to user configuration files, and customizable TOML configuration files that specify which directories and files are mounted into the sandbox. This setup allows for secure, disposable workspaces that restrict processes and network access to enhance security and contain potential threats.

www-project-threat-dragon

2026-08-17 HTML ★ 93
OWASP Threat Dragon is a tool designed for simplifying the threat modeling process, enabling users to identify and mitigate potential security risks in their applications. It is recognized as an OWASP Production project and adheres to established threat modeling principles. The project offers comprehensive documentation and community support, facilitating its integration into cybersecurity workflows.

tips-solidity-code-auditors

2026-08-17 ★ 357
The "Tips for Solidity Code Auditors" repository provides a comprehensive collection of suggestions, tools, and resources specifically tailored for auditing Solidity smart contracts. It features general tips, links to various auditing tools and services, as well as curated resources to enhance the auditor's workflow and understanding of potential vulnerabilities. Notably, it encourages community input to continuously expand and refine the knowledge base for Solidity code analysis.

Argo-Trivy-Insights

2026-08-16 TypeScript ★ 17
Argo Trivy Insights is a security extension for Argo CD that consolidates vulnerability and compliance data from Trivy scans directly within the Argo CD interface, allowing users to assess application security through a dedicated "Trivy Insights" tab. It features both per-application views and a cluster-wide dashboard, providing comprehensive scan reports, including vulnerabilities, exposed secrets, and configuration audits. The tool maintains low overhead by leveraging Argo CD's built-in React framework, enabling easy sharing of findings through exports in standard file formats.

WinGuard

2026-08-16 C++ ★ 34
WinGuard is a user-mode Windows threat detection tool designed to monitor and log suspicious activities on PCs, employing techniques inspired by Endpoint Detection and Response (EDR) frameworks. Its primary use case is for educational and experimental purposes, featuring advanced capabilities such as process and execution monitoring, file system analysis, persistence detection, and memory scans for malicious patterns, along with comprehensive logging functionalities. Notable features include the ability to analyze command line buffers for malicious intent, detect abnormal process behaviors, and whitelist benign applications to mitigate false positives.

rawsec-cybersecurity-inventory

2026-08-15 JavaScript ★ 343
Rawsec's Cybersecurity Inventory is a comprehensive resource designed to catalog various cybersecurity tools and their functionalities. It serves as a centralized platform for researchers and professionals to discover, contribute to, and engage with open-source cybersecurity solutions. Notable features include an extensive documentation hub, contribution guidelines, and active community engagement through Discord channels.

trustsight

2026-08-15 Python ★ 14
TrustSight is a security auditing tool designed for Arch Linux that inspects AUR PKGBUILD updates prior to installation. It identifies structural changes, malicious commands, and typosquatting while generating a deterministic evidence report that traces findings to specific diffs, URLs, or novelty records. Notable features include local analysis without executing commands, a reputation-based novelty detection model, and a structured output to enhance transparency in the auditing process.

M365-Assess

2026-08-14 PowerShell ★ 192
M365 Assess is a read-only security assessment tool for Microsoft 365 tenants, designed for IT consultants and administrators to quickly analyze and report security posture. It performs 292 automated checks across 15 compliance frameworks, generating comprehensive output in the form of CSV data, a branded HTML report, and an XLSX compliance matrix. Key features include customizable assessment sections, compatibility with various compliance standards, and an interactive wizard for streamlined execution.

awesome-solana-security

2026-08-14 ★ 75
The "Awesome Solana Security" repository serves as a comprehensive resource for auditing and securing Solana smart contracts, featuring a collection of blogs, articles, and audit reports that cover essential techniques and vulnerabilities. Notable content includes systematic auditing approaches, automated scanning methods, and security considerations for the Anchor framework, alongside practical insights on common pitfalls and Sealevel attacks. This repository is geared towards developers and auditors who seek to enhance the security of applications within the Solana ecosystem.

comboclean

2026-08-14 Shell ★ 15
Combo Clean is a utility designed for processing and cleaning large combolists of email and password pairs, making them ready for use in scripts. Its notable features include the ability to filter and output cleaned combinations from a specified input file, simplifying the management and utilization of credential datasets. The tool is straightforward to install and execute, providing both local and global command options.

frizbee

2026-08-14 Go ★ 186
Frizbee is a command-line tool that generates checksums for GitHub Actions and container images based on tags, ensuring the integrity of the respective contents. It provides robust functionalities for replacing action references within GitHub workflows and validating container images by resolving their checksums. Notable features include dry-run mode for previewing changes, integration as a GitHub Action, and a library that facilitates tag and checksum operations programmatically.

gemtracker

2026-08-14 Go ★ 22
Gemtracker is an interactive terminal UI tool designed to analyze Ruby gem dependencies and detect security vulnerabilities within projects. Key features include a tab-based interface for visualizing dependency trees, real-time gem search, CVE reporting, and group-based analysis, along with JSON export capabilities for integration with automated systems and AI tools. This tool enhances the management of gem versions and prioritizes security fixes, making it ideal for developers aiming to maintain safe and up-to-date Ruby applications.

Awesome-AI-For-Security

2026-08-13 ★ 146
Awesome AI for Security is a curated platform that aggregates tools, models, papers, and datasets focused on the integration of artificial intelligence in cybersecurity operations. This resource emphasizes contemporary AI advancements such as Large Language Models and autonomous agents applied to various security tasks, including vulnerability assessment and threat intelligence. Notable features include specialized models for vulnerability localization and enhanced reasoning capabilities, enabling efficient analysis and automation in security workflows.

gakido

2026-08-12 Python ★ 23
Gakido is a high-performance CPython HTTP client designed for browser impersonation, anti-bot evasion, and enhanced speed. It supports multiple protocols including HTTP/1.1, HTTP/2, and HTTP/3 (QUIC), and includes notable features such as 96 browser profiles, automatic content compression, TLS overrides, and both synchronous and asynchronous operation modes, along with multipart upload capabilities and proxy support. Additionally, Gakido offers built-in retry functionality with exponential backoff to handle transient failures effectively.

example-nextjs

2026-08-12 TypeScript ★ 58
Arcjet's example Next.js application showcases the integration of various security features designed to protect web applications with minimal code. Key capabilities include server-side email verification, bot detection, rate limiting based on user authentication, attack protection against SQL injection and cross-site scripting, and sensitive information handling. This tool serves as a practical demonstration for developers to implement and customize security measures effectively in their applications.

s-gw

2026-08-12 TypeScript ★ 15
s-gw is a local credential management tool designed to enhance security for coding agents by allowing the approval of bounded actions while keeping raw credentials out of the model context and tool outputs. It facilitates the creation of typed handles for secrets, executes commands in a controlled child process with injected credentials, and provides sanitized output along with detailed audit evidence. Notable features include local custody of raw secret values, action-scoped access approvals, and a user-friendly console for monitoring activity and credential management.

secpipw

2026-08-12 Python ★ 14
secpipw is an open-source Python package designed to enhance supply-chain security during package installation by acting as a safer wrapper around the standard pip command. It analyzes and mitigates supply-chain risks when installing packages, allowing users to use `spip install` as a drop-in replacement for `pip install` while still supporting additional package managers like pipx and poetry. This tool does not require configuration, aiming for ease of use while providing comprehensive checks against potentially malicious packages.

securitycards

2026-08-12 TypeScript ★ 17
Security Cards is an open-source tool providing library-specific security guidance for developers and AI coding agents, tailored to specific library versions, ensuring relevant and actionable advice. Its notable features include categorization by language, library, version, and security category, as well as the ability for agents to fetch and apply guidance seamlessly in their coding workflow. The tool enhances code security by offering secure rules and examples while clarifying that it does not replace professional security reviews.

DeepSafe

2026-08-12 Python ★ 53
DeepSafe is an all-in-one safety evaluation toolkit designed specifically for large language models (LLMs) and multimodal language models (MLLMs), integrating over 25 safety datasets along with the ProGuard evaluation model for comprehensive assessments. Its modular architecture allows for extensive customization and rapid integration of new components, promoting a streamlined, automated evaluation process that generates detailed reports to enhance AI safety research. Key features include a configuration-driven approach, facilitating user-friendly YAML-based execution and in-depth analysis capabilities, aimed at positioning itself as a significant tool in the construction of trustworthy AI systems.

loopback4-helmet

2026-08-11 JavaScript ★ 27
loopback4-helmet is a LoopBack 4 extension that integrates Helmet.js, providing enhanced security for LoopBack applications through a series of middleware configurations. Its primary use case is to help developers implement best practices for HTTP headers, which can mitigate common web vulnerabilities. Notable features include customizable middleware settings via configuration bindings and the ability to easily incorporate the Helmet security action into the application’s request handling sequence.

phraze

2026-08-11 Rust ★ 42
Generate random passphrases

precli

2026-08-11 Python ★ 27
Precli is a command line interface designed for performing static code analysis on source code, primarily focusing on detecting vulnerabilities within the standard library of various programming languages. Its capabilities include predefined rules for analysis, and it offers an upgrade option to Precaution Professional for deeper inspection of third-party libraries. Notable features include easy installation via pip, and the ability to analyze specific code examples for potential security risks.

rabid

2026-08-10 Ruby ★ 12
RABID is a command-line interface tool and library designed for the rapid decoding of various BigIP cookie formats. It supports all four standard cookie formats, making it a versatile option for cybersecurity professionals dealing with BigIP environments, and is designed to be extendable for advanced use cases. Notable features include its hackable nature and comprehensive support for BigIP cookies.

teep

2026-08-10 Go ★ 17
Teep is a local proxy tool designed to enhance privacy when interacting with AI providers by ensuring that user prompts remain unreadable to the service provider and any third parties. It achieves this by verifying the authenticity of the hardware running the AI model and encrypting the conversation, only allowing the secure environment to decrypt the messages. Notable features include support for multiple AI providers, robust attestation mechanisms, and seamless integration with any OpenAI-compatible application.

vaulytica

2026-08-10 TypeScript ★ 12
Vaulytica is a deterministic contract checker that operates entirely within the user's browser, providing a linting solution for legal documents without the need for authentication or external servers. It applies over 1,100 deterministic rules and performs extensive cross-document checks, generating reproducible reports in multiple formats, including DOCX and JSON, while ensuring compliance with specific legal standards through well-defined sources. Notably, Vaulytica offers a transparent process where the output is byte-identical for the same input and environment, enabling users to easily cite results and maintain a verifiable auditing trail.

vps-audit

2026-08-10 Shell ★ 2518
The VPS Security Audit Script is a Bash tool designed for thoroughly auditing the security and performance of Ubuntu/Debian-based Virtual Private Servers. It conducts a variety of security checks such as SSH configuration, firewall status, and intrusion prevention settings, while also monitoring system performance metrics like CPU and memory usage. Notably, it provides real-time feedback with color-coded outputs indicating pass, warn, or fail statuses, and generates a comprehensive report with recommendations for improving the server's security and performance.

cors

2026-08-10 Shell ★ 11
cors is a CORS misconfiguration scanner designed to identify vulnerabilities in web applications related to Cross-Origin Resource Sharing. Its primary use case includes scanning single URLs or multiple URLs from a file, with capabilities for specifying output files and concurrent scanning threads to enhance efficiency. Notable features include detailed vulnerability reporting, flexible usage options for various scanning scenarios, and easy installation on Linux systems.

pie-my-vulns

2026-08-09 JavaScript ★ 26
Pie-my-vulns is a command-line tool designed to visualize JavaScript and Node.js project security vulnerabilities using pie charts directly in the terminal. It leverages the Snyk vulnerability database for analysis and offers functionalities for scanning project directories or piping in existing Snyk test outputs. Notable features include the ability to run scans via npx, Docker support, and a straightforward installation process through npm.

templates

2026-08-09 Go ★ 147
The chainreactors/templates repository provides a unified set of templates for various cybersecurity tools including gogo, spray, zombie, and found, facilitating consistent configurations and rules. Notable features include a template generator for packaging YAML and rules into embedded binary data, multiple fingerprinting and vulnerability detection rules, and configurable extraction rules for sensitive data retrieval. This tool is designed to streamline the setup and integration of various security artifacts across the chainreactors ecosystem.

Ubuntu-Security-Hardening-Script

2026-08-09 Shell ★ 95
The Ubuntu Security Hardening Script automates the hardening of Ubuntu servers across various subsystems, including SSH, kernel settings, and firewall configurations, ensuring compliance with CIS benchmarks. It features comprehensive safety checks, automatic backups, and detailed reporting, while supporting the latest Ubuntu versions and incorporating advanced security mechanisms such as post-quantum SSH. The tool is designed for repeatability, preserving custom configurations on re-runs, making it suitable for production environments.

RollCall-FlipperZero

2026-08-08 C ★ 10
RollCall is a tool for assessing the security of key fobs and garage remote controls by distinguishing between rolling code and static code protocols. It captures and analyzes the signal from the remote to confirm if the code changes with each press, providing health grades to indicate the security status. Notable features include its ability to fingerprint each press without additional hardware and a "Find My Remote" function to identify the frequency of unresponsive remotes.

deidentify

2026-08-08 Go ★ 38
Deidentify is a Go library designed to detect and remove personally identifiable information (PII) from both text and structured data, employing deterministic algorithms that maintain referential integrity. Key features include support for multiple PII types (such as emails, phone numbers, and SSNs), format preservation for usability, context-aware processing, and thread safety for concurrent applications. This tool is particularly useful for organizations requiring data anonymization while retaining original data structure and format.

zed

2026-08-08 Go ★ 163
Zed is a command-line client for managing SpiceDB, designed to streamline permission and relationship handling within applications. It offers robust features including secure context switching, a variety of commands for permissions and relationships, comprehensive schema management, and backup/restore capabilities, making it suitable for scalable access control solutions.

apotrope

2026-08-08 Python ★ 12
Apotrope is a portable Windows security posture auditing tool that performs a comprehensive assessment of Windows systems against CIS Microsoft Windows Benchmarks, providing a score from 0 to 100 along with detailed remediation recommendations. It operates as a standalone executable or via pip installation, requiring no network connection or user account for operation, and it returns results in both terminal output and self-contained HTML reports. With over 50 audit controls across 14 categories, Apotrope distinguishes itself by being read-only, user-friendly, and capable of generating actionable PowerShell commands for each identified issue.

hackerone-cli

2026-08-08 Python ★ 10
The HackerOne CLI utility is an unofficial command-line client for the HackerOne platform, enabling users to interact with their account through various modules. Notable features include accessing user profiles, reports, program information, and earnings status, all powered by the official HackerOne API for seamless integration. The tool supports multiple operations suitable for both Windows and Unix environments, allowing easy installation and execution.

pymsi

2026-08-07 Python ★ 71
pymsi is a pure Python library designed for reading and manipulating Windows Installer (MSI) files, utilizing the rust msi crate and msitools utilities. Its primary use case is to facilitate the extraction, analysis, and modification of MSI file contents, offering features such as command line operations for listing tables, dumping contents, checking file validity, and decoding custom actions. Additionally, it provides a client-side MSI viewer and file extractor accessible through a web interface.

ansible-everyday

2026-08-07 Shell ★ 13
Kaosagnt's Ansible Everyday provides a collection of customizable Ansible playbooks designed for daily server management tasks, streamlining automation for systems administrators. The tool features interactive playbooks for various operations, such as managing access control lists, package updates on RHEL and Debian-based systems, and setting up system tools like the nano editor. It also includes scripts for easy execution of these tasks, requiring minimal setup while accommodating a range of operating systems.

clampdown

2026-08-07 Go ★ 95
Clampdown is a cybersecurity tool designed to run AI coding agents within secure, hardened container sandboxes, thereby mitigating risks associated with arbitrary code execution. Its primary use case is confining untrusted processes to ensure limited filesystem access and controlled network egress, utilizing advanced features like custom seccomp profiles, AppArmor confinement, and mandatory read-only root filesystems. By implementing a multi-layered architecture with sidecars and nested containers, Clampdown enables robust isolation and security for AI agents operating in potentially vulnerable environments.

guardon

2026-08-07 JavaScript ★ 28
Guardon is a browser extension designed to identify Kubernetes security misconfigurations during code reviews on GitHub and GitLab, enabling developers to catch issues before they reach production. It offers instant feedback with actionable, copy-paste ready fixes, requires zero setup, and supports customizable rules and Kyverno policy imports. Notable features include multi-document YAML parsing, smart fix suggestions, and a user-friendly interface that integrates seamlessly into existing workflows.

MADCAT_v2

2026-08-07 C ★ 22
MADCAT (Mass Attack Detection Connection Acceptance Tools) is a low-interaction honeypot solution designed for detecting and logging network attacks by simulating common network services. It captures attack patterns and behaviors by recording contact attempts, including IP addresses and timestamps, without providing extensive interaction, and is intended to enhance the monitoring and forecasting of mass attacks on the internet. The tool is currently under development to include a DPI Routing Proxy and Docker Appliance for improved capabilities.

oak-keyring

2026-08-07 Rust ★ 231
oak-keyring is a privacy-centric, terminal-based password manager that provides an interactive TUI for browsing, managing, and securing credentials. Key features include a customizable password generator, efficient vault management with tagging and soft-delete options, cloud sync capabilities via Google Drive, and robust recovery options. The tool emphasizes a local-first approach, ensuring user data remains private while facilitating convenient keyboard-driven interactions.

slsa-github-generator

2026-08-07 Go ★ 591
The SLSA GitHub Generator is a tool designed to generate and verify SLSA Build Level 3 provenance for projects hosted on GitHub, utilizing GitHub Actions to enhance software supply chain security and integrity. Its primary use case is to help developers establish a tamper-proof statement of their software creation process, thereby mitigating risks of supply chain attacks. Notable features include the ability to build custom builders and generators for SLSA compliance and integration with GitHub artifact attestations for verified provenance.

dirracuda

2026-08-06 Python ★ 29
Dirracuda is a graphical user interface (GUI) tool designed for discovering and categorizing open directory listings across various protocols, facilitating audits on accessible resources. Key features include a user-friendly dashboard for launching scans, integration with the Shodan API for candidate discovery, and support for file viewing and malware scanning post-download. It emphasizes security measures for scanning unknown hosts, recommending the use of VPNs and virtual machines.

portscan-protection

2026-08-06 Shell ★ 88
Portscan Protection is a tool designed to enhance the security of Linux systems by detecting and blocking IP addresses that perform rapid port scanning, which could lead to unauthorized access attempts. Its notable features include support for both iptables and nftables, systemd and cron operation modes, custom SSH port functionality, and the ability to manage whitelists and blacklists for IP addresses. The tool is easy to install and comes with automatic updates, ensuring continuous protection against port scan attacks.

witness

2026-08-06 Go ★ 546
Witness is a dynamic CLI tool designed to create an audit trail for software throughout the entire software development lifecycle (SDLC) by adhering to the in-toto specification. It integrates with popular platforms such as GitHub, GitLab, AWS, and GCP to ensure that software production steps are verified, tampering is detected, and policies can be enforced using an embedded OPA Rego engine. Notable features include keyless signing support via Sigstore, timestamp authority integration, and compatibility with both containerized and non-containerized environments without requiring elevated privileges.

sbomqs

2026-08-05 Go ★ 306
sbomqs is a comprehensive tool for assessing Software Bill of Materials (SBOM) quality and ensuring compliance with various regulatory standards. It provides features for quality scoring, compliance validation across multiple frameworks, vulnerability tracking, and integration into CI/CD workflows. With its user-friendly interface and multi-standard support, sbomqs enables organizations to manage their software supply chain security effectively and share compliance results easily.

arcjet-docs

2026-08-05 MDX ★ 16
Arcjet offers runtime policy enforcement for applications and AI agents, enabling teams to implement budget constraints, bot protection, prompt-injection checks, sensitive-data controls, and action-level guardrails in real application contexts. This tool integrates seamlessly with code deployments, providing essential security measures tailored to application functionality. Notable features include real-time enforcement policies and application context awareness, enhancing the overall security posture of software solutions.

atlas-trust-infrastructure

2026-08-05 Shell ★ 14
Atlas Trust Infrastructure is a metadata-centric framework designed to create and verify proof chains for operational integrity across various systems, such as GitHub, Nix, and SSH. Its primary use case is to enhance audit readiness and governance by recording and verifying actions' metadata, capabilities, policies, and approvals without replacing existing tools. Notable features include a proof-only recording mechanism that ensures metadata integrity and replayability, promoting transparency and reducing ambiguity in digital actions.

dnsmonster

2026-08-05 Go ★ 360
Dnsmonster is a passive DNS monitoring framework developed in Golang that captures and indexes DNS traffic from various sources, including live network interfaces, pcap files, and dn stap sockets. It is designed for high performance, capable of indexing over 200,000 DNS queries per second while ensuring user privacy through IP masking. The tool provides flexibility with sampling and domain filtering options, making it suitable for security teams needing to analyze DNS traffic trends effectively.

mailgoose

2026-08-05 Python ★ 207
Mailgoose is a web application designed to verify the correct configuration of SPF, DMARC, and DKIM for email domains, thus enhancing email security and reducing the risk of spoofing. It underpins the service provided by CERT PL at bezpiecznapoczta.cert.pl, which assists Polish institutions in domain configuration. Notable features include integration with checkdmarc and dkimpy for comprehensive validation checks.

rebuilderd

2026-08-05 Rust ★ 428
rebuilderd is an independent verification system designed to ensure the reproducibility of binary packages from their source code within Linux distributions. Its primary use case is to monitor package repositories, utilizing backends to verify that binaries have been successfully rebuilt, while generating reports of discrepancies for troubleshooting. Notable features include support for various distributions like Arch Linux and Debian, and the ability to run instances locally, enhancing confidence in package integrity against tampering.

slsa-provenance-action

2026-08-05 Go ★ 50
The SLSA Provenance GitHub Action enables users to generate Level 1 SLSA provenance files for various artifact types, such as files and Docker images. Its primary use case is to facilitate automated analysis and auditing of software supply chains by providing provenance information in a standardized format, thereby improving traceability of software artifacts. Notable features include integration with GitHub Actions, compatibility with the SLSA framework, and support for multiple artifact types through a straightforward workflow configuration.

ansible-role-hardening

2026-08-04 Jinja ★ 645
The `konstruktoid/ansible-role-hardening` is an Ansible role that enhances the security posture of servers running AlmaLinux, Debian, or Ubuntu by applying systemd-focused hardening configurations. It supports multiple operating system versions and provides features such as SSH access controls, permission management, and integration with hardened images for AWS and Azure. Notably, it emphasizes pre-deployment testing for safety and has been migrated to a recommended collection for ongoing support.

generate-api-key

2026-08-04 Python ★ 23
The `generate-api-key` GitHub Action automates the generation of secure API keys, enhancing security in CI/CD workflows. It features key masking in logs and the ability to set the generated key as an output variable, with customizable key length defaulting to 32 characters. This tool is particularly useful for developers seeking to manage sensitive credentials without exposing them in build logs.

snyk-maven-plugin

2026-08-04 Java ★ 85
The Snyk Maven Plugin provides automated security testing and monitoring for Maven dependencies, effectively identifying vulnerabilities in your projects. It offers features such as dependency scanning, monitoring for newly disclosed vulnerabilities, and experimental support for static analysis of source code and container image testing. This plugin is designed to integrate seamlessly into Maven builds, enhancing security throughout the software development lifecycle.

agent-beacon

2026-08-04 Go ★ 320
Agent Beacon is an open-source telemetry layer designed to capture and normalize runtime events from AI agents across various environments, such as local, CI, and cloud. Its primary use case is to provide unified visibility into the behavior of AI agents by extending the OpenTelemetry GenAI standard, making it easier for Security and IT teams to deploy and manage agent telemetry. Notable features include support for multiple enterprise-grade SIEM integrations and a local dashboard for event inspection, ensuring that data processing remains under customer control.

Awesome-LLM4Security

2026-08-04 ★ 347
Awesome-LLM4Security is a curated repository that aggregates key resources related to the application of natural language processing and generative pre-trained transformers in cybersecurity research, aimed at researchers and security practitioners. It includes models, projects, academic papers, datasets, and relevant products to assist users in understanding and leveraging advancements in the field. Notable features include a comprehensive resource list categorizing various tools and methodologies for enhancing cybersecurity measures.

safedeps

2026-08-04 Shell ★ 19
`safedeps` is a command-line tool that enhances security for AI coding agents by pre-approving dependencies against vulnerabilities from multiple advisory sources before installation and ensuring no unapproved packages are introduced. It enforces compliance through re-verification of the dependency tree post-installation and can automatically roll back any that are found to be insecure. Designed for local use with no runtime dependencies, it also provides features for auditing and managing secrets within the repository.

sbt-sbom

2026-08-04 Scala ★ 39
The sbt-sbom plugin enables Scala Build Tool (sbt) projects to generate valid CycloneDX Bill of Materials (BOM) files, facilitating better compliance and integration with Software Composition Analysis tools. Its primary use case is for managing and exporting the dependencies of sbt projects in a structured format, with support for different dependency scopes and customizable output formats. Notable features include the ability to create BOMs for specific scopes, list BOM contents without file generation, and various configuration options for output filename and format.

vice

2026-08-04 JavaScript ★ 572
VICE is a security auditing CLI tool designed for assessing vulnerabilities in web applications through both black-box and white-box testing modes. It offers a remote scanning feature that crawls and inspects a given URL, as well as a local audit mode that analyzes source code and configurations for security flaws, including SQL injections and XSS vulnerabilities. Notably, VICE integrates seamlessly with GitHub Actions to automate security checks on pull requests, provide real-time updates on security scores, and maintain a security badge within the repository.

action-pylint

2026-08-03 Dockerfile ★ 10
The konstruktoid/action-pylint is a GitHub Action designed for linting and testing Python code with the tools ruff and ty. Its primary use case is to automate code quality checks during the CI/CD process by integrating seamlessly with GitHub workflows. Notable features include support for customizable linting configurations and the ability to run on various triggers such as pushes and pull requests.

amazing-sandbox

2026-08-03 Go ★ 166
Amazing Sandbox (AS) is a versatile tool designed to execute various programming environments in a secure, containerized format. It primarily mitigates risks associated with running potentially malicious packages by limiting their access to the file system and network, facilitating safer development practices. Key features include configurable access permissions, support for multiple programming languages, and the option to air-gap execution environments for enhanced security.

aws-sso-cli

2026-08-03 Go ★ 660
AWS SSO CLI is a secure command-line interface tool designed to simplify the management of AWS IAM Identity Center access for organizations with multiple AWS accounts and IAM roles. It enhances security by auto-discovering available roles, supporting both interactive and CLI-based role selection, and allowing for the sharing of AWS STS token credentials. Notable features include support for multiple active AWS Console sessions, guided setup, customizable profiles, and a user-friendly experience focused on improving AWS SSO interactions.

chalk

2026-08-03 Nim ★ 438
Chalk is a software provenance and attestation tool designed to offer a cryptographically verifiable chain of custody for production software with minimal configuration effort. It facilitates the automatic insertion of a tamperproof identifier into various software artifacts, allowing for easy integrity checks and correlation of provenance data. Notable features include support for build signature modes using Sigstore, integration with Docker’s SBOM tooling, and a continuous attestation model that aids in incident response, compliance, and tech stack visibility.

chipsec

2026-08-03 Python ★ 3297
CHIPSEC is a comprehensive platform security assessment framework designed to analyze the security of PC platforms, focusing on hardware, system firmware (BIOS/UEFI), and associated components. It features a variety of security tests, access tools for low-level interfaces, and forensic capabilities, and supports operation across Windows, Linux, and UEFI shell environments. This tool is particularly geared for security professionals seeking to identify vulnerabilities in firmware, hypervisors, and hardware configurations.

cortado

2026-08-03 Python ★ 29
Cortado is a Python-based framework designed for executing Red Team Automations (RTAs) which emulate attacker behaviors or reference specific binary samples to evaluate detection rules in Elastic's security products. It features a command-line interface for running RTAs in a minimal dependency environment, as well as utilities for assessing RTA coverage against defined detection rules. The tool facilitates seamless integration and deployment within security operations, enhancing the verification process of alert generation.

dalec

2026-08-03 Go ★ 320
Dalec is a tool designed for securely building system packages and containers using a declarative configuration format, with a particular emphasis on supply chain security. It supports multiple package formats (DEB, RPM, and Windows containers) while ensuring minimal image sizes to reduce vulnerabilities, along with features like signed packages and build-time Software Bill of Materials (SBOMs) for provenance attestations. The tool operates with Docker as its sole dependency, simplifying the usage for various target operating systems.

geol

2026-08-03 HTML ★ 12
`geol` is a Go-based command-line interface tool designed to manage end-of-life (EOL) information for software, offering an enhanced user experience compared to its Python counterpart, `norwegianblue`. It provides a terminal-based interface that facilitates safer and easier delivery while incorporating additional features for improved security management related to EOLs. Notable features include a strong focus on user experience, straightforward installation, and innovative management methods for software lifecycle tracking.

honggfuzz-rs

2026-08-03 Rust ★ 500
honggfuzz-rs is a Rust binding for the Honggfuzz fuzzer, enabling feedback-driven and evolutionary fuzz testing for Rust code. It offers features like fuzzing with runtime instrumentation, crash replay in a debugging environment, and support for various sanitizers, making it suitable for security-oriented software testing across multiple operating systems and architectures. The tool can be easily integrated into Rust projects by adding it as a dependency and utilizing its provided macros for fuzzing functionality.

minijail

2026-08-03 C ★ 382
Minijail is a sandboxing tool designed to enhance security by isolating and containing processes, primarily used in ChromeOS and Android environments. It allows users to launch and sandbox executables securely, mitigating risks associated with compromised services through robust containment strategies. Notable features include an executable for sandboxing known binaries and a library that enables developers to integrate sandboxing capabilities directly into their applications.

Password-Monitor

2026-08-03 Kotlin ★ 120
Password Monitor is a cybersecurity tool that checks the integrity of user passwords against known data breaches by utilizing the Have I Been Pwned? service. It emphasizes privacy by ensuring that passwords are never shared and offers a user-friendly interface with support for material design, dark themes, and ad-free usage. Notable features include being fully open source, the avoidance of personal data collection, and reproducible builds for easy installation.

secure-repo

2026-08-03 Go ★ 330
Secure-Repo is a GitHub repository tool designed to automate the implementation of security best practices within GitHub workflows. Its primary use case includes enhancing repository security by automatically setting minimum GITHUB_TOKEN permissions, integrating security actions like Harden-Runner, and facilitating dependency management through Dependabot and CodeQL. Notable features include a catalog of recommended fixes that can be applied to various security vulnerabilities in CI/CD processes, alongside an actionable knowledge base for GitHub Actions permissions.

security-risk-assessment-tool

2026-08-03 JavaScript ★ 40
The Security Risk Assessment Tool (ISRA) is an Electron-based application designed for evaluating security risks in engineering projects, specifically within Thales Digital Identity and Security Business Unit. It facilitates the identification of business and supporting assets, threat agents, vulnerabilities, and the assessment of associated risks, all while adhering to the ISO 27005 risk management standard. Notable features include detailed risk analysis workflows, integration of predetermined Targeted Level of Trust (TLoT), and a risk treatment strategy that allows for mitigation, acceptance, or avoidance of identified risks.

setcap-static

2026-08-03 C ★ 10
`setcap-static` is a streamlined, statically linked tool designed to set file capabilities, particularly useful in containerized environments where non-root execution is required while maintaining specific privileges, such as binding to low-numbered ports. It addresses the limitations of Docker's `COPY` command, which does not preserve extended attributes, by allowing capabilities to be assigned directly in the target image, and it features self-deletion to minimize attack vectors by removing itself after execution. This tool is particularly advantageous in scratch images, enhancing security while facilitating necessary privilege assignments for applications.

stride-gpt

2026-08-03 Python ★ 1111
STRIDE GPT is an AI-driven threat modeling tool that utilizes Large Language Models to create detailed threat models and attack trees based on the STRIDE methodology. It offers features such as agentic codebase analysis, a user-friendly CLI and interactive REPL, integration with OWASP guidelines, and the capability to generate and edit architecture diagrams directly within the tool. Additionally, STRIDE GPT supports multi-modal input, allowing users to incorporate various diagram types into the threat modeling process.

uzomuzo-oss

2026-08-03 Go ★ 32
uzomuzo is a dependency management tool designed to identify unmaintained packages and facilitate the safe removal of vulnerabilities that traditional Software Composition Analysis (SCA) tools fail to detect. Its primary features include the `scan` command for detecting unmonitored packages lacking CVEs and the `diet` command to rank dependencies by their removability based on various risk factors. Thus, uzomuzo addresses the critical issue of hidden lifecycle risks in software dependencies, enhancing supply chain security.

AutoFyn

2026-08-03 Python ★ 101
AutoFyn is a long-horizon agent designed to find vulnerabilities in software by utilizing a clean context and verifiable feedback mechanism. It operates by proposing exploits against live systems, ensuring objective outcomes that enhance its learning through expert iteration across multiple domains, including security audits and mathematical research. Notable features include its ability to conduct thorough security audits on popular repositories, yielding significant vulnerability reports, and effectively managing context to avoid the pitfalls of accumulating errors.

betterleaks

2026-08-03 Go ★ 1814
Betterleaks is a configurable and efficient secrets scanner designed for detecting sensitive information across various platforms, including Git repositories, GitHub, GitLab, and S3. It offers notable features such as advanced rule-based filtering using Expr for reduced false positives, validation of detected secrets via asynchronous HTTP requests, and support for numerous data sources, making it a versatile tool in ensuring code security. With built-in parallel processing and optimization for fast scans, it can be integrated easily into any system, enhancing its practicality in diverse development environments.

bramble

2026-08-03 TypeScript ★ 366
Bramble is a decentralized password manager that securely stores user passwords on their own devices without relying on a central server or third-party accounts. It features a browser extension for Chromium-based browsers and mobile apps for iOS and Android, utilizing a peer-to-peer syncing mechanism for vaults that ensures end-to-end encryption across devices. The tool emphasizes security with its Rust-based cryptographic core and offers easy backup options through encrypted files.

checkpoint

2026-08-03 PHP ★ 114
Checkpoint is a Laravel security scanner designed to audit applications for common vulnerabilities, encompassing checks for known CVEs, hardcoded secrets, and potential misconfigurations through a single Artisan command (`php artisan checkpoint:scan`). It performs a comprehensive analysis, including Composer and NPM CVE audits, environment configuration validation, file permissions checks, and scans for risks like SQL injection and XSS vulnerabilities. Notable features include the ability to detect sensitive data exposure and misconfigured security settings, making it an essential tool for securing Laravel applications.

Commander

2026-08-03 Python ★ 251
Keeper Commander serves as a versatile command-line interface for managing access to the Keeper® Password Manager and KeeperPAM, facilitating tasks such as user and role administration, password rotation, and session management. Notably, it offers an interactive terminal UI, supports REST service operations, and enables features like biometric authentication and persistent login sessions, making it suitable for both individual users and enterprises seeking to integrate secure password management within their workflows. As an open-source tool, it encourages community contributions, enhancing its capabilities and usability.

fucking-android-security-awesome

2026-08-03 Makefile ★ 42
The "fucking-android-security-awesome" repository is a comprehensive catalog of resources and tools focused on Android security. It serves as a reference for security professionals, offering links to various online analyzers, academic resources, and vulnerability exploits relevant to Android applications. Notable features include extensive listings of tools for both static and dynamic analysis, along with continual updates and validations to ensure the links and resources are current.

ghorg

2026-08-03 Go ★ 2138
ghorg is a command-line tool that allows users to efficiently clone all repositories from an organization or user account on platforms like GitHub, GitLab, and Bitbucket into a designated directory. It features capabilities for repository filtering, backup creation, and synchronization with remote repositories, making it suitable for tasks such as audits, onboarding, and local codebase searches. Notably, ghorg can also automate cloning tasks and track metrics over time.

graphql-armor

2026-08-03 TypeScript ★ 587
GraphQL Armor is a customizable security middleware designed for various GraphQL server engines, including Apollo Server and GraphQL Yoga, as well as additional compatibility through the Envelop plugin system. Its primary use case is to enhance the security of GraphQL APIs by providing a robust, straightforward integration that can adapt to various environments. Notable features include support for multiple GraphQL frameworks, making it versatile for enterprise-level security implementations.

hashpass

2026-08-03 TypeScript ★ 121
Hashpass is a unique password manager that generates passwords on the fly using a universal password and the domain of the website, ensuring that no passwords are stored. Its primary use case is to provide users with a secure, unique password for each site while only requiring them to memorize a single password. Notable features include the use of a cryptographic hash function for password generation and the convenience of a browser extension that integrates seamlessly with web pages.

hexora

2026-08-03 Rust ★ 168
Hexora is a static analysis tool for Python code that identifies malicious patterns and harmful constructs through a combination of rule-based analysis and machine learning scoring. Its primary use cases include auditing project dependencies for supply chain vulnerabilities, detecting malicious scripts on public platforms, and analyzing compromise indicators from previous security incidents. Notable features include high-confidence scoring for detected threats, customizable audit options (such as excluding specific rule codes), and the ability to audit entire directories or virtual environments.

IYPS

2026-08-03 Kotlin ★ 278
IYPS is a password strength evaluation application that analyzes and rates the robustness of user-provided passwords, estimates potential cracking times, and delivers actionable advice for enhancing password security. It features a random password and passphrase generator, operates entirely offline, and is designed with a modern Material You interface, supporting both light and dark themes without ads or personal data collection.

LucidSSH

2026-08-03 TypeScript ★ 16
LucidSSH is a user-friendly SSH client for Windows designed for less experienced users managing one or two servers, emphasizing ease of understanding and safety. Notable features include a command safety guardian that warns against potentially destructive commands, an error detector that provides explanations for failed commands, a breadcrumb navigation system displaying server status, and a local command history with note-taking functionality, all while ensuring complete data privacy by operating without cloud integration.

mdn-http-observatory

2026-08-03 JavaScript ★ 140
Mozilla's HTTP Observatory is a security assessment tool that evaluates websites for security-relevant HTTP headers, providing structured results in JSON format. Its primary use case includes both one-off scans via command line and API integration for continuous monitoring within CI pipelines. Notable features include support for customizable request headers, a local API server with persistence via PostgreSQL, and detailed scan results that reflect the security grade and compliance of tested websites.

pwpush-cli

2026-08-03 Python ★ 28
pwpush CLI is a command-line tool designed for securely sharing sensitive information such as passwords and files via self-destructing links. Its primary use case is to facilitate the secure transmission of secrets without relying on traditional communication methods like email or Slack, and it provides notable features including automatic expiration controls, integration for file uploads, and a secured request feature for soliciting sensitive data from others in a protected manner.

RA3G-Agent

2026-08-03 Python ★ 12
RA3G-Agent is a policy-aware RAG (Retrieval-Augmented Generation) multi-agent AI system designed for document querying without the need for external APIs. It features a robust architecture comprising a Retriever, Reasoning, and Governance agents, enabling automatic filtering of sensitive information and maintaining session memory for context. Key capabilities include a user-friendly web interface, real-time logging, automatic PDF uploads for vector storage, and full programmatic access through a REST API built with FastAPI.

randompass

2026-08-03 Rust ★ 10
randompass is a static password generator that produces 20-character passwords with a combination of lower and uppercase letters as well as special characters enabled by default, simplifying the process of creating complex passwords. The tool allows users to customize the password length and can be easily installed via Cargo or used with precompiled binaries and Docker images. Notable features include guaranteed complexity in generated passwords and the ability to disable specific character categories if desired.

ShareClean

2026-08-03 Python ★ 17
ShareClean is a Python CLI tool designed for sanitizing developer outputs such as logs, configuration snippets, and terminal outputs before sharing them in public or semi-public environments. Notable features include local processing without the need for network calls, customizable redaction patterns, and a robust detection system that identifies and replaces sensitive information like API keys and passwords while preserving useful context. This enhances security by ensuring that potentially sensitive data is adequately managed prior to publication.

twistrs

2026-08-03 Rust ★ 135
Twistr is a Rust-based domain name permutation library that serves as a direct port of the well-known dnstwist tool, enabling fast and flexible permutational analysis of domain names. Its primary use case involves generating variations of a given domain to aid in identifying potential squatting or phishing attempts. Notable features include granular control over permutation algorithms, an allocation-free API for high throughput, and a core library designed for easy extensibility for command-line interfaces and other integrations.

zizmor-pre-commit

2026-08-03 Python ★ 64
The `zizmor-pre-commit` tool integrates the `zizmor` linter with the pre-commit framework, allowing users to enforce code quality checks before commits. Its notable features include easy configuration via `.pre-commit-config.yaml`, support for running the linter with autofix capabilities, and distribution as a standalone repository for seamless installation through prebuilt wheels from PyPI.

AntiScamBot

2026-08-03 Python ★ 13
The ScamGuard AntiScam Bot is a Discord bot designed to identify and ban scammers who target users with unsolicited commission offers. Its primary use case is to safeguard Discord communities by leveraging a shared ban list of verified scammers, supported by community reporting and a transparent operational framework. Notable features include the ability to configure the bot for local use with essential environment variables and the option to activate a publicly accessible API endpoint for custom bot instances.

codependence

2026-08-03 TypeScript ★ 22
Codependence is a tool designed to manage and enforce dependency versions across multiple programming environments—including Node, Python, Go, Rust, Docker, and GitHub Actions—using a single configuration file. Its primary use case is to maintain intentional versioning policies, ensuring that critical versions are both checked and updated according to specified rules, thus differentiating itself from traditional package managers and automated bots by running locally in scripts or CI environments. Notable features include the ability to pin specific dependencies while updating others, and a straightforward command-line interface for executing dependency checks and updates.

cyberismo

2026-08-03 TypeScript ★ 13
A security-as-code tool for making a difference in cybersecurity

marichu-kt

2026-08-03 ★ 34
The marichu-kt repository showcases a collection of personal projects mainly focused on various programming languages and technologies, including Python, Java, C#, and web development tools. The repository features projects such as cryptographic algorithms (ChaCha20-Poly1305-X25519) and interactive applications like a CAPTCHA system, vending machines, and slot machines. Notable features include detailed statistics on the creator's language proficiency and active calls for community support through stargazing.

pastoralist

2026-08-03 TypeScript ★ 107
Pastoralist is a tool designed to manage and document package manager overrides, specifically for npm and Yarn, by creating an audit trail of why each override is necessary. Its primary use case is to help developers maintain clarity on override decisions, ensuring that the reasons for such changes, their dependencies, and related security information are well-documented and accessible. Notable features include tracking the history of overrides, linking CVEs and severity details, and integrating with `patch-package` to enhance package maintenance.

secureCodeBox

2026-08-03 Go ★ 987
secureCodeBox is a Kubernetes-based toolchain designed for continuous security scanning of software projects, automating various security testing tools to facilitate ongoing application security. Its primary use case is to integrate into the development pipeline, allowing for early identification of security vulnerabilities, thereby enabling developers to address issues regularly rather than relying solely on periodic penetration testing. Notable features include its modular architecture, which offers flexibility in tool selection, and its ability to orchestrate automated security tests, making it suitable for projects with continuous delivery practices.

Syspulse-

2026-08-03 ★ 11
SysPulse is a lightweight Windows security monitor designed to provide instant alerts via Telegram for critical system events such as new processes, USB activity, and changes to Windows Defender status. It operates efficiently in the background, consuming under 30MB of RAM, and focuses on essential monitoring without unnecessary features or resource consumption. Notable functionalities include a startup checker, USB detection, and process monitoring, making it a useful complement to traditional antivirus solutions.

trufflehog

2026-08-03 Go ★ 27637
TruffleHog is a powerful tool for discovering, classifying, validating, and analyzing leaked credentials across various platforms, including Git repositories, chat applications, and logs. It can identify over 800 types of secrets, confirm their validity by checking if they are live, and provide in-depth analysis of commonly leaked credentials. Notable features include its comprehensive secret classification and validation capabilities, making it essential for maintaining secure access credentials.

yaklang

2026-08-03 Go ★ 632
YAK is a cybersecurity technology stack built around a domain-specific language (CDSL) designed for enhancing security infrastructure and vulnerability analysis. Notable features include a dedicated virtual machine (YakVM), strong typing with dynamic characteristics, and the ability to execute scripts across multiple platforms without extensive boilerplate code. This tool aims to simplify the development of security products and improve usability for non-specialists in the cybersecurity domain.

bromure

2026-08-03 Swift ★ 275
Bromure is a cybersecurity tool that enables secure, ephemeral computing on macOS by running browser sessions within disposable Linux virtual machines (VMs), ensuring that all user data is isolated and destroyed after each session. Additionally, Bromure Agentic Coding provides a sandboxed environment for AI coding agents, integrating a host-side MITM proxy that obfuscates credentials, implements supply-chain scanning, and detects prompt injections, thus enhancing the security of AI interactions. The tool's notable features include robust isolation, per-use credential scoping, and comprehensive session auditing, making it suitable for privacy-conscious developers and organizations.

docker-kali

2026-08-03 Dockerfile ★ 14
The leplusorg/docker-kali repository provides a multi-platform Docker container for Kali Linux, facilitating the deployment of a versatile penetration testing environment. Its primary use case is to enable security professionals to easily run Kali tools in isolated containers across different operating systems. Notable features include support for varying architectures, built-in software bill of materials (SBOM) generation, provenance tracking, and Sigstore integration for enhanced supply chain security.

findmytakeover

2026-08-03 Python ★ 178
Findmytakeover is a specialized tool designed to detect dangling DNS records within multi-cloud environments, scanning all DNS zones and associated infrastructure in cloud service providers. Its primary use case is to identify potential subdomain takeovers by pinpointing DNS records without existing infrastructure, enhancing security against unauthorized access and malicious activity. Notable features include configurable cloud provider support, comprehensive reporting, and dependencies tailored to different cloud environments, ensuring effective operational capability across major platforms.

hijagger

2026-08-03 Go ★ 306
Hijagger is a cybersecurity tool designed to identify hijackable packages in NPM and Python PyPI registries by checking for unregistered domains or MX records associated with package maintainers. Its primary use case is to facilitate the discovery of potential security vulnerabilities that can be reported to bug bounty programs. Notable features include automatic output logging, DNS and WHOIS checks, and a color-coded output based on download activity for NPM packages, though this feature is not available for PyPI due to API limitations.

infisical

2026-08-03 TypeScript ★ 29044
Infisical is an open-source secret management platform designed to centralize and synchronize secrets and configurations across teams and infrastructures, thereby preventing leaks. Notable features include a user-friendly dashboard for managing secrets, integration for syncing with popular platforms like GitHub and AWS, versioning, rotation, and the capability for dynamic secret generation. The tool aims to enhance accessibility and usability in security for development teams, streamlining the process of handling sensitive information.

qos

2026-08-03 Rust ★ 118
QuorumOS (QOS) is a specialized operating system designed for deploying applications within a Trusted Execution Environment (TEE) at cloud scale. It ensures secure computation by facilitating coordinated provisioning of a secure environment among multiple actors, employing a unique Quorum Key for data encryption and authentication. Notable features include deterministic builds using the StageX distribution and support for minimal, immutable Linux unikernel operations tailored for high-security use cases.

sbomify

2026-08-03 Python ★ 59
sbomify is a comprehensive Software Bill of Materials (SBOM) management tool that allows users to upload, manage, and share SBOMs and related documentation through a centralized platform, either self-hosted or via the provided web application. It supports multiple formats including CycloneDX and SPDX, integrates with GitHub Actions for automatic SBOM generation, and features robust compliance plugins while offering document management capabilities with version control and configurable access settings. Notably, it enables vulnerability scanning and employs workspace-based organization for efficient access and permission control.

syswarden

2026-08-03 Go ★ 329
SysWarden is an enterprise-grade Host Intrusion Detection and Prevention System (HIDS/HIPS) built entirely in Go, designed to protect critical Linux infrastructures. Its primary use case is to automate and enforce CIS Level 2 hardening, integrate global threat intelligence, and orchestrate dynamic network defense, enabling robust protection against both network and application-level threats. Notable features include support for advanced firewall orchestration, a memory-safe web application firewall daemon, and a focus on zero-trust execution, mitigating common vulnerabilities like OS command injection and memory corruption.

defcon-2017-tools

2026-08-03 Python ★ 96
The DEFCON CTF 2017 repository features a collection of tools developed for the DEFCON 25 Capture The Flag competition. It includes an assembler with custom macros, a binary patcher, flag encryption utilities, IDA plugins for disassembly viewing, and PCAP analysis tools. Notable features include enhanced disassembly capabilities and various utility scripts aimed at improving offensive security techniques.

AleJndCTF

2026-08-03 Python ★ 10
AleJndCTF is an open-source Capture The Flag (CTF) platform designed for competitive cybersecurity training, specifically in jeopardy-style formats as well as attack and defense scenarios. This tool enhances CTF event organization with features inherited from various forks of the original tinyctf-platform, enabling easy setup and customization for users. Notably, it supports scalable deployments via Flask and includes simple documentation for user guidance.

ancypwn

2026-08-03 Python ★ 154
Ancypwn is a CTF pwnable challenges environment helper that leverages Docker to provide a modular and isolated setup for debugging and exploiting vulnerabilities. It includes pre-packaged tools such as pwndbg, pwntools, and various disassemblers, with a flexible plugin system for backend and terminal options, facilitating seamless integration and execution of complex commands within a contained environment. Its primary use case is to streamline the process of interacting with CTF challenges while maintaining a consistent and manageable workspace.

Auto-AWD

2026-08-03 Python ★ 30
Auto AWD is a tool designed to automate the execution of payloads and submission of flags to a platform during competitive scenarios. Its primary use case is in automated gameplay for challenges or competitions, allowing users to configure game rules through a YAML file. Notable features include cross-platform compatibility (Windows, Linux, macOS) and an easy setup process using Python and pip.

awd-frame

2026-08-03 Python ★ 87
awd-frame is a Capture The Flag (CTF) framework designed to automate manual tasks during competitions, aiming to improve efficiency and maintain focus. It allows for batch SSH logins, password modifications, and command executions, along with semi-automated attack capabilities utilizing specified payloads and webshells for deploying backdoors. The tool supports both GET and POST methods for payload submission, although flag submission integration varies depending on competition configurations.

beard

2026-08-03 Python ★ 14
Beard is a tool designed to facilitate the tracking of progress for teams participating in Attack/Defense Capture The Flag (CTF) competitions, providing real-time insights into scoreboard data. It features parsing capabilities for various scoreboard types (specifically hackerdom and forcad), performance graphs for all teams with automatic scaling, and alerts via Telegram for significant events like flag loss and position changes. Additionally, it offers predictive analytics for scoring trends based on past performance and can be easily deployed using Docker.

blackhat-python

2026-08-03 Python ★ 30
The "blackhat-python" repository provides resources for a workshop focused on quick-prototyping scripts and tools for ethical hacking using Python. It emphasizes the development of custom hacking tools when existing solutions are insufficient, targeting beginners with basic programming concepts and practical exercises. The workshop content is inspired by the "Black Hat Python" book and aims to enhance participants' programming skills within the legal framework of cybersecurity.

blizzardwrap

2026-08-03 Python ★ 16
BlizzardWrap is a command-line interface (CLI) tool developed in Python for encoding and decoding data in various formats, including URL, Morse Code, and Base64 among others. Its primary use case is to facilitate quick and versatile transformations of text representations, making it useful for developers and cybersecurity professionals. Notable features include support for multiple encoding types, ease of installation, and a user-friendly help system.

brutelist

2026-08-03 Python ★ 13
Brutelist is a Python script that automates the creation of seed-based dictionary attack files, primarily used during Capture the Flag (CTF) competitions or penetration testing. It allows users to generate customized password lists by combining seed phrases from a seed list with common patterns specified in a template file. Notable features include support for customizable template patterns and the ability to output the generated dictionary to a specified file.

catana

2026-08-03 Shell ★ 17
CATANA is a command-line tool designed to filter wordlists based on specified password policies, enhancing the efficiency of password cracking activities. Its primary use case is to streamline the selection of potential passwords from large datasets, allowing users to customize output through various command-line options, including colored output and file redirection. Notable features include easy input and output management, succinct help documentation, and compatibility with tools like BlackArch Linux for straightforward installation.

CTF-RSA-tool

2026-08-03 Python ★ 521
CTF-RSA-tool is a Python and Sage-based utility designed to assist CTF participants in efficiently solving basic RSA challenges during competitions. It automates the identification of input parameters, selects appropriate attack methods, and provides multiple functionalities for generating public keys, dumping key details, and decrypting encrypted messages. Notable features include a variety of implemented attack methods, such as Fermat's factorization, Wiener's attack, and support for input via text files, enhancing usability for quick solutions to common RSA problems.

ctf-toolkit

2026-08-03 C ★ 34
ctf-toolkit is a specialized toolkit designed for assisting with Attack-Defense (AWD) and other Capture The Flag (CTF) offline competitions. Its primary use case revolves around providing necessary resources and functionalities to streamline participant engagement in CTFs, enabling efficient and effective challenge handling. Notable features include tools tailored for various aspects of CTF gameplay, enhancing the overall competitive experience.

CTF-Website-Template-2020

2026-08-03 JavaScript ★ 65
CTF-Website-Template-2020 is a static HTML template designed for hosting Capture the Flag (CTF) events, featuring essential pages such as Home, Login, Register, Challenges, Feedback, Leaderboard, and Instructions. Its primary use case is to provide a visually appealing and functional frontend solution for organizers while the backend functionality is still under development using the Django framework. Notable features include a user-friendly layout based on the Neon Glow theme and a structured design for easy customization and integration with backend services.

ctf4noobs

2026-08-03 ★ 19
ctf4noobs is a project designed to promote and educate the Brazilian community about Capture The Flag (CTF) challenges, aiming to increase participation in CTF competitions. It provides comprehensive resources including introductions to CTF concepts, styles, types of challenges, and practice platforms, facilitating learning and community engagement. Notable features include detailed documentation and guidelines for potential contributors to enhance the project collaboratively.

CTFsubmitter

2026-08-03 Python ★ 71
CTFsubmitter is a centralized flag submission service designed for use in Capture The Flag (CTF) competitions, which filters and manages flag submissions to prevent flooding with invalid entries. It features a REST API for submitting flags, stores submission statistics in a MongoDB database, and requires both a submitter and a worker instance for functionality. The tool operates using bottle.py and cherrypy, with an additional stats service built on tornado, allowing for real-time monitoring and management of flag submissions.

cybersecurity-ctf

2026-08-03 JavaScript ★ 17
The Cybersecurity CTF repository serves as a comprehensive catalog of frameworks, libraries, resources, and tutorials aimed at assisting both the creation and resolution of Capture The Flag (CTF) challenges in cybersecurity. It categorizes tools for various aspects of CTFs, including forensics, web challenges, and steganography, while also providing platforms to host competitions and resources for training and educational purposes. Notable features include a diverse array of project links, detailed sections for both creating and solving CTF challenges, and community-driven contributions to enhance resource accessibility.

KeyboardTraffic

2026-08-03 Python ★ 17
KeyboardTraffic is a tool designed for analyzing keyboard traffic packets, primarily used in CTF (Capture The Flag) competitions. It allows users to process and interpret captured keyboard data through a straightforward command-line interface. Notable features include the capability to handle various packet formats, facilitating post-analysis of keystroke data for security assessments.

LCGHack

2026-08-03 Python ★ 17
LCGHack is a command-line tool designed for generating pseudo-random numbers using the Linear Congruential Generator (LCG) algorithm. It allows users to input known values and customize parameters such as modulus, multiplier, and increment, facilitating easy calculations of the next values in the sequence. Notable features include customizable parameters and straightforward usage through a command-line interface.

LinEnum

2026-08-03 Shell ★ 13
LinEnum is a bash script designed for enumerating information on Linux machines, particularly useful during initial access assessments in OSCP Labs and Capture the Flag (CTF) scenarios. It streamlines the process of gathering system and network data without focusing on kernel vulnerabilities, making it an efficient tool for reconnaissance tasks. Notable features include ease of use and targeted information retrieval to aid in privilege escalation efforts.

magnetos

2026-08-03 Python ★ 25
Magnetos is a tool designed to enhance problem-solving efficiency in Capture The Flag (CTF) competitions by automating various tasks related to digital forensics and steganography. It features several command-line utilities, including a steganography solver, file format identifier, encoding detector, and automated resource downloader, enabling users to quickly analyze files, detect flags, and handle common challenges encountered in CTF events. Notable integrations include dependencies on tools like zsteg and stegdetect for comprehensive analysis capabilities.

NullCTF

2026-08-03 Python ★ 144
NullCTF is a Discord bot built with discord.py that facilitates collaboration for Capture The Flag (CTF) events within Discord servers by providing tools for team management and CTF participation. Notable features include commands for creating and archiving CTFs, managing challenges, and integrating with the CTFd platform for challenge data retrieval. The bot also supports commands for accessing CTFtime information, allowing users to track CTF countdowns and time left for ongoing competitions.

oscp-ctf

2026-08-03 Shell ★ 66
oscp-ctf is a collection of Bash scripts designed to streamline tasks for users engaged in OSCP labs, HackThebox, or Capture The Flag (CTF) competitions. Notable features include password cracking with John The Ripper, easy HTTP server setup, and customizable PHP reverse shell generation, among others, which enhance efficiency and convenience in penetration testing environments.

overflow-checker

2026-08-03 Python ★ 19
Overflow Checker is a utility designed to assess the vulnerability of simple binaries to basic buffer overflow attacks. It allows users to specify the program for analysis and the maximum number of bytes to test, making it customizable for different scenarios. Notable features include an easy-to-use command-line interface and the ability to demonstrate functionality with provided demo binaries.

PHPFun

2026-08-03 Python ★ 20
PHPFun is a code obfuscation tool that allows developers to write and execute PHP code using only six specific characters, inspired by techniques in other programming languages. Its primary use case is to create compact and obfuscated PHP scripts that maintain functionality while obscuring their logic. Notable features include support for PHP 7 and higher, and the ability to transform conventional PHP code into a highly condensed format without losing execution capability.

PICT-CTF-WEBSITE-FRONTEND

2026-08-03 HTML ★ 10
PICT-CTF-WEBSITE-FRONTEND is a frontend template designed for organizing Capture the Flag (CTF) events. It features multiple static pages such as Home, Login, Register, Challenge/Quests, Leaderboard, and an About/Rules page, providing a structured layout for participants and organizers. This template serves as a foundational framework for anyone looking to host their own CTF events, though it currently lacks dynamic functionality.

pwn-sandbox

2026-08-03 ★ 85
The pwn-sandbox tool was designed for testing vulnerabilities in a controlled environment, primarily for pwnable challenges. However, the repository has been removed to prevent abuse and protect competition, suggesting that it may have had features for simulating attack scenarios within a sandboxed context.

pwn-server

2026-08-03 Python ★ 17
pwn-server is an automated deployment tool designed for pwn challenges, utilizing containerization to isolate each challenge environment. It features token-based connection management, supports multiple flags per challenge, and automatically logs traffic and flag access while preventing resource exhaustion through fork bomb protection. The tool also allows customization of Docker images per challenge, facilitating diverse runtime requirements.

PwnSandboxForCTF

2026-08-03 Python ★ 97
PwnSandboxForCTF is a ptrace-based sandbox designed specifically for Capture The Flag (CTF) challenges operating in an AWD mode. It restricts child processes from performing certain actions, particularly those involving files with 'flag' in their name, and illegal system calls, providing support for both ELF32 and ELF64 binaries including Position Independent Executables (PIE). Notable features include its simple installation via pip, the generation of a sandboxed binary, and built-in support for the pwntools library.

pwntools-r2

2026-08-03 Python ★ 22
pwntools-r2 integrates the `radare2` reverse engineering framework with `pwntools`, allowing for streamlined debugging of exploits in a Python2 environment. Its primary use case is to facilitate the development of exploits by automating interactions with `radare2` commands, particularly within a `tmux` session. Notable features include support for executing `radare2` commands within Python scripts and handling process arguments via temporary payload files.

rbuster

2026-08-03 Rust ★ 18
Rbuster is a directory brute-forcing tool designed for web application security testing, enabling users to discover hidden directories and files on a web server. Key features include customizable user agents, cookie handling for authentication simulation, support for various HTTP status codes to filter responses, and the ability to utilize wordlists for brute-forcing directory paths. The tool is implemented in Rust and can be easily installed via Cargo or on Kali Linux.

SCUCTF-CMS

2026-08-03 JavaScript ★ 10
SCUCTF-CMS is a content management system designed specifically for the Sichuan University Capture The Flag (CTF) Association. Its primary use case is to facilitate the organization and management of CTF events and content. Notable features include customizable content handling tailored for CTF activities.

shellcat

2026-08-03 C# ★ 33
ShellCat is a centralized management tool for handling reverse shells, allowing multiple shells to connect to a single listening port, simplifying the process of managing numerous connections. Its primary use case is to streamline the execution of commands across multiple reverse shells simultaneously, enhancing operational efficiency in security operations. Notable features include the ability to send commands to all connected shells at once.

soma

2026-08-03 Rust ★ 23
Soma is a cross-platform CTF problem container management tool that facilitates the creation, distribution, and execution of capture-the-flag (CTF) problems for both problem authors and solvers. Notable features include simple command-line usage for downloading and running CTF challenges, as well as support for easy configuration through a `soma.toml` file, which allows problem setters to define the execution environment and file permissions. The tool requires Docker to function and aims to streamline the CTF experience by providing reproducible environments for problem-solving.

Stegall

2026-08-03 Python ★ 13
Stegall is an automation tool designed to facilitate the use of popular steganography tools, primarily targeted towards participants in Capture The Flag (CTF) challenges. It encompasses a suite of 12 key tools, including Steghide and Exiftool, and provides streamlined commands for tasks such as extracting hidden text, analyzing metadata, and detecting concealed data within various file formats. The tool requires Python 2.7 and simplifies the steganographic process by automating tool suggestions, installations, and executions based on user inputs.

tankigen

2026-08-03 Python ★ 14
Tankigen is a command-line tool for generating a variety of reverse shell payloads, drawing from established cheat sheets by PayloadsAllTheThings and Pentestmonkey. It supports multiple scripting languages such as Bash, Python, and PowerShell, allowing users to easily create reverse shells for capture the flag (CTF) challenges and penetration testing scenarios. Notable features include the capability to list available shell types and generate all shells simultaneously, enhancing the tool's flexibility for security professionals.

vulnlab

2026-08-03 Python ★ 23
vulnlab is a tool designed to manage an OSCP-like lab environment by providing a web control panel for resetting virtual machines. Utilizing Flask and the pyvmomi library, it allows users to easily reset configured VMs through a simple web interface, with output accessible via HTTP requests. Notable features include the ability to configure VM settings for non-persistent disk changes and web-based controls for VM lifecycle management.

web-ctf-help

2026-08-03 Python ★ 20
Web-CTF-Help is a set of Python scripts designed for assisting participants in web Capture The Flag (CTF) competitions by scraping relevant information from target websites. Its primary use case involves extracting HTML comments, JavaScript sources, image sources, and interesting HTTP headers, with features allowing for selective output based on user-defined parameters, including cookie management for authenticated requests. Future enhancements may include functionality for downloading extracted resources.

web-ctf-labs

2026-08-03 HTML ★ 10
The "web-ctf-labs" repository is a collection of web-based Capture the Flag (CTF) challenges designed for cybersecurity training and skill development. It features diverse challenges, including Host Header Injection, Server-Side Template Injection in Flask, and SQL Injection, among others, providing a practical environment for enhancing web security knowledge. Notable features include a variety of challenge types that cater to different aspects of web vulnerabilities and security testing.

wiz-search

2026-08-03 Python ★ 10
Wiz-search is a Python-based offline search tool designed for the Mac version of Wiz Note, enabling full-text search capabilities even without internet access. It analyzes the application's data storage structure, which uses SQLite for metadata and ZIP compression for notes, and employs Whoosh and Jieba for indexing and searching. Key features include the ability to create and update an index, facilitating seamless offline access to notes during situations such as offline CTF competitions.

ctf_platform

2026-08-03 JavaScript ★ 61
The Sieberrsec CTF Platform is a Jeopardy-style Capture The Flag (CTF) tool designed for training and educational purposes, built using ReactJS and NodeJS. It features an organized challenge categorization system, dynamic scoring, live leaderboards, and user role management, allowing for seamless participation and challenge creation, with added functionalities such as markdown support for descriptions and integrated email verification. Ideal for both individual and team-based cybersecurity training exercises, the platform enables easy deployment and management through Docker.

CTF-Challenges

2026-08-03 C ★ 22
CTF-Challenges is a repository designed for educational purposes, featuring a collection of CTF (Capture The Flag) challenges and guides for setting up a Linux user space pwn environment. Its primary use case is to aid users in understanding and practicing exploitation techniques through structured challenges, while also providing instructional materials to enhance learning. Notable features include the accessibility of various challenges and comprehensive setup notes to facilitate an effective learning environment.

ctf-collab

2026-08-03 Shell ★ 72
ctf-collab is a collaborative programming environment designed for solving Capture The Flag (CTF) challenges directly within GitHub Actions. This tool allows users to create ephemeral, session-based environments where they can work together in real-time, utilizing either a secure Tor connection or a lower-latency ngrok connection. Notable features include integration with git for data saving, a configurable tmux setup for multiple sessions, and easy deployment from a GitHub template repository.

CTF-nc-docker

2026-08-03 Python ★ 40
CTF-nc-docker is a Dockerized environment designed for hosting Capture The Flag (CTF) challenges, supporting various challenge types including Python, Node.js, and binary challenges. The tool facilitates easy configuration through `global.json` and challenge-specific `config.json`, allowing users to manage resources, ports, and dependencies effectively. Key features include a download server for challenge files, a web-based netcat service, and logging capabilities for monitoring challenge execution.

CTF-Tools

2026-08-03 Python ★ 18
CTF-Tools is a Python-based suite designed for Capture The Flag (CTF) competitions and penetration testing practice, offering functionality for repeating HTTP requests and robust password cracking. Its notable features include a versatile password cracker that supports brute force and dictionary attacks across various hashing algorithms (MD5, SHA-1, SHA-256, SHA-512, NTLM, and bcrypt), with the ability to generate custom hash dictionaries and a Cascade option for iterating through hash types.

CTF-Writeup

2026-08-03 Python ★ 10
The CTF Writeup repository compiles a series of challenge write-ups primarily for web and miscellaneous categories within Capture The Flag (CTF) competitions. It serves as a resource for participants looking to understand solutions and methodologies applied in various CTF events, featuring detailed documentation for each specific competition. Notable features include links to individual event pages on Ctftime for further exploration.

ctfhub

2026-08-03 Python ★ 82
CTFHub is a collaborative platform designed for Capture The Flag (CTF) teams to manage and engage with challenges efficiently. It features a Docker-based setup, integration with HedgeDoc for markdown note-taking, private CTF capabilities for individual learning, and additional tools like Discord notifications and Jitsi for video chats, facilitating enhanced team communication and project management.

ctfup

2026-08-03 TypeScript ★ 13
ctfup is a command-line interface (CLI) tool designed to facilitate the deployment of Capture The Flag (CTF) challenges onto a Kubernetes cluster for csictf. It utilizes an npm package structured to streamline the challenge setup process, requiring specific directory and configuration file structures, and is built on NodeJS and TypeScript, leveraging Google Kubernetes Engine. Notable features include automated deployment based on challenge specifications stored in YAML files, making it ideal for educational and competitive hacking environments.

DailyCTFRobot

2026-08-03 Python ★ 11
DailyCTF Robot is a Python-based Discord bot designed for hosting and managing Capture The Flag (CTF) challenges, providing an organized platform for both organizers and participants. It features dynamic bot presence, role-based management, an intuitive user interface, versatile command options, event logging, and security protocols, ensuring a tailored and secure experience for different servers. Additionally, the bot facilitates continuous improvement through user feedback after challenge submissions.

example-ctf-challenge

2026-08-03 Python ★ 34
The Example Ethereum CTF Challenge repository provides a framework for creating and hosting Capture The Flag (CTF) challenges related to Ethereum, utilizing the underlying architecture developed by Paradigm. It allows users to deploy private blockchain instances for various challenges and includes features for interacting with these instances via network connections. Notable functionalities include Docker integration for easy setup and configuration, as well as tools for administering challenge instances and obtaining flags.

hydrogen

2026-08-03 Python ★ 18
Hydrogen is a versatile tool designed for Capture The Flag (CTF) competitions, offering functionalities like encoding conversions, file transformations (to hexadecimal/Base64), and classical cipher decoding. Notable features include an HTTP proxy for traffic analysis and request replay capabilities, as well as built-in decryption tools for AES and RSA, all integrated within a user-friendly web interface utilizing Vue and Tornado in a Python environment.

Koth-THM

2026-08-03 ★ 14
THM-Koth is a cheat-sheet repository designed to assist users in the Koth (King of the Hill) section of Try Hack Me (THM). Its primary use case is to reduce the effort required to compete in challenges by providing strategic insights rather than complete step-by-step solutions. Notable features include a focus on fair play, advising against the use of automated processes, and promoting skill development over simply winning.

non-alphanumeric-webshell

2026-08-03 PHP ★ 21
The Non-Alphanumeric WebShell in PHP is a tool designed to execute code on a server by exploiting certain user input vulnerabilities, particularly targeting web application firewalls (WAFs) that filter common characters. Its notable feature is the ability to construct a functioning shell without relying on blocked alphanumeric characters, using techniques such as XOR operations and leveraging PHP's handling of arrays and string conversions. This tool serves as a proof of concept for code execution bypass methods in security testing scenarios.

png-parser

2026-08-03 Python ★ 102
png-parser is a Python tool designed for analyzing PNG files by displaying their various chunks, such as header, palette, and textual content. Its primary use case includes inspecting the integrity and structure of PNG images through features like chunk data retrieval, CRC validation, and hex output. The tool offers command-line options for printing specific chunk information, displaying images, and saving corrected versions of PNG files, making it valuable for developers and analysts dealing with image processing.

recursive-compression

2026-08-03 Python ★ 11
The recursive-compression tool facilitates the recursive compression and decompression of nested archive files utilizing multiple algorithms supported by the Patool library. It offers customizable options for character sets, rounds of compression, and progress tracking, while notably lacking support for password-protected archives. This tool can be particularly useful in scenarios requiring the management of complex archive structures in batch processing or automation tasks.

RTB-CTF-Framework

2026-08-03 Python ★ 110
The RTB-CTF Framework is a lightweight, efficient Capture The Flag (CTF) management tool built with Flask, designed to facilitate the organization and execution of CTF events. It offers notable features including real-time scoreboard tracking, configurable settings for customization, user account management, and robust administrative controls, making it suitable for scalable CTF deployment in various environments like Heroku and Railway. The framework is user-friendly, providing a simple user registration process and extensive logging capabilities, ensuring a comprehensive management experience for CTF organizers.

stegano-tools

2026-08-03 ★ 46
Stegano-tools is a collection of steganography utilities designed to manipulate images and text via various encoding techniques, specifically focusing on Least Significant Bit (LSB), Pixel Indicator Technique (PIT), and Pixel Value Differentiator (PVD) methods. This toolkit enables users to encode and decode hidden messages within images, facilitating applications in data concealment and digital forensics. Noteworthy features include support for Base32/64 encoding and a CLI for easy access to functionalities.

tmpleak

2026-08-03 Pawn ★ 86
TMP Leak is a tool designed for Capture The Flag (CTF) competitions and wargames that automates the process of discovering temporary directories associated with users and teams. It systematically crawls team data from CTFTime and generates a wordlist to search for potential vulnerabilities. Notable features include support for both Python 2 and Python 3, and a straightforward command-line interface for ease of use.

webgrep

2026-08-03 Python ★ 114
WebGrep is a versatile command-line tool designed to search web pages and their associated resources for specified patterns, enhancing traditional grep functionality by incorporating advanced features such as JavaScript deobfuscation, CSS unminifying, and image OCR. It allows users to grep through HTML, scripts, and stylesheets, offering various regex options and resource download capabilities, while also emphasizing efficiency with support for temporary file management. This tool is particularly useful for cybersecurity professionals and developers conducting web security assessments or searching for specific content across multiple web resources.

Windows-Hardening-CTF

2026-08-03 PowerShell ★ 31
The Windows-Hardening-CTF is a PowerShell script designed to enhance the security posture of Windows devices by implementing a series of hardening measures. Its primary use case is to mitigate various attack vectors by disabling unnecessary features, enforcing security logging, and applying best practices recommended by the NSA. Notable features include enabling Windows Defender protections, configuring AppLocker, and disabling legacy protocols such as SMB v1 and PowerShell v2.

AYO

2026-08-03 Python ★ 10
AYO is an efficient Capture The Flag (CTF) environment manager designed to simplify the setup and management of critical variables such as remote hosts, domains, and URLs. Its notable features include the ability to create and manage multiple "boxes," easily configure essential data, and retrieve specific information through simple command-line operations. AYO streamlines the CTF process, making it accessible for users to handle environment variables and configurations quickly.

capture_the_flag

2026-08-03 Python ★ 18
Capture The Flag (CTF) is a comprehensive resource repository aimed at facilitating the learning of cybersecurity techniques through hands-on challenges and tools. It includes curated educational links for fundamental Linux skills, web exploitation techniques, and cryptography, while also providing access to various cryptographic tools for encoding and decoding. Notable features include links to prominent learning platforms, video channels for continued education, and tools for steganography and hash cracking, essential for engaging with CTF competitions.

CTF-Game

2026-08-03 PHP ★ 18
The Pixels Camp Security CTF Dashboard is a web-based tool designed to manage Capture The Flag (CTF) security competitions, facilitating both participant engagement and organizer oversight. Key features include a public dashboard to display real-time CTF progress, a private area for teams to submit answers and track their performance, as well as a backoffice for administrative tasks, including logging submissions and issuing announcements. The tool allows for seamless competition management through start/stop controls, pause functionality, and team token authentication.

CTF-Heaven

2026-08-03 Python ★ 298
CTF-Heaven serves as a resource hub for CTF (Capture The Flag) participants, offering a collection of security lists, cheatsheets, and wordlists that aid in penetration testing and security assessments. Notable features include organized links to essential tools like SecLists and PayloadsAllTheThings, as well as a dedicated section for esoteric programming languages, which adds a unique element for enthusiasts exploring unconventional coding challenges.

ctfify

2026-08-03 Go ★ 12
ctfify is a command-line tool designed to streamline the downloading and management of Capture The Flag (CTF) challenges. It allows users to efficiently search for challenges based on name, category, or tags, facilitating quick downloads to local machines. Notable features include an easy-to-use interface and the capability of handling multiple challenges with minimal commands.

first-strike-alert

2026-08-03 JavaScript ★ 14
First Strike Alert is a CTFd integration tool designed to announce "first blood" achievements during capture-the-flag competitions with real-time audio-visual notifications. Its notable features include automatic sound playback, fullscreen announcements, a cyberpunk-themed interface, and live tracking of team statistics and first bloods. The tool polls the CTFd API for updates every five seconds, ensuring instantaneous notifications, while its responsive design allows for usability across various display sizes.

forthectf

2026-08-03 ★ 48
The "forthectf" repository is a curated collection of cybersecurity tools specifically assembled for use in Capture The Flag (CTF) competitions. It encompasses a wide array of categories including cryptography, cracking, steganography, and general forensics, featuring notable tools such as John The Ripper and Hashcat for password cracking, and various tools for encryption and steganalysis. This resource is intended for educational purposes, with users encouraged to contribute updates and fixes to the list of tools.

hackme

2026-08-03 HTML ★ 21
HackMe is a Capture The Flag (CTF) tool designed for Android devices using Termux, enabling users to participate in cybersecurity challenges. Notable features include a simple setup process through bash scripts and a straightforward interface for executing CTF tasks. Primarily aimed at individuals looking to enhance their penetration testing skills in a controlled environment.

LibcSearcher3

2026-08-03 Shell ★ 14
LibcSearcher3 is a Python tool designed for Capture The Flag (CTF) competitions, facilitating the search for function offsets in the C standard library (libc) when a function address is leaked. Its notable features include the ability to initialize a libc database, add constraints for more accurate results, and query multiple libc versions through a command-line interface or programmatically. This tool leverages the libc-database for efficient lookups and is aimed at reducing the time spent manually verifying common libc versions.

mkctf

2026-08-03 Python ★ 117
mkCTF is a framework designed to facilitate the creation and management of jeopardy-style Capture The Flag (CTF) challenges, employing a configurable structure for streamlined integration and deployment on CTF infrastructure. Its notable features include the mkctf-cli tool for repository manipulation and challenge management, as well as the mkctf-monitor for regular health checks and reporting, enhancing automation in the challenge deployment process. The framework is tailored for Python environments and emphasizes security protocols for handling challenge data.

S4DFarm

2026-08-03 Python ★ 152
S4DFarm is a modified version of the DestructiveFarm tool designed for automated server management and orchestration in a competitive environment. Its primary use case involves facilitating multiplayer game server deployments, leveraging Docker for containerization, with notable features including customizable configurations for server settings and secure password management.

stegsolve

2026-08-03 ★ 12
Stegsolve v1.3 is a steganography analysis tool designed for extracting and manipulating hidden data within images. Its primary use case includes visualizing different bit planes, extracting data, analyzing file formats, and solving stereograms, alongside features such as a frame browser for animated images and image combination capabilities. Notably, it also offers basic file recovery analysis for corrupted images while providing comprehensive functionality for steganographic challenges.

TryHackMe

2026-08-03 Shell ★ 44
TryHackMe is a cybersecurity training tool that provides structured learning paths for users to develop their skills in various domains such as penetration testing and cyber defense. It features hands-on modules and challenges that allow learners to practice offensive and defensive security techniques, offering certifications upon completion of specific tracks. Notable capabilities include the ability to quickly download and execute training scripts, facilitating an interactive learning experience.

yaCTFpl

2026-08-03 Ruby ★ 25
yaCTFpl is a structured CTF (Capture The Flag) playbook designed to compile common attack and reconnaissance techniques into workflows, organized under a three-part methodology: Enumerate, Exploit, and Post-Exploit. This tool aims to fill the gap in existing resources by emphasizing process and methodology rather than just a list of commands, making it particularly useful for those familiar with command-line operations in Kali Linux or Parrot. Additionally, the project supports PDF generation for offline reading, enhancing its accessibility as a reference manual.

zio

2026-08-03 Python ★ 395
zio is a versatile I/O library designed for exploitation development, offering a unified interface for interacting with local processes and remote TCP sockets. Its notable features include support for both Python 2 and 3, a self-contained single-file installation without external dependencies, and simplified interaction with processes and networks, making it easy to switch between local and remote exploitation workflows.

asn1template

2026-08-03 Perl ★ 25
ASN.1 Template is a Perl-based tool designed to convert DER or PEM encoded ASN.1 structures into a human-readable textual format suitable for modifications and subsequent encoding via OpenSSL's ASN1_generate_nconf(3) function. Key features include support for processing multiple concatenated ASN.1 structures and options for simplified labeling and unwrapping of top-level sequences, enabling streamlined ASN.1 structure manipulation without the need for compilation.

axion

2026-08-03 Python ★ 14
Axion is a versatile toolkit designed for Capture The Flag (CTF) competitions that allows users to control various input/output operations of its integrated tools, streamlining the CTF experience. It is compatible with several popular Linux distributions and requires Python 2.7, enhancing accessibility for cybersecurity practitioners. Notable features include easy installation via a script and a user-friendly command-line interface for launching functionalities.

cheb3

2026-08-03 Python ★ 45
cheb3 is a web3 Capture the Flag (CTF) tool built on the web3.py library, designed to simplify interactions with Ethereum smart contracts. Its primary use case is to facilitate the development of exploits and solutions for blockchain-based challenges, featuring streamlined transaction operations and the ability to load compiled smart contract ABIs efficiently. Notable features include a user-friendly connection interface and utility functions for managing account and contract interactions, making it suitable for both novice and experienced CTF participants.

CloverSec-CTF-Build-Dockerizer-skill

2026-08-03 Python ★ 30
CloverSec-CTF-Build-Dockerizer is a specialized tool designed for generating Docker containers tailored for Capture The Flag (CTF) competitions and vulnerability assessment environments. Its primary use case focuses on automating the conversion of challenge attachments, source codes, and specific directories into Docker images that comply with validated competition platforms, utilizing a structured workflow that significantly reduces manual intervention and uncertainty in the build process. Notable features include stage-specific document handling, improved token efficiency, and automated validation checks, which collectively enhance the operational flow and maintain the quality of deliverables.

ctf-dl

2026-08-03 Python ★ 20
ctf-dl is a versatile command-line tool designed for downloading challenges from multiple Capture The Flag (CTF) platforms, including CTFd, rCTF, and HTB. Its key features include the ability to download all challenges, apply filters by category or status, and organize challenges using customizable Jinja2 templates, enhancing both usability and organization for CTF participants.

ctfcli

2026-08-03 Python ★ 214
ctfcli is a command-line tool designed for managing Capture The Flag (CTF) events and challenges, integrating seamlessly with the CTFd REST API for challenge deployment. It features capabilities to create event repositories, add and sync challenges from various sources, deploy services, and verify challenge integrity, all while offering a REPL interface and tab completion for enhanced usability. As an alpha-level project, it emphasizes a modular structure with plugin support for custom commands and encourages users to monitor updates closely.

CTFNote

2026-08-03 TypeScript ★ 596
CTFNote is a collaborative tool designed for Capture The Flag (CTF) teams to efficiently organize their tasks and communications. It features easy deployment via Docker, supports HTTPS with Nginx configuration, and includes integrated Discord bot functionality for enhanced team coordination. Notable aspects include user-friendly setup, administrative control for initial accounts, and customizable support for voice channels in Discord.

Eruditus

2026-08-03 Python ★ 77
Eruditus is a Python-based Discord bot designed to facilitate capture the flag (CTF) competitions by streamlining team collaboration and enhancing user experience. Key features include managing channels, tracking CTF progress and member participation, and offering utilities for system calls, encoding schemes, and classic ciphers. The bot also supports direct integration with CTF platforms like CTFd and rCTF, allowing users to submit flags, view leaderboards, and automate account management.

klodd

2026-08-03 JavaScript ★ 44
Klodd is a deployment service designed for facilitating Capture The Flag (CTF) competitions by allowing teams to create and manage on-demand instances of CTF challenges. Its primary use case is to streamline the setup and access of challenge environments for teams during competitions. Notable features include easy challenge definition creation and per-team instance management, enhancing the competitive experience.

PwnBox

2026-08-03 Python ★ 50
PwnBox is a container-based environment management tool that simplifies the setup and debugging of Linux pwn (exploitation) environments using Docker. It provides essential tools such as pwndbg, pwntools, and various disassemblers, allowing users to run, list, attach to, and manage pwn environments effortlessly through command-line operations. Additionally, it features the MacOS Subsystem for Linux (MSL), which enables seamless integration and persistence of a Linux environment on macOS, enhancing workflow efficiency.

pwnybot

2026-08-03 Python ★ 10
PWNYBOT is a Discord bot designed for managing channels and roles within a server, tailored for Capture The Flag (CTF) events and community engagement. It enables automated channel organization, role assignment, and thread management, enhancing server functionality for security enthusiasts. Notable features include permissions management, support for multiple guilds, and the ability to configure CTF-related channels and roles via a simple `.env` file setup.

python-tinyscript

2026-08-03 Python ★ 56
TinyScript is a Python library designed for rapidly developing command-line interface (CLI) tools with minimal code. It simplifies the process by providing a proxy parser for argument handling, a preconfigured logger, and enhancements to common libraries, all while adhering to the DRY and KISS principles, allowing users to focus on the core functionality of their scripts. This development kit serves as an alternative to heavier frameworks by streamlining CLI tool creation without imposing rigid paradigms.

rctf

2026-08-03 TypeScript ★ 114
rCTF is a versatile platform designed for hosting cybersecurity capture-the-flag (CTF) competitions, facilitating straightforward deployment without vendor lock-in. It operates as a unified bundle with customizable integrations, allowing event organizers to select and modify service providers based on specific needs. Key features include a common configuration format, easy setup through Docker, and a supportive user community for assistance and discussions.

roppy

2026-08-03 Python ★ 27
Roppy is a pwn toolkit designed to facilitate interactions with local processes and networks during exploitation tasks, simplifying the process of pwn challenges. It features a ROP module in active development that leverages symbolic execution for generating ROP chains, aiming to automate and accelerate the exploitation of simpler challenges. The toolkit incorporates various third-party libraries, including pyelftools for ELF file analysis, Keystone for shellcode assembly, and Capstone for disassembly.

sigBits

2026-08-03 Python ★ 40
sigBits is a Python-based steganography significant bits image decoder designed to extract hidden data from images, making it particularly useful for CTF challenges and steganalysis. It features versatile extraction capabilities from LSB, MSB, or custom bit positions, supports RGB channel permutation reading, and offers a bruteforce mode to test all RGB permutations. The tool is equipped with a simple command-line interface for easy usage and custom output naming.

sshchecker

2026-08-03 Go ★ 23
sshchecker is a dedicated SSH brute-forcing tool designed to test SSH login credentials against a list of IP addresses. Its primary use case is for security assessments to identify vulnerable systems by attempting logins using specified usernames and passwords from file inputs. Notable features include the ability to process multiple IP addresses in one go and a straightforward command-line interface for ease of use.

StegOnline

2026-08-03 TypeScript ★ 389
StegOnline is a web-based tool for analyzing and manipulating image files using LSB (Least Significant Bit) steganography techniques. It allows users to browse image bit planes, extract and embed data, and view PNG chunk information, all while being an open-source application built as a single-page Angular 7 application. Notable features include the ability to hide images within other images, access color palettes, and a commitment to data privacy as no image data is stored or transferred.

Typhon

2026-08-03 Python ★ 362
Typhon is an open-source tool designed for automating the solution of Python jail (pyjail) challenges, eliminating the need for extensive manual analysis. Key features include a collection of hundreds of gadgets and common bypass methods, as well as functions for various tasks such as remote code execution and file reading, all implemented without third-party dependencies. The tool can be utilized via a command-line interface or a web UI, making it accessible for interactive use in a range of scenarios.

bountycatchremix

2026-08-03 Python ★ 29
BountyCatch Remix is a Python-based domain management tool designed for security researchers and penetration testers involved in bug bounty programs. It enhances the original bountycatch.py script with features such as domain validation, automatic duplicate detection, project-based organization, and Redis-backed storage for optimal performance. Key capabilities include bulk domain import, multiple output formats, and advanced logging and error handling, making it a versatile resource for managing and analyzing domain lists efficiently.

fback

2026-08-03 JavaScript ★ 65
FBack is a command-line tool designed for generating target-specific wordlists to aid in fuzzing backup files. Its primary use case is for security professionals and penetration testers, featuring customizable pattern generation using URL components, date ranges, and various extensions for efficient wordlist creation. Notable features include fast processing, flexible JSON configuration, and the ability to support multiple sources for wordlists and extensions, optimizing it for diverse testing scenarios.

ghmon

2026-08-03 Python ★ 31
ghmon is a command-line security scanning tool designed to identify leaked secrets in GitHub and GitLab repositories by utilizing TruffleHog for in-depth scanning. Its primary use case is for DevOps and security teams to maintain secure code practices through automated discovery of repositories, continuous monitoring, and multi-platform notifications. Notable features include intelligent filtering of findings, automated token rotation, and comprehensive logging capabilities, making it suitable for both one-time scans and ongoing security assessments.

grep-backURLs

2026-08-03 Go ★ 41
grep-backURLs is an automated web security tool designed for extracting sensitive information during bug hunting by enumerating subdomains and analyzing Wayback Machine URLs. It leverages the subfinder tool for subdomain discovery and utilizes grep to filter results based on user-defined keywords, providing outputs in HTML, JSON, and Markdown formats. Key features include customizable configurations, concurrency control, and automatic report generation, effectively streamlining the process of credential discovery.

JS-endpoint-extractor

2026-08-03 JavaScript ★ 11
JS-endpoint-extractor is a JavaScript tool designed to extract endpoints from minified scripts by utilizing a bookmarklet. Users can easily add a bookmark, paste the minified URL, and activate the bookmark on a webpage to retrieve the JavaScript endpoints, streamlining the process of analyzing web scripts for security or development purposes. Notable features include user-friendly bookmark integration and minimal setup requirements.

stalker

2026-08-03 TypeScript ★ 91
Red Kite is an Attack Surface Management (ASM) tool designed for security professionals to automate and streamline reconnaissance operations while providing extensive customization options. Its Kubernetes-based architecture supports horizontal scaling, ensuring robust performance, and it features an API for integration with third-party tools to facilitate automated data consumption and sharing.

ultimate_bughunter_tools

2026-08-03 Python ★ 47
The Ultimate Bug Hunting Tools repository provides a comprehensive script that automates the installation of 50 popular tools utilized in bug bounty programs for vulnerability assessment. It features a diverse range of functionalities, including reconnaissance, exploitation, and information gathering, through tools like Amass, EyeWitness, and WPScan. This facilitates a streamlined approach for security researchers to efficiently set up their bug hunting environment with essential tools.

url-status-checker

2026-08-03 Python ★ 50
Status Checker is a Python-based tool designed to evaluate the HTTP status of multiple URLs or domains, categorizing them according to their response codes. It features asynchronous processing for enhanced speed, automatic redirection following, and capabilities to log results, which can be visually represented with color-coded output. The tool operates via a command-line interface, facilitating easy access and output management.

writeup-miner

2026-08-03 Python ★ 149
Writeup-Miner is a versatile tool that scrapes new RSS feeds and stores them in a MongoDB database or a text file while providing real-time notifications through Telegram or Discord. Its notable features include keyword filtering, an easy command-line interface, and support for multiple storage methods, making it ideal for security researchers and technology enthusiasts looking to stay current with Medium content.

web3-bug-bounty-hunting-ai-skills

2026-08-03 ★ 129
The web3-bug-bounty-hunting-ai-skills tool equips security researchers with an extensive knowledge base for smart contract auditing, leveraging insights from thousands of real-world reports and reproductions. It integrates with AI models like Claude Code, streamlining the bug hunting process through predefined templates, target scoring systems, and detailed methodologies covering ten primary bug classes. Notably, the repository includes a comprehensive grep arsenal, proof of concept (PoC) templates, and case studies, allowing hunters to efficiently identify vulnerabilities in blockchain applications.

awesome-rtc-hacking

2026-08-03 ★ 550
Awesome Real-time Communications Security is a comprehensive resource repository intended for researchers and practitioners focusing on the security of VoIP, WebRTC, and VoLTE technologies. It provides an organized collection of tools, papers, and educational materials that facilitate penetration testing and vulnerability assessment in real-time communication systems. Notable features include categorization of open-source and commercial tools, along with continuous updates to ensure relevance and accessibility of the resources.

claude-code-deepseek

2026-08-03 Vim Snippet ★ 27
Claude Code DeepSeek is a command-line interface tool designed to interact with DeepSeek's Anthropic-compatible API, specifically aimed at security researchers and bug bounty hunters. It supports headless operation, allowing automation on VPS without OAuth, and features two model options for varying workloads—`deepseek-v4-pro` for complex reasoning and `deepseek-v4-flash` for faster, background tasks. The tool facilitates seamless integration into CI pipelines, offering cost-effective usage with a pay-per-token model, devoid of rate limits inherent to traditional subscriptions.

Gpt-Agreement-Payment

2026-08-03 Python ★ 2228
Gpt-Agreement-Payment is an end-to-end replay tool designed for automating the subscription process of ChatGPT Plus and Team through various payment pathways, including Stripe Checkout, PayPal, GoPay, and QRIS. It incorporates features such as a visual solver for hCaptcha, anti-fraud empirical data collection, and a concurrent worker system for handling multiple OTP requests efficiently. This tool is primarily aimed at CTF and bug bounty environments, requiring adherence to strict legal usage guidelines.

hackerlibrary.github.io

2026-08-03 CSS ★ 12
Hacker Library is an online platform designed specifically for hackers to discover and access a curated collection of essential books. Its primary use case is to facilitate the exploration of top literature in hacking and cybersecurity, promoting knowledge sharing within the community. Notably, the project emphasizes ease of access and organization, making it simple for users to find valuable resources.

awesome-molt-ecosystem

2026-08-03 Dockerfile ★ 62
The Awesome Molt Ecosystem is a comprehensive framework designed to map the financial flow within the AI-agent economy, offering insights into various monetization strategies across over 230 platforms. Notable features include the tokenguard API with 81 data routes covering crucial DeFi metrics and automated endpoint discovery via CDP Bazaar, facilitating efficient and cost-effective data access without reliance on paid APIs. This tool emphasizes the importance of owning both data endpoints and distribution channels to maximize potential revenue.

bbradar.io

2026-08-03 ★ 20
bbradar.io is a comprehensive platform for discovering and managing public bug bounty programs across 24 Web2 and Web3 platforms. Its primary use case is to assist security researchers in prioritizing opportunities based on program intelligence, tracking GitHub repository changes, and receiving real-time alerts through multiple channels. Notable features include Program Opportunity Tags, detailed target intelligence scores, GitHub commit detection, and customizable notification rules, enhancing the overall research and engagement experience.

instagram-persisted-query-diff

2026-08-03 ★ 15
This repository provides a dataset of version-to-version diffs of Instagram's internal API schemas sourced from the Android application. It supports security and bug bounty research by enabling users to monitor changes, track API evolution, and analyze differences, with each entry detailing added, removed, and modified operations between consecutive versions. The dataset is structured for easy access to the diffs, ensuring accurate chronological comparison based on version codes and names.

leaklens

2026-08-03 Go ★ 62
LeakLens is a web-aware secrets scanner designed to detect sensitive information across various sources including source code, Git history, and modern web applications. Its primary use case is to enable security professionals to identify and remediate security vulnerabilities related to exposed secrets through a high-performance, extensible scanning engine and advanced crawling capabilities, such as JavaScript discovery and source-map recovery. Notable features include live validation of secret findings, integration with the Katana web crawling tool, and support for embedding the scanner within other internal tools using its Go library.

Wordlists

2026-08-03 ★ 75
The pkgforge-security/Wordlists repository provides a comprehensive collection of wordlists optimized for various cybersecurity tasks, primarily focusing on API discovery, DNS subdomain enumeration, and low-hanging fruit exploitation. Notable features include multiple categorized lists such as "tiny," "mini," and "massive," which offer different scopes of keywords suited for fuzzing and brute-forcing scenarios. The tool allows users to easily download specific lists via curl or wget commands for enhanced efficiency in penetration testing and vulnerability assessment.

awesome-ctf-cheatsheet

2026-08-03 ★ 140
The "Awesome Capture the Flag Cheatsheet" is a comprehensive resource designed to assist cybersecurity professionals and enthusiasts in tackling online Capture the Flag (CTF) challenges and Hackthebox machines. It features curated tips and strategies across various domains, including system hacking, web hacking, cryptography, and forensics, with a strong emphasis on practical tools like Nmap for reconnaissance and scanning tasks. Notable features include specific command examples, categorized hacking techniques, and best practices aimed at enhancing performance in competitive environments.

BruteForceIG

2026-08-03 Python ★ 11
BruteForceIG is a brute force tool designed for educational purposes to test the security of Instagram accounts. Its primary use case is to help users understand authentication mechanisms and security defenses, featuring multi-threading for optimal speed, random user-agent support, and capabilities such as SSL pinning bypass. The tool emphasizes responsible use, stressing that unauthorized access may lead to account blocking or legal action.

bugbounty

2026-08-03 ★ 19
The Advanced Bug Bounty Arsenal is a comprehensive repository designed for bug hunters seeking to enhance their skills through curated methodologies, tools, and techniques. It covers all phases of the bug bounty process, including reconnaissance, vulnerability discovery, exploitation, and reporting, with specific scripts and tools provided for various tasks such as subdomain enumeration, API endpoint discovery, and cloud assets scanning. This resource serves both beginners and experienced researchers, promoting ethical hacking while fostering community growth and knowledge sharing.

emailbomber

2026-08-03 Python ★ 81
Email-Bomber is an open-source tool designed for sending bulk emails using Python's SMTP library, with an easy setup process including Docker support and a GUI version. Its primary use case is for testing email systems through simulated bulk sending, and it features secure app password integration for Gmail accounts, ensuring minimal interference with standard authentication processes. The tool provides comprehensive installation guidance for various platforms, including Termux and Linux distributions.

parrot

2026-08-03 Shell ★ 16
Parrot is a lightweight shell-based tool designed specifically for Termux, enabling users to maximize the potential of Linux on their Android devices. Key features include its 100% shell script implementation for compatibility, seamless integration with Termux for mobile development, and a focus on fast performance with minimal dependencies.

wordlist-generator

2026-08-03 ★ 59
The wordlist-generator is a terminal-based tool designed for creating customizable password lists to facilitate brute force dictionary attacks on social media accounts. Notable features include the ability to incorporate predicted prefixes and suffixes, as well as an option to generate numeric sequences, enhancing the likelihood of successfully cracking passwords.

Brutegram

2026-08-03 ★ 774
Brutegram is a multi-bruteforce tool specifically designed for attacking Instagram accounts, though it is currently not operational. This tool facilitates brute force attacks on social media usernames and supports installation on various Linux distributions and Termux, but its intended use for account compromise is against terms of service and ethical guidelines.

Carding-Tools-Web-Version

2026-08-03 HTML ★ 63
The Carding Tools Web Version is a web-based application designed for generating, checking, and validating credit card numbers and Bank Identification Numbers (BINs). Its notable features include a BIN Checker that retrieves detailed BIN information, a Card Generator for producing valid credit card numbers using the Luhn algorithm, a Card Checker that verifies card authenticity, and a BIN Generator for generating random BINs based on card types. It incorporates a responsive design for optimal usability across devices and facilitates data importing from text files.

Cyberpunx

2026-08-03 Shell ★ 51
Cyberpunx is a comprehensive hacking tool designed for use on Termux or Kali Linux, featuring a wide array of useful functionality for educational purposes. Users can easily install the tool with straightforward setup instructions and access various hacking features through a guided interface. Notably, it emphasizes user responsibility and ethical use.

ddos

2026-08-03 Python ★ 184
The "ddos" repository is a Python-based DDoS attack script that offers over 36 attack methods across Layer 7 and Layer 4 protocols, targeting various web server vulnerabilities. It includes notable features such as bypass mechanisms for popular anti-DDoS services like CloudFlare and OVH, as well as various flooding techniques like GET and POST floods. This tool is primarily aimed at penetration testing scenarios but is explicitly discouraged from usage against government sites.

DefGen

2026-08-03 Hack ★ 110
DefGen is a tool designed for creating customized HTML defacement pages, integrating CSS and JavaScript to enhance aesthetics. Its primary use case is for users looking to generate mock defaced webpages for testing or demonstration purposes. Notable features include easy installation via package managers and compatibility with various Linux distributions and mobile platforms.

Ethical-Hacking-Course-Resources

2026-08-03 ★ 17
The Ethical Hacking Course Resources repository provides a comprehensive collection of tools, links, and resources specifically designed to facilitate the learning and practice of ethical hacking. Its notable features include links to productivity tools for note-taking, setup guides for virtual environments, and curated references for various hacking methodologies, including courses on C programming and Active Directory attacks. This organized catalog serves as an essential reference for students and practitioners in ethical hacking.

Fake-SMS

2026-08-03 Python ★ 31
The Fake-SMS tool is a Python script that enables users to send SMS messages via the Textbelt API, featuring an interactive command-line interface with color enhancements for ease of use. Its primary use case revolves around programmatically sending text messages, providing clear feedback on message delivery status, and ensuring compatibility across multiple operating systems including Windows, macOS, and Linux. Notable features include API integration, colorful prompts using libraries such as `pystyle` and `colorama`, and a straightforward setup process.

HARRYv6

2026-08-03 Python ★ 127
HARRYv6 is a Facebook brute-force tool developed for cracking public files and automating Facebook interactions such as liking and commenting. It offers multiple cracking methods, an optimized file creator, and is designed to be used on the Termux platform, making it accessible and regularly updated without cost.

JAR

2026-08-03 Shell ★ 154
JAR is a cybersecurity tool designed for automated reconnaissance and vulnerability scanning of web applications. Its primary use case is to assist security professionals and penetration testers in identifying security flaws through features such as modular scanning capabilities and integration with popular development tools. The tool is built using modern technologies such as React and Docker, enhancing its usability and deployment flexibility.

m-wiz

2026-08-03 Shell ★ 656
M-wiz is a bash-based tool designed for users of the Metasploit Framework on Termux, facilitating the installation, repair, updating, and backing up of the Metasploit environment. It is compatible with both rooted and non-rooted Android devices and offers a user-friendly interface for beginners, as well as features to address common issues such as Ruby errors. This tool significantly streamlines the Metasploit setup process, requiring minimal user input for efficient deployment.

MacAttack

2026-08-03 Python ★ 125
MacAttack is a graphical user interface (GUI) tool specifically developed for testing and brute-forcing IPTV stalker portals that users own or have permission to test. It allows users to identify accessible MAC addresses and assess portal vulnerabilities while providing features for proxy management, portal URL input, and playlist retrieval via a modified video player. The tool emphasizes responsible use, warning against unauthorized access to non-owned portals.

pentbox

2026-08-03 ★ 148
PentBox is a comprehensive penetration testing toolkit designed to simplify various aspects of security assessments. Written in Ruby, it supports multiple operating systems and offers a wide range of functionalities, including command execution, honeypot capabilities, an expanded wordlist, HTTP directory brute forcing, and denial-of-service exploit modules. Notable features include improved interface options, enhanced logging, and new tools for MAC address geolocation and IP targeting from email sources.

Phishbait

2026-08-03 HTML ★ 620
Phishbait is a phishing tool designed to simulate phishing attacks by hosting replicas of 38 different websites, allowing users to generate luring links to target victims. Key features include easy setup through command-line instructions, the ability to create a local server using PHP, and the integration with Ngrok for tunneling, which conceals the server's presence. It is intended strictly for educational purposes, with a disclaimer against misuse.

Prem

2026-08-03 Python ★ 82
Prem is a Python-based Instagram brute-forcing tool that facilitates unauthorized access attempts to Instagram accounts. It features enhanced login methods, a modern interface, and dual language support (English and Indonesian), making it accessible for users with varying technical skills. Additionally, it provides a comprehensive step-by-step installation guide for deployment on Termux.

Python-Scripts

2026-08-03 Python ★ 330
The Python Scripts repository offers a diverse collection of open-source Python scripts designed for various practical applications. Key features include tools for air quality analysis, blog reading, user management on social media like Twitter and Facebook, expense tracking through a GUI, and basic encryption techniques. These scripts support user-friendly operations from terminal commands, allowing for enhanced productivity across multiple domains.

Rubber-Ducky-Bad-USB

2026-08-03 PowerShell ★ 56
The Rubber Ducky Bad USB is a script that mimics the behavior of a Rubber Ducky device, utilizing the WshShell.SendKeys method from Windows Script Host to execute various commands for information gathering. It primarily serves as an educational tool to collect system and network information, including Wi-Fi passwords, by running a PowerShell script from a USB drive that is treated as a trusted Human Interface Device. Notable features include the automatic creation of a Data directory on the USB, comprehensive system data collection capabilities, and the ability to bypass script execution policies for enhanced control.

smbrelay

2026-08-03 Shell ★ 24
SMBRelay is an offensive automation tool designed to exploit SMB relay vulnerabilities by intercepting NTLM authentication requests and relaying them to compromised systems to gain remote access. Key features include complete automation of NTLM relay attacks, integration with payload delivery tools like Nishang and MSFVenom, and real-time monitoring of incoming SMB requests, making it ideal for penetration testing in Windows environments. It is specifically developed for use on Kali Linux and focuses on facilitating security assessments by simulating real-world attack scenarios.

sms-sender

2026-08-03 Python ★ 199
sms-sender is a Python-based tool designed to facilitate the sending of SMS messages via a command-line interface, primarily aimed at educational and testing purposes. It is compatible with both Windows and Linux environments, offering easy installation through automated scripts and dependency management. Notable features include compatibility with platforms like Termux and Kali Linux, as well as user-friendly command execution options.

WannaTool

2026-08-03 Shell ★ 290
WannaTool is a cybersecurity tool designed for performing assessments on systems, with a primary focus on analyzing and exploiting vulnerabilities. Notable features include its compatibility with various Linux distributions such as Kali, Ubuntu, and Parrot OS, and its straightforward installation process via bash scripts. The tool aims to facilitate penetration testing and vulnerability exploitation in environments where security assessments are required.

WhatsApp-Viewer

2026-08-03 Python ★ 67
Linuxndroid WhatsApp-Viewer is a Python GUI application designed for extracting and displaying WhatsApp chat conversations from the app's SQLite database. Its primary use case is to provide users a straightforward way to view chat histories in a familiar chat-bubble format, along with features such as light and dark modes, support for contact names, and the capability to compile into a standalone executable for Windows. The tool eliminates the need for command line interfaces and web servers, making it accessible for users seeking to analyze their chat data effortlessly.

X-tool

2026-08-03 Shell ★ 11
X-tool is a versatile hacking tool that provides a collection of utilities for various cyberattack methodologies, including phishing and DDoS attacks. It facilitates easy installation and management of these tools, enabling users to select and deploy their preferred options seamlessly. Notably, tools are automatically saved in the user's home directory for convenient access.

Xbughunting

2026-08-03 Python ★ 20
XbugHunting is a comprehensive suite designed for bug hunters and penetration testers, providing tools for information gathering, mapping, discovery, exploitation, and reporting. Notable features include a variety of integrated utilities such as DNS enumeration tools, port scanners (e.g., Masscan, Nmap), vulnerability scanners (e.g., Burp Suite, Acunetix), and exploitation frameworks for common web vulnerabilities. Its modular organization allows users to access and execute tools easily from a single Python interface, streamlining the bug hunting process.

Xviews

2026-08-03 PHP ★ 12
Xviews is a traffic generation tool designed to increase the number of views on specified websites, particularly effective with Blogspot. It features a proxy support mechanism, allows simultaneous requests, and provides real-time monitoring through terminal color displays, enhancing user control over traffic parameters. The tool is intended strictly for educational purposes, with a clear warning against potential misuse.

Cyberonix

2026-08-03 Python ★ 540
Cyberonix is an open-source cybersecurity tool designed as a comprehensive resource hub for the cybersecurity community, aiming to serve as a one-stop solution for both seasoned professionals and learners in the field. Notable features include its regular updates with new resources, user-driven feature suggestions, and a collaborative approach, encouraging contributions from the community to enhance its functionality.

Echo433

2026-08-03 C++ ★ 38
Echo433 is an Arduino-based tool designed for sniffing, logging, and replaying signals in the 433MHz frequency range, primarily used for auditing home automation systems and testing RF remotes. Notable features include automatic signal logging to an SD card, the ability to clone and retransmit captured signals, and a straightforward setup utilizing the RHSwitch library for ease of use.

EnRaiJin

2026-08-03 Go ★ 26
Enraijin is a robust web brute-force framework designed for automating credential testing against HTTP(S) web forms. Its primary use case is to facilitate long-term brute-force runs with a focus on readability and easy configuration via a YAML file, while also supporting reliable proxy management and token crawling to enhance its effectiveness. Notable features include customizable settings for form fields, the ability to handle multiple configurations, and integration with notification systems for real-time feedback during tests.

ESP-GRABER

2026-08-03 ★ 20
ESP-GRABER is a multiband RF signal tool designed for use with the ESP32 microcontroller and the CC1101 RF module, capable of operating across 315, 433, 868, and 915 MHz bands. Its primary use cases include reading, repeating, analyzing, and storing RF signals, with features that include signal storage for up to 20 keys and cautionary options for jamming RF signals. Notably, it serves educational and testing purposes but comes with a legal disclaimer regarding the use of jamming capabilities.

ethpwn

2026-08-03 Python ★ 55
ethpwn is a command line tool designed for debugging and interacting with smart contracts on EVM-based blockchains, notably inspired by the pwntools and GEF frameworks. Its primary use case is to simulate and replay Ethereum transactions through the `ethdbg` utility, while also providing convenient wrappers for various `web3` functionalities. Key features include easy installation, configuration setup for Ethereum nodes, and support for mainnet and sepolia testnet.

fleex

2026-08-03 Go ★ 273
Fleex is a tool designed for orchestrating distributed workload execution across cloud-based VPS fleets, enabling rapid scaling of various security tools like masscan and nuclei. Its notable features include multi-provider support, user-friendly fleet management commands, distributed scanning capabilities, and result aggregation functionalities. Additionally, Fleex encompasses a build system for provisioning tools with pre-configured recipes and provides cost estimation before running tasks.

H1Notifier

2026-08-03 Python ★ 22
H1Notifier is an automated tool that monitors HackerOne for new bug bounty programs and sends email notifications to users upon detection. It utilizes Selenium for web scraping, operates entirely on GitHub Actions, and can run every three hours or be triggered manually, requiring minimal setup. Notable features include email notification support and seamless deployment via GitHub Actions.

H4ck3R

2026-08-03 HTML ★ 12
H4ck3R is an open-source package designed for individuals interested in learning hacking and cybersecurity techniques. It provides a framework for educational purposes, facilitating the exploration and understanding of various cybersecurity concepts. Notable features include a comprehensive collection of tools and resources aimed at enhancing practical skills in ethical hacking.

HacKingPro

2026-08-03 Python ★ 162
HacKingPro is an ethical hacking toolkit designed for comprehensive security assessments, offering features for reconnaissance, exploitation, lateral movement, and reporting among other attack vectors. Its primary use case is to facilitate ethical hacking practices through a user-friendly graphical interface built with PyQt5, along with advanced functionalities including multi-language support, customizable reporting, and a plugin system for extended capabilities. The toolkit supports a variety of attacks such as web application exploitation, password attacks, and social engineering, making it a versatile resource for security professionals.

homodeus

2026-08-03 Hack ★ 11
Homo-Deus is a phishing toolkit designed for educational purposes, enabling users to simulate spear-phishing and conventional phishing attacks against over 40 popular websites to obtain authentication credentials. Notable features include website cloning capabilities and seamless integration with the evil-link tool for link masquerading. The tool emphasizes ethical usage and warns against illegal activities related to its functionality.

instagrambruteforcer

2026-08-03 Python ★ 13
InstagramBruteforcer is a Python-based tool designed for conducting brute force attacks on Instagram accounts using a configurable list of proxies. It features the ability to upload and manage proxy lists, monitor their performance through statistical insights, and prune underperforming proxies, all while attempting to find valid usernames and passwords from a specified list. The tool also provides real-time feedback on the progress of password attempts and highlights successful logins.

K-OTP-X

2026-08-03 Shell ★ 135
K-OTP-X is an advanced one-time password (OTP) phishing tool designed for security testing and educational purposes. The tool primarily facilitates the creation of phishing pages that can capture OTPs, featuring tunnelling options such as Ngrok for remote access and requiring a PHP and Apache setup. It is compatible with various Linux distributions and Termux on Android, emphasizing ease of installation and use.

Link-x

2026-08-03 Python ★ 52
Link-x is a malicious tool designed to extract sensitive data from victims' devices through various attack vectors, including accessing the camera, microphone, clipboard, and location. It primarily enables an attacker to gather extensive information with minimal effort, only requiring the victim to click on a specially crafted link. Notable features include real-time data capturing, remote access capability, and comprehensive device information retrieval.

Lucid-Engine

2026-08-03 Python ★ 11
Lucid Engine is a tool designed for modifying game variables via the Chrome DevTools Protocol, establishing a websocket connection between the tool and the game, unlike traditional memory manipulation tools. Its primary use case is to provide a user-friendly interface for altering game elements, enabling customizations without direct memory edits. Notable features include its architecture overhaul and a straightforward interaction model for game manipulation.

Password-Cracker

2026-08-03 Batchfile ★ 13
Password-Cracker is a harmless prank batch script designed for educational purposes, simulating a password cracking tool without any actual functionality. It provides a fake connection and generates random password attempts, ultimately displaying a simulated “cracked” password, all within a console environment that mimics hacker aesthetics. This tool is intended solely for entertainment and does not engage in any real password cracking.

RealTime-PhoneNumberLocation

2026-08-03 ★ 128
RealTime-PhoneNumberLocation is a tool designed for locating mobile phone numbers in real-time. It primarily facilitates geolocation services based on phone numbers, enabling users to track device locations efficiently. Notable features may include a user-friendly interface and compatibility with various phone number formats.

RickPhis

2026-08-03 Python ★ 12
RickPhis is a modular phishing simulation framework designed for ethical hackers and cybersecurity educators, enabling them to rapidly deploy convincing credential-harvesting pages and simulate real-world phishing attacks for awareness training and red team exercises. Built with Python, Flask, and Selenium, it features functionalities such as Ngrok tunneling for exposing local servers, live browser automation for interception of login processes, a web admin panel for monitoring captured credentials, and robust logging capabilities. This tool is intended for educational use and authorized security testing, ensuring that users operate within legal boundaries.

steal-all-files

2026-08-03 Python ★ 75
Steal all files is a cybersecurity tool designed for data exfiltration via a USB device, enabling users to copy all files and information from a target computer by simply plugging in the device. Key features include a straightforward setup process for creating an executable payload on the USB, the ability to run the tool directly from the USB or through a Python interpreter, and customizable options for specifying the source path and output file name.

WhatsAppHacking

2026-08-03 CSS ★ 445
WhatsAppHacking is a tool designed to crash WhatsApp applications using a single text message and allows for the injection of a payload to extract all media files from the app. It serves primarily for educational purposes, demonstrating vulnerabilities in WhatsApp, but is explicitly noted for its illegal implications when misused. Notable features include payload injection capabilities and the ability to crash the app with minimal input.

wildlogger

2026-08-03 Python ★ 46
Wildlogger is a keylogging tool designed for the Windows operating system that captures detailed system information, such as running processes, device data, and keyboard keystrokes, while also taking periodic screenshots and sending this data to a specified email address. It operates using two separate threads for logging records and capturing screenshots, and it includes a persistent mode feature to ensure continuous execution on the target system by integrating itself into the Windows startup process. The tool supports Gmail for reporting, requiring enabling of less secure app access for SMTP operations.

python-bruteForce

2026-08-03 Python ★ 555
Python Brute Force is a versatile tool designed for conducting brute force attacks on form-based and JSON API logins, featuring automatic detection of login types and CSRF bypass capabilities. Its primary use case is for penetration testing and security research, providing options such as multi-threading, customizable worker counts, and color-coded terminal outputs for enhanced usability. The tool efficiently manages various CSRF protection mechanisms, making it suitable for testing modern web applications built with popular frameworks.

agent-smith

2026-08-03 Python ★ 108
agent-smith is an innovative penetration testing framework designed to facilitate deeper and more intelligent security assessments while minimizing manual oversight. It utilizes advanced skills-based methodology combined with a customizable LLM to generate dynamic attack strategies and deliver comprehensive end-to-end findings, including proofs of concept and threat models. Key features include support for local LLMs, Docker-based isolation, and real-time collaboration through an interactive dashboard, enhancing the overall efficiency and effectiveness of the penetration testing process.

d3m0n_c1

2026-08-03 Python ★ 14
d3m0n_c1 is an open-source hacking phone designed for performing a variety of wireless attacks, including radio and WiFi hacking, as well as physical attacks via BadUSB. It features a customizable operating system, various connectivity options, and a compact design, making it suitable for security researchers and penetration testers. Notable capabilities include sub-GHz radio communication, an LTE module for SMS and calls, and a user-friendly application system.

endpoints-extractor

2026-08-03 Shell ★ 18
The Endpoints Extractor is a Bash script tool that efficiently retrieves and extracts URLs and API endpoints from HTML, JavaScript, and JSON content found on web pages. It allows users to scan either a single URL or a list of URLs, with the capability to save the extracted results for further analysis, and features a straightforward command-line interface. Key functionalities include the use of `curl` for fetching content, alongside utilities like `grep` and `sort` for refining output, ensuring unique entries in the results.

GrapheneUX

2026-08-03 ★ 29
GrapheneUX is a modification tool for enhancing the functionality of GrapheneOS, focusing on reinstating various features typically found in Google Pixel devices. Its primary use case involves enabling options such as pattern unlock, on-device ADB, and advanced camera functionalities, as well as other user-requested tweaks like improved flashlight intensity and additional lockscreen widgets. Notable features include support for system privileges without root access and reverse-engineered functionalities that enhance user experience.

intentions

2026-08-03 Kotlin ★ 12
Intentions is an Android tool designed for testing and manipulating Inter-Process Communication (IPC) via Intents, primarily intended for users with rooted devices running Android 10 and above. Key features include the ability to scan installed apps for their exported components, build and dispatch custom Intents, capture incoming Intents through a sink and logcat observer, and perform replay and fuzzing of Intents, all while offering various export formats for generated commands. The tool acts as an IPC workbench, combining intent discovery, custom intent creation, and comprehensive testing capabilities tailored for security researchers and developers.

linux-monster

2026-08-03 Python ★ 45
Linux-Monster is a versatile password cracking tool designed for Linux, macOS, Windows, and Android platforms, primarily used for brute-force password attacks. Notable features include custom dictionary generation, progress tracking for resumed sessions, improved UI/UX, and dynamic settings that do not require restarts to apply changes. The tool has been optimized for resource consumption and error handling, enhancing its overall efficiency during brute-force operations.

NGL-Phish

2026-08-03 JavaScript ★ 109
NGL - Nefariously Generated Links is a phishing tool masquerading as a legitimate application for receiving anonymous messages on Instagram. Its primary use case is to exploit users' trust by tricking their followers into submitting Instagram login credentials through a deceptive interface that mimics the popular NGL.LINK service. Notable features include the ability to create cloaked phishing links that can be shared on Instagram, allowing users to clandestinely harvest sensitive information.

NullPhish

2026-08-03 HTML ★ 48
NullPhish is an automated phishing toolkit designed for security research, featuring over 30 customizable templates with integrations for Discord and Telegram. It offers a range of notable features including multiple tunneling options, URL masking, and Docker support, making it beginner-friendly while providing advanced capabilities for simulating phishing attacks. The tool serves educational purposes to demonstrate phishing mechanisms and comes pre-loaded with the latest login page designs.

proxyreaper

2026-08-03 Python ★ 15
Proxy Reaper is a multifunctional proxy evaluation tool designed to assess the availability, speed, and anonymity of various proxy servers, including HTTP, HTTPS, SOCKS4, and SOCKS5 protocols. Notable features include concurrent proxy checking, response-time categorization, anonymity detection, GeoIP resolution, and the ability to export results in multiple formats such as JSON, CSV, and SQLite. The tool also supports automatic proxy list downloads and includes advanced filtering options for efficient results analysis.

scan4secrets

2026-08-03 Python ★ 117
scan4secrets is a comprehensive security scanning tool that integrates both Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) to identify leaked credentials, code vulnerabilities, and configuration misconfigurations across source trees, live web applications, and CI logs. Its notable features include live verification of secrets against vendor APIs, source-map parsing for JavaScript, authenticated DAST capabilities, and support for generating reports in SARIF, JSONL, and multiple formats for client presentations, thereby providing a holistic approach to application security assessment.

symp

2026-08-03 C ★ 15
symp is a Mach-O symbol-based tool designed for patching functions in binary files by leveraging symbol tables, export tables, and Obj-C metadata. Its primary use case is for developers and security researchers to manipulate binary files through various patching methods, including writing hex bytes, implementing predefined patches, or replacing functions with new binaries. Notable features include support for multiple symbol formats, architecture selection, and integration with the xsp tool for enhanced hex patching workflows.

ToolHunt

2026-08-03 HTML ★ 230
ToolHunt is an advanced search engine designed to facilitate the discovery of cybersecurity tools from a comprehensive database exceeding 3,000 entries. Its primary use case is to help security professionals, pentesters, and researchers quickly identify relevant tools through a semantic search powered by AI, which utilizes hybrid algorithms for optimal match relevance. Notable features include a cyberpunk-themed user interface, responsive design for various devices, and cloud deployment capabilities via Google Colab.

cisco-snmp-pwner

2026-08-03 Go ★ 15
The cisco-snmp-pwner tool facilitates the exploitation of Cisco devices with read-write SNMP access by enabling users to dump the running configuration or add new users. It operates a local TFTP server to manage these configurations and supports SNMP versions 1, 2c, and 3, with customizable community strings and user roles. Notable features include the ability to merge configurations and streamline user management, while requiring root access to function properly.

Discord-Token-Password-Stealer

2026-08-03 C# ★ 15
The Discord Token Password Stealer is a malicious tool designed to extract sensitive user information from Discord accounts, including passwords, tokens, and credit card details. Its primary use case involves the stealthy capture of credentials from victims, facilitated by a user-friendly interface for compiling and deploying the software. Notable features include extensive logging of user data, the ability to change passwords and emails, and bypassing certain protections within Discord clients.

Honeypot-Spam-Buster

2026-08-03 HTML ★ 54
Email-Security-Auditor is a robust tool designed to enhance email authentication verification by conducting in-depth behavioral analysis across security protocols such as SPF, DKIM, and DMARC. Its notable features include policy fuzzing for automated edge-case discovery, machine-learning-based reputation scoring, and comprehensive compliance reporting capabilities, making it essential for organizations facing contemporary email threats and regulatory pressures. The architecture supports horizontal scaling and microservices isolation, ensuring reliability and effectiveness in enterprise environments.

Koi

2026-08-03 Python ★ 24
The low cortisol shell handler

vimana-framework

2026-08-03 Python ★ 66
Vimana is a modular security framework designed for auditing Python APIs and web applications, leveraging a plugin-based architecture for thorough security assessments. Its primary use case encompasses vulnerability detection, static and dynamic analysis, and CI/CD integration, with notable features like application crawling, persistence analysis, and support for various continuous integration platforms. This tool enhances security professionals' capabilities through both automated and manual testing techniques.

GitHush

2026-08-03 Python ★ 34
GitHush is a cybersecurity tool designed to monitor public GitHub repositories for the inadvertent exposure of sensitive information, such as API keys and credentials, using the GitHub Events API. It automates the detection process through regular expression signatures, dynamic database awareness, and structured JSONL logging for easy integration with threat intelligence systems. Notable features include high-signal filtering, language/framework awareness, and support for over 20 common credential formats.

goop

2026-08-03 Go ★ 654
Goop is a robust tool designed for extracting complete Git repositories from websites, emphasizing comprehensive dumps and accommodating various edge cases often overlooked by other tools. It utilizes multiple strategies to recover files and objects from .git directories, even in the absence of directory listings. Notable features include directory management options, handling of rate limits, and the ability to process a list of domain names for batch operations.

indextree

2026-08-03 Go ★ 51
indextree is a tool designed for analyzing and filtering directory listing pages of web servers, allowing users to focus on specific files or directories based on various criteria such as file extensions or keyword matching. Its notable features include options for displaying directory or file mode, a configurable output tree structure, and protection against infinite loops during recursive scans. The tool is intended for educational and research purposes within the cybersecurity domain.

oswe-awae-pre-preperation-plan-and-notes

2026-08-03 ★ 89
The OSWE/AWAE Pre-Preparation Plan and Notes repository serves as a comprehensive personal guide aimed at preparing for the Offensive Security Web Expert (OSWE) certification. It aggregates detailed notes on various web vulnerabilities and related tools, alongside recommendations for prerequisite skills such as coding, familiarity with Linux, and web application security concepts. Notably, it includes a table of contents covering specific vulnerabilities and associated exploit methodologies, providing a structured roadmap for effective study and practice.

PWK-OSCP-Preparation-Roadmap

2026-08-03 ★ 396
The PWK-OSCP-Preparation-Roadmap is a comprehensive guide designed to assist individuals preparing for the OSCP certification by outlining essential topics, techniques, and tools for penetration testing and enumeration. It covers various enumeration strategies for services such as DNS, SMB, SMTP, SNMP, FTP, and SSH, highlighting possible misconfigurations and associated attack vectors. Notable features include extensive links to resources and tutorials on tools like Nmap, Wireshark, TCPDump, and Metasploit, making it a valuable resource for both beginners and experienced practitioners.

CTF-Notes

2026-08-03 Shell ★ 35
CTF-Notes is a comprehensive resource repository designed for cybersecurity enthusiasts and professionals engaging in Capture The Flag (CTF) competitions. It hosts a collection of notes, code snippets, and recommended tools, along with guidance on essential skills such as reconnaissance, vulnerability identification, and effective note-taking methods. Notable features include structured checklists, various tool recommendations, and training resources to facilitate skill development in cybersecurity contexts.

FFM

2026-08-03 Python ★ 349
Freedom Fighting Mode (FFM) is a hacking harness specifically designed for post-exploitation tasks during red-teaming engagements, enabling automation of common actions while minimizing user errors. This tool provides a modular command structure for various tasks, including enumeration, stealth, and data transfer, facilitated through a user-friendly command interface. Notable features include enhanced security through a Docker-based installation approach and a comprehensive command management system that categorizes available functionalities for ease of use.

pwnbase

2026-08-03 C++ ★ 21
UFSC OFFSEC PwnBase is an academic initiative aimed at enhancing practical knowledge in offensive security and ethical hacking through research and educational development. The project focuses on vulnerability studies, exploit development, and creating training materials while promoting participation in Capture The Flag (CTF) events, all adhering to ethical standards. Notable features include hands-on learning opportunities and a collaborative approach to cybersecurity education.

Python-Obfuscation-Framework

2026-08-03 Python ★ 27
The Python Obfuscation Framework (pof) is an advanced toolkit designed for generating complex, staged obfuscated payloads aimed at enhancing offensive security practices. Its primary use case revolves around evading static and dynamic analysis through customizable obfuscation techniques that can combine to produce highly obfuscated outputs, including methods to verify target environments to ensure payload execution only occurs in specified conditions. Notable features include automation capabilities for producing multiple payload variants, methods for safeguarding against static and dynamic analysis, and options to store payload stages within images or trusted locations.

rs-shell

2026-08-03 Rust ★ 186
RS-Shell is a reverse shell tool developed in Rust, designed to facilitate secure command and control operations through both TLS over TCP and HTTPS communication modes. It features a semiautomatic reverse shell, file transfer capabilities, and advanced execution options for PE and shellcode, complete with a proxy-aware Windows implant and privilege escalation methods. The modular architecture allows for easy customization and integration of various functionalities, making it suitable for offensive cybersecurity operations and testing.

mantishack

2026-08-03 Rust ★ 493
Mantishack is an autonomous vulnerability-discovery agent designed for ethically hacking and identifying software vulnerabilities through a comprehensive, AI-driven pipeline. It integrates multiple scanning capabilities, including static analysis and attacker-simulation validation, to ensure precise identification of exploitable flaws while explicitly tracking the status of findings. Notably, it operates with a focus on real validation over traditional detection, utilizing a modular architecture that can integrate various security tools as needed.

Offsec-Practice-Labs

2026-08-03 ★ 253
The Offsec-Practice-Labs repository provides a comprehensive collection of virtual machines, notes, and resources specifically designed for individuals preparing for the eCPPT, OSCP, and CPTS cybersecurity certifications. It includes various platforms like VulnHub and HackTheBox, featuring machines categorized by skill sets essential for penetration testing, with an emphasis on vulnerability exploitation and practical learning through self-hosted labs. Key features include categorization of labs by difficulty and focus areas, making it a valuable resource for targeted skill development in offensive security.

unk9vvn.github.io

2026-08-03 HTML ★ 16
The Tools Installer facilitates the streamlined installation of various cybersecurity tools on Kali Linux and Ubuntu operating systems. Key features include automatic script updates, the capability to install individual tool sections, and a user-friendly menu and icon design for enhanced accessibility. This tool is ideal for cybersecurity professionals seeking quick and efficient setup of essential tools in their environments.

vbsmin

2026-08-03 Ruby ★ 25
VBSmin is a VBScript minifier designed to optimize script files by removing unnecessary whitespace and comments, thus reducing overall file size. Its primary use case includes enhancing efficiency in scenarios like SQL injection and cross-site scripting, where compact scripts are essential for stealth and execution speed. Notable features include the ability to condense multi-line scripts into a single line and eliminate various types of whitespace and comments, making it a valuable tool for developers working with VBScript in the context of security exploitation.

ethereum-lists

2026-03-30 JavaScript ★ 713
Ethereum-lists is a collaborative repository that maintains and updates lists of malicious URLs, fake token addresses, Ethereum addresses, and contract details, facilitating community contributions through pull requests. Its primary use case is to serve as a resource for users to identify and avoid phishing attempts and fraudulent tokens within the Ethereum ecosystem. Notable features include an easily accessible structure for submitting changes and clear guidelines for contributions, promoting community involvement in enhancing security awareness.

Facebook-BugBounty-Writeups

2026-03-30 ★ 846
The Meta(Facebook) Bug Bounty Writeups repository compiles a collection of documented vulnerabilities discovered on Facebook, showcasing varying bounty rewards ranging from account takeovers to remote code execution. Its primary use case is to serve as a resource for security researchers and ethical hackers to share and learn from reported vulnerabilities in Meta’s platforms. Notable features include a chronological organization of writeups, contributing guidelines, and links to detailed analysis articles for each reported bug.

Gmail-Hack

2026-03-30 Python ★ 726
Gmail-Hack is a Python-based tool designed for unauthorized access to Gmail accounts, primarily focused on users operating in Termux or Linux environments. It features a straightforward installation process and is intended for educational purposes, with caveats regarding its ethical use. Notably, the tool claims to facilitate hacking actions with minimal setup time, emphasizing its ease of use for individuals familiar with command-line interfaces.

raven

2026-03-30 Python ★ 736
Raven is a developer security tool designed to enhance the security of software projects by providing capabilities for managing and monitoring secrets, vulnerabilities, and compliance across development environments. Its primary use case is to integrate seamlessly into CI/CD pipelines, ensuring that code remains secure throughout the software development lifecycle. Notable features include real-time detection of security risks, a user-friendly interface, and integration with various popular development tools and platforms.

AdminHack

2026-03-22 Shell ★ 897
today we will hack the admin panel of the site.

Android-PIN-Bruteforce

2026-03-22 Shell ★ 4584
Unlock an Android phone (or device) by bruteforcing the lockscreen PIN. Turn your Kali Nethunter phone into a bruteforce PIN cracker for Android devices! (no root, no adb)

APISecurityBestPractices

2026-03-22 ★ 1969
Resources to help you keep secrets (API keys, database credentials, certificates, ...) out of source code and remediate the issue in case of a leaked API key. Made available by GitGuardian.

ApkAnalyser

2026-03-22 Shell ★ 1010
一键提取安卓应用中可能存在的敏感信息。

ApkCheckPack

2026-03-22 Go ★ 1210
apk加固特征检查工具,汇总收集已知特征和手动收集大家提交的app加固特征,全网最全开源加固特征,支持40+厂商的加固检测,欢迎大家提交无法识别的app

AppVerifier

2026-03-22 Kotlin ★ 960
Verify apps easily.

AttackSurfaceAnalyzer

2026-03-22 C# ★ 2946
Attack Surface Analyzer can help you analyze your operating system's security configuration for changes during software installation.

awesome-golang-security

2026-03-22 ★ 1963
Awesome Golang Security resources 🕶🔐

awesome-php-security

2026-03-22 ★ 1031
Awesome PHP Security Resources 🕶🐘🔐

awesome-python-security

2026-03-22 ★ 956
Awesome Python Security resources 🕶🐍🔐

awesome-security-hardening

2026-03-22 ★ 6227
A collection of awesome security hardening guides, tools and other resources

BLUESPAWN

2026-03-22 C++ ★ 1316
An Active Defense and EDR software to empower Blue Teams

bundler-audit

2026-03-22 Ruby ★ 2758
Patch-level verification for Bundler

can-i-take-over-dns

2026-03-22 ★ 1103
"Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.

cargo-auditable

2026-03-22 Rust ★ 843
Make production Rust binaries auditable

certificates

2026-03-22 Go ★ 8797
🛡️ A private certificate authority (X.509 & SSH) & ACME server for secure automated certificate management, so you can use TLS everywhere & SSO for SSH.

chromepass

2026-03-22 Rust ★ 823
Chromepass - Hacking Chrome Saved Passwords

cli

2026-03-22 TypeScript ★ 889
The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

ContainerSSH

2026-03-22 Go ★ 3073
ContainerSSH: Launch containers on demand

content

2026-03-22 Shell ★ 2796
Security automation content in SCAP, Bash, Ansible, and other formats

darkflare

2026-03-22 Go ★ 1576
DarkFlare Firewall Piercing (TCP over CDN)

dotenv

2026-03-22 JavaScript ★ 20513
Loads environment variables from .env for nodejs projects.

dpt-shell

2026-03-22 Java ★ 1115
An android Dex protection shell implementation

EasyProtector

2026-03-22 Java ★ 2291
一行代码检测XP/调试/多开/模拟器/root

extract_otp_secrets

2026-03-22 Python ★ 1650
Extract one time password (OTP) secrets from QR codes exported by two-factor authentication (2FA) apps such as "Google Authenticator". The exported QR codes from authentication apps can be captured by camera, read from images, or read from text files. The secrets can be exported to JSON or CSV, or printed as QR codes to console.

fail2ban

2026-03-22 Python ★ 18513
Daemon to ban hosts that cause multiple authentication errors

fikrado.py

2026-03-22 Python ★ 1000
Facebook hacking Tools script super fast and user friendly

GH05T-INSTA

2026-03-22 Shell ★ 800
Insta BruteForce { GH05T-INSTA 7.01 } Fork it...

gitleaks

2026-03-22 Go ★ 29034
Find secrets with Gitleaks 🔑

gosec

2026-03-22 Go ★ 8937
Go security checker

gotestwaf

2026-03-22 Go ★ 1772
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

grapefruit

2026-03-22 TypeScript ★ 1376
(WIP) Runtime Mobile Application Pentest Tool for iOS and Android. Previously Passionfruit

greenmask

2026-03-22 Go ★ 1754
Database anonymization and synthetic data generation tool

h2csmuggler

2026-03-22 Python ★ 785
HTTP Request Smuggling over HTTP/2 Cleartext (h2c)

hackbar2.1.3

2026-03-22 ★ 901
the free firefox extions of hackbar v2.1.3 v2.2.9 v2.3.1,hackbar 插件未收费的免费版本。适用于chrome浏览器的HackBar-v2.2.6.zip,HackBar-v2.3.1.zip

hardening

2026-03-22 Shell ★ 1856
Hardening Ubuntu. Systemd edition.

ighack

2026-03-22 Shell ★ 2142
Hack Instagram From Termux With Help of Tor

Impulse

2026-03-22 Python ★ 2842
:bomb: Impulse Denial-of-service ToolKit

insta-hack

2026-03-22 Shell ★ 1059
All in one Instagram hacking tool available (Insta information gathering, Insta brute force, Insta account auto repoter)

Instabruteforce

2026-03-22 Python ★ 1666
hacking-tool termux-tools termux noob-friendly instagram-bot bruteforce-password-cracker wordlist-technique

Instagram-Hacker

2026-03-22 Python ★ 1269
This is an advanced script for Instagram bruteforce attacks. WARNING THIS IS A REAL TOOL!

instahack

2026-03-22 Shell ★ 1891
instahack is a bash & python based script which is officially made to test password strength of Instagram account from termux and kali with bruteforce attack and. it based on tor This tool works on both rooted Android device and Non-rooted Android device. Best Tool For Instagram Bruteforce hacking Tool By Waseem Akram.

IP-Tracer

2026-03-22 PHP ★ 2819
Track any ip address with IP-Tracer. IP-Tracer is developed for Linux and Termux. you can retrieve any ip address information using IP-Tracer.

ipdrone

2026-03-22 Python ★ 1988
Track Location With Live Address And Accuracy In Termux

IpHack

2026-03-22 Shell ★ 902
Track Location With Live Address And City in Termux

keychain

2026-03-22 Python ★ 1076
A manager for ssh-agent and gpg-agent

Keylogger

2026-03-22 Python ★ 2715
Get Keyboard,Mouse,ScreenShot,Microphone Inputs from Target Computer and Send to your Mail.

kubestriker

2026-03-22 Python ★ 1005
A Blazing fast Security Auditing tool for Kubernetes

landrun

2026-03-22 Go ★ 2155
Run any Linux process in a secure, unprivileged sandbox using Landlock. Think firejail, but lightweight, user-friendly, and baked into the kernel.

maskphish

2026-03-22 Shell ★ 3195
Introducing "URL Making Technology" to the world for the very FIRST TIME. Give a Mask to Phishing URL like a PRO.. A MUST have tool for Phishing.

MHDDoS

2026-03-22 Python ★ 16632
Best DDoS Attack Script Python3, (Cyber / DDos) Attack With 56 Methods

misconfig-mapper

2026-03-22 Go ★ 910
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!

MySQL_Fake_Server

2026-03-22 Python ★ 1362
MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize

Name-That-Hash

2026-03-22 Python ★ 1666
🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥

onecli

2026-03-22 TypeScript ★ 3430
Open-source credential vault, give your AI agents access to services without exposing keys.

openappsec

2026-03-22 C++ ★ 1693
open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.

OSCE3-Complete-Guide

2026-03-22 ★ 3888
OSWE, OSEP, OSED, OSEE

OSCP-Exam-Report-Template

2026-03-22 ★ 961
Modified template for the OSCP Exam and Labs. Used during my passing attempt

OSCP-Exam-Report-Template-Markdown

2026-03-22 Ruby ★ 4190
:orange_book: Markdown Templates for Offensive Security OSCP, OSWE, OSCE, OSEE, OSWP exam report

pdfrip

2026-03-22 Rust ★ 1328
A multi-threaded PDF password cracking utility equipped with commonly encountered password format builders and dictionary attacks.

penelope

2026-03-22 Python ★ 2037
Penelope Shell Handler

personal-security-checklist

2026-03-22 TypeScript ★ 20993
🔒 A compiled checklist of 300+ tips for protecting digital security and privacy in 2026

privacy.sexy

2026-03-22 TypeScript ★ 5472
Open-source tool to enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy

ProxyCat

2026-03-22 Python ★ 2436
一款部署于云端或本地的隧道代理池中间件,可将静态代理IP灵活运用成隧道IP,提供固定请求地址,一次部署终身使用

rhizobia_J

2026-03-22 Java ★ 1069
JAVA安全SDK及编码规范

Search-That-Hash

2026-03-22 Python ★ 1411
🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡

SecToolKit

2026-03-22 ★ 928
Cybersecurity tool repository / Wiki 收录常用 / 前沿 的CTF和渗透工具以及其 官方/使用 文档,致力于让每个工具都能发挥作用ww,不管你是萌新还是领域从业者希望你都能在这里找到适合你的工具或者获得一定的启发。

Slack

2026-03-22 Go ★ 1050
安全服务集成化工具集

Smart-Contract-Auditor-Tools-and-Techniques

2026-03-22 ★ 791
This repo contains a comprehensive list of smart contract auditor tools and techniques that can be utilized by both smart contract auditors and blockchain developers for developing secure smart contracts

SocialBox-Termux

2026-03-22 Shell ★ 4500
SocialBox is a Bruteforce Attack Framework [ Facebook , Gmail , Instagram ,Twitter ] , Coded By Belahsan Ouerghi Edit By samsesh for termux on android

spicedb

2026-03-22 Go ★ 7003
Open Source, Google Zanzibar-inspired database for scalably storing and querying fine-grained authorization data

stego-toolkit

2026-03-22 Shell ★ 2688
Collection of steganography tools - helps with CTF challenges

Storm-Breaker

2026-03-22 HTML ★ 4870
Social engineering tool [Access Webcam & Microphone & Location Finder] With {Py,JS,PHP}

Swift-Keylogger

2026-03-22 Swift ★ 1157
Keylogger for mac written in Swift using HID

T-LOAD

2026-03-22 Shell ★ 848
New Interface And Loading Screen For Termux Users

tabby

2026-03-22 Java ★ 1641
A CAT called tabby ( Code Analysis Tool )

thug

2026-03-22 Python ★ 1041
Python low-interaction honeyclient

tripwire-open-source

2026-03-22 C++ ★ 927
Open Source Tripwire®

v3-periphery

2026-03-22 TypeScript ★ 1335
🦄 🦄 🦄 Peripheral smart contracts for interacting with Uniswap v3

VAmPI

2026-03-22 Python ★ 1191
Vulnerable REST API with OWASP top 10 vulnerabilities for security testing

ZipCracker

2026-03-22 Python ★ 811
ZipCracker是Hx0战队出品的一款功能强大的Zip密码破解工具。它集成了字典攻击、掩码攻击和CRC32碰撞等多种破解模式,并能自动修复伪加密文件。凭借其高性能与多功能的特点,ZipCracker已成为CTF比赛中的一把利器。(ZipCracker by Hx0 team is a tool for cracking passwords on Zip files, great for CTF competitions.)

zizmor

2026-03-22 Rust ★ 6420
Static analysis for GitHub Actions