> cat /dev/github | grep security-tools

Web-Security

hades-render-overlay

2026-08-30 HTML ★ 55
Kekropis is a cross-platform tactical overlay designed for competitive FPS games, focusing on enhancing situational awareness without altering the game’s core. It utilizes a micro-kernel visualization engine to passively observe game telemetry and displays intuitive glyphs, emphasizing minimal cognitive load and visual clarity. Notable features include a responsive user interface, support for multiple operating systems, and reliance on a read-only spatial telemetry network to maintain the integrity of the gaming experience.

0sec

2026-08-30 TypeScript ★ 47
0sec is an open and extensible AI-driven cybersecurity tool that automates vulnerability discovery, exploitation, and remediation across various layers, including web applications, APIs, source code, and network infrastructure. It supports multi-model and multi-agent capabilities to address complex security challenges, emphasizes continuous security over point-in-time assessments, and includes a command-line interface for streamlined interactions and automation of pentesting workflows. Notable features include the ability to find a wide range of vulnerabilities, integration with various environments and systems, and a focus on supply chain security and other emerging threat vectors.

csp_toolkit

2026-08-28 Python ★ 10
csp-toolkit is a Python library and command-line interface designed for parsing, analyzing, generating, and identifying bypasses in Content Security Policy (CSP) headers. Primarily aimed at security researchers and bug bounty hunters, it features automated CSP generation through website crawling, policy analysis with 21 vulnerability checks, and the ability to find potential bypasses against a database of known exploit vectors. Notable functionalities include the ability to score CSPs, detect nonce reuse, batch scan URLs, and generate output in various formats such as JSON and SARIF for integration with CI/CD workflows.

Hx0-HawkEye

2026-08-27 ★ 63
Hx0 HawkEye is a full-stack lightweight packet capturing and AI security auditing browser extension designed for seamless integration with Chrome and Firefox. It features real-time interception of web traffic (including XHR and WebSocket), traffic replay, micro fuzzing, and the ability to perform intelligent audits using custom AI models. The tool eliminates traditional proxy dependencies, ensuring consistent session states while providing functionalities suited for daily development and security assessments.

researchVault

2026-08-27 ★ 21
researchVault is a comprehensive repository of technical research and strategic frameworks focused on cybersecurity, web security, and developer community engagement, tailored for audiences in Bangladesh. Its notable features include data-driven analyses of optimal posting times for social media, a structured academic and career roadmap for students, and a systematic study planner, all underpinned by rigorous methodologies that prioritize verifiable sources and local relevance. This tool serves as a valuable resource for cybersecurity practitioners and tech-savvy students looking to enhance their engagement and productivity in digital platforms.

ObuscatedBOT

2026-08-27 JavaScript ★ 10
ObuscatedBOT is a multi-functional Telegram bot designed for performing instant network scans and providing security insights, aimed at ethical hackers and security enthusiasts. Key features include real-time alerts for suspicious activity, comprehensive vulnerability reports, and a user-friendly interface within the Telegram platform, facilitating easy navigation and interaction.

Acunetix-Premium-Web-Scanner

2026-08-26 ★ 15
Acunetix Premium Web Scanner - Practical Windows release with complete modules and an easy first launch.

defango

2026-08-26 Go ★ 22
Defango is a Golang tool designed for defanging URLs, IP addresses, and emails to neutralize Indicators of Compromise (IoCs) for safer analysis and sharing. Its primary use case is to convert potentially harmful IoCs into harmless formats for security practitioners. Notable features include easy integration and usage through its package methods, enabling users to sanitize malicious content seamlessly.

guardana

2026-08-25 Python ★ 116
Guardana is an open-source AI security verification tool designed to assess AI artifacts and deployed models for security vulnerabilities from the build stage to production. It features 51 configurable security checks, deterministic evidence collection, and graded verdicts for attack impact assessment, ensuring comprehensive reporting on model behavior and security weaknesses. Notably, it maintains user privacy by avoiding telemetry and streamlines grading through swappable components, offering detailed outcomes and confidence metrics for its findings.

ruoyi-scan

2026-08-25 Python ★ 19
Ruoyi-Scan is a specialized vulnerability scanning tool designed for RuoYi applications, featuring a plugin-based architecture and three-state assessment (CONFIRMED / SAFE / UNKNOWN) for vulnerability status. It supports bulk scanning, multiple report formats, WAF bypass techniques, and offers enterprise-level functionalities such as API integration and a robust plugin ecosystem for various common vulnerabilities. Noteworthy capabilities include automated AI-based POC generation, extensive reporting options, and compatibility with various operating environments.

Oxide-communityedition-v8.7.2

2026-08-22 Rust ★ 13
OXIDE is a precision-forged vulnerability scanner developed in Rust, designed primarily for authorized penetration testing and security research. It features a unique combination of traditional scanning methods and machine learning-based anomaly detection, along with integrations for tools like Burp Suite, and offers a modular architecture for extensibility. Notable features include a headless DOM, WAF evasion capabilities, and enhanced security with an embedded TLS certificate, making it suitable for use in both lab environments and real-world assessments.

KrazePlanetCTF

2026-08-22 PHP ★ 12
KrazePlanetCTF is an open-source web security training platform that features over 260 interactive challenges within isolated per-user sandboxes, enabling hands-on learning for cybersecurity professionals. Its primary use case is to facilitate practical training in web security through real-world scenarios, while notable features include Docker-based deployment and easy management via command-line tools for viewing logs and controlling the platform's state.

boggart

2026-08-21 Go ★ 38
Boggart is a low-interaction experimental honeypot designed for mimicking specific host behaviors to attract and analyze potential threats in a home lab environment. Its notable features include a customizable configuration via `config.yaml`, support for multiple open ports (including a honeypot, dashboard, and API service), and deployment capabilities using Docker. This tool serves primarily for educational and experimental purposes, providing insights into attacker behaviors without being intended for professional or industrial use.

Web-Security-Analizer-Pro

2026-08-21 Python ★ 19
Web Security Analyzer Pro is an advanced web security analysis tool designed for system administrators, developers, and security professionals, providing detailed examination of HTTP headers, cookies, common vulnerabilities, and SSL/TLS configuration. It operates without external queries, generating comprehensive security reports using only HTTP responses, and includes features such as CVE detection from a vast offline database, automated security scoring, and an interactive visual interface. Notable capabilities include in-depth analysis of security headers, cookie security flags, and the identification of technologies used in web applications.

yentra

2026-08-19 Java ★ 13
Yentra is a Burp Suite extension designed to streamline collaborative security testing by deduplicating proxy history into a real-time unique request feed and color-coding traffic based on listener ports. Its notable feature, Live Share, enables real-time peer-to-peer sharing of HTTP requests without prior registration, accompanied by robust tools like a Magic Cookie, Match & Replace, and an inline Repeater for enhanced testing efficiency. Additional capabilities include automatic sharing of unique requests, replay options through local proxies, and integration with AI services for exporting requests.

bugbountyrules

2026-08-19 Shell ★ 31
bugbountyrules is an AI agent skill designed for authorized bug bounty and penetration testing, emphasizing disciplined and methodical hunting behavior. It features 42 active rules to minimize false positives, avoid severity inflation, and ensure thorough surface coverage while performing tests across web, API, mobile, cloud, and LLM environments. The tool operates on a structured approach to testing, maintaining an organized flow of reconnaissance and validation while integrating a robust knowledge base for on-demand information retrieval.

mastyf.ai

2026-08-18 TypeScript ★ 18
Mastyf.ai is a perimeter security tool designed to enforce security policies for AI agents by intercepting and analyzing tool calls in real-time to prevent unauthorized actions. Its primary use case is to mitigate threats such as prompt injection, data exfiltration, and shell injection while providing a full audit trail of all AI activities. Notable features include multi-agent swarm analysis for policy evaluation, a comprehensive dashboard for activity visibility, and the ability to block malicious actions before execution.

TikTok-SSL-Pinning-Bypass

2026-08-18 ★ 10
TikTok-SSL-Pinning-Bypass is a tool designed to intercept network traffic from the TikTok application on Android devices without the need for rooting. It supports Android versions 6.0 and above, and has been successfully tested using Mitmproxy in a non-root environment, specifically for the arm64-v8a architecture. Notable features include the ability to bypass SSL pinning, compatibility with real Android devices and AVD emulators, and the provision of a free patched APK that resolves specific login errors.

xaidr

2026-08-17 Python ★ 26
`xaidr` is a runtime security tool designed for AI agents that operates in-process with zero dependencies. It inspects agent interactions—input, tool calls, output, and inter-agent communications—to detect and prevent various security threats like prompt injection and unauthorized actions in real-time. The tool features a monitoring mode for assessment, a blocking mode for enforcement, and can emit structured telemetry to existing systems without requiring a network connection.

P4wnP1-Infinition-Payloads

2026-08-16 JavaScript ★ 34
P4wnP1 Infinition Payloads is a collection of JavaScript and Bash scripts designed for the P4wnP1 A.L.O.A. platform, facilitating credential harvesting, file exfiltration, and remote access primarily on Windows 10 systems. Notable features include the ability to stealthily operate through minimized PowerShell sessions, support for French and US keyboard layouts, as well as methods for disabling Windows Defender and retrieving sensitive information directly to a Samba share. This tool is intended for authorized penetration testing and security research.

ExploiterX

2026-08-16 Python ★ 16
ExploiterX 3.0 is an enterprise-grade web vulnerability scanner designed for security professionals and developers, capable of detecting a wide range of vulnerabilities including XSS, SQL Injection, and CSRF. Its notable features include advanced scanning capabilities with over 20 XSS payload variants, concurrency support for parallel scanning, intelligent HTML form parsing, and comprehensive reporting in multiple formats. Additionally, the tool emphasizes resilience with built-in retry mechanisms, robust error handling, and secure reporting to prevent common security vulnerabilities in output.

Auto_JB_APE

2026-08-15 Python ★ 13
jb_ape is an automated red-team engine designed to perform security assessments by probing target defenses, generating and mutating attack payloads through browser or API interfaces. It features a unique three-tier judgment system that ensures machine-verified outcomes for every attempt, employs a controlled submission budget to enhance efficiency, and utilizes reinforcement learning techniques to optimize the attack strategy while avoiding guessing. This tool is intended strictly for authorized use in sanctioned environments such as penetration testing or capture-the-flag competitions.

KageTarget

2026-08-15 TypeScript ★ 16
KageTarget is a Chrome extension designed for local web reconnaissance, enabling users to analyze the currently active tab or manually entered HTTP(S) addresses. Notable features include technology detection with evidence, detailed inspections of HTTP and security headers, and historical URL discovery through the Internet Archive, along with options for focused analysis and customizable user interface in multiple languages.

opencode-pentester

2026-08-14 Shell ★ 21
opencode-pentester is an AI-powered penetration testing and security audit framework designed to automate bug bounty hunting and vulnerability assessments. It orchestrates 12 specialized AI agents across 69 attack categories and 17 OWASP security audits, enabling comprehensive offensive and defensive testing. Notable features include the ability to run automated tests, generate professional reports, and integrate a wide array of security tools, making it suitable for security researchers, penetration testers, and DevSecOps engineers.

Mingyi-Atlas

2026-08-13 TypeScript ★ 11
Mingyi Atlas is a terminal AI agent designed for software engineering and authorized security assessments, offering an interactive TUI, headless automation, persistent project context, and specialized penetration testing modes. It features multi-model support, OAuth and API Key authentication, and structured workflows for reconnaissance, validation, reporting, and remediation, specifically catering to security tasks while ensuring non-destructive testing. The tool allows users to orchestrate security assessments with built-in skills and provides extensive CLI commands for project management and configuration.

HunterX

2026-08-13 Python ★ 13
HunterX is an AI-assisted offensive security engine designed for conducting authorized security assessments, integrating tools for reconnaissance, hypothesis-driven investigation, vulnerability validation, and professional reporting into a unified workflow. Unlike traditional vulnerability scanners, HunterX emphasizes thorough investigation and validation, ensuring that findings are evidence-based and report-ready. Notable features include AI-assisted reasoning, proof of concept engineering, and capabilities for reproducibility and impact assessment, enhancing the reliability of security assessments.

Telkin

2026-08-12 C++ ★ 11
A dynamic Wii U mod loader.

web-of-flaws

2026-08-12 Python ★ 18
Web of Flaws is a Markdown-based catalog that identifies vulnerable web patterns alongside safer alternatives, aimed at both developers and automated tools. Its primary use case is to educate users on exploitable vulnerabilities and provide concrete code examples for remediation, organized by security topics and vulnerability families. Notable features include detailed guides that explain risky patterns and their fix implementations.

ai-scraping-defense

2026-08-11 Python ★ 12
AI Scraping Defense is a robust microservice-based system designed to protect web applications from advanced AI-driven scrapers and bot attacks. It features a layered defense approach utilizing Nginx, Lua, and Python microservices, along with tools for intelligent traffic analysis and machine learning integration, allowing for flexible defense mechanisms. Notable features include adaptive rate limiting, active countermeasures like a Tarpit API, optional CAPTCHA verification, and a community blocklist service, making it a versatile solution for modern web security challenges.

attack-surface-toolkit

2026-08-11 HTML ★ 23
Attack Surface Toolkit is a passive reconnaissance tool designed for authorized web security assessments that maps external exposures of web targets through OSINT and non-destructive metadata collection. Its primary use case is to provide clear and actionable insights into an organization’s attack surface without engaging in invasive testing, presenting findings in a structured format suitable for both technical and non-technical stakeholders. Notable features include comprehensive subdomain enumeration, DNS analysis, SSL/TLS inspection, security header audits, technology detection, and a weighted scoring system, all culminating in professional-grade reports formatted for client deliverables.

Web_Vulnerability_Scanner-AI

2026-08-11 Python ★ 31
The Learning Grade AI Web Vulnerability Scanner is a non-destructive tool designed for identifying common web security issues such as unauthorized security headers, insecure cookie flags, and potential SQL injection vulnerabilities. It features a queue-based crawling mechanism for polite scanning, an AI-assisted report viewer for enhanced analysis, and requires explicit user confirmation for ethical scanning practices. This tool is particularly suited for educational purposes and authorized security assessments.

SagarBiswas-MultiHAT

2026-08-11 ★ 30
SagarBiswas-MultiHAT is a GitHub repository showcasing a range of cybersecurity and web development projects by Sagar Biswas, a Computer Science and Engineering student. The repository includes open-source tools focused on web application security and ethical hacking, featuring a system called "PromptVault" that enables users to securely manage AI prompts with features like PIN protection, organizational categories, and optional cloud synchronization.

xsscan

2026-08-11 Python ★ 11
XSScan is a Playwright-based automated tool designed for bug bounty hunters and security researchers to detect executed cross-site scripting (XSS) vulnerabilities. Key features include real browser execution using Chromium, intelligent form submission, recursive crawling, and auto-generated reports of confirmed XSS findings, ensuring focus on vulnerabilities that are genuinely executed rather than merely reflected.

Windfall

2026-08-11 Ruby ★ 18
Windfall is an exploitation framework that targets critical vulnerabilities in Windmill and Nextcloud Flow, specifically focusing on unauthenticated path traversal and authenticated SQL injection vulnerabilities. Its primary use case is to demonstrate how these vulnerabilities can lead to credential leaks and remote code execution, thereby enabling an attacker to exploit the affected systems. Notable features include a comprehensive assessment of the vulnerabilities' impact with high CVSS scores and detailed analysis of attack vectors, enhancing the tool's utility for security researchers and penetration testers.

awesome-cybersecurity-books

2026-08-11 ★ 42
This repository offers a curated collection of over 70 free cybersecurity books organized by domain and difficulty, facilitating self-paced learning in various cybersecurity disciplines. Notable features include a structured learning roadmap progressing from beginner to advanced levels, an emphasis on community maintenance for up-to-date resources, and a direct link to an extensive Google Drive library containing the materials.

ai-red-teaming

2026-08-11 Python ★ 26
Red-Team AI is a white-box red teaming tool designed specifically for agentic AI applications, capable of reading source code to identify vulnerabilities that are unique to a particular technology stack. Its primary use case involves generating tailored attacks based on an application's specific implementation, rather than relying on generic adversarial prompts. Notable features include a modern React dashboard for scan management and compliance tracking, as well as integrations with popular agent frameworks, facilitating extensive security assessments and risk assessments for AI systems.

penetration-testing-roadmap

2026-08-11 ★ 47
The Penetration Testing Roadmap is a comprehensive, self-paced 60-week curriculum aimed at developing expertise in penetration testing, ethical hacking, and network security. It features structured learning paths, hands-on practice through over 500 free labs, and an extensive tools directory, enabling learners to transition from novices to market-ready professionals. Additionally, it encompasses crucial topics such as web application vulnerabilities and emerging cybersecurity trends.

BSCP-EXAM-GUIDE-BY-N3OARI-2026

2026-08-11 Go ★ 29
The "BSCP Exam Guide by N3OARI 2026" repository provides a comprehensive collection of personal cheatsheets and methodologies tailored for the BSCP exam, encompassing key topics and relevant labs. Notable features include organized content that facilitates learning through practical examples, alongside recommended resources for each phase of the exam focused on web security vulnerabilities and exploitation techniques. This tool serves as a structured guide for preparing for the BSCP exam, emphasizing the importance of creating individualized study materials.

Auto-Android-App-Modding-Tool

2026-08-10 Python ★ 18
UAMT (Ultimate Auto Android App Modding Toolkit) is a Termux-based toolkit for modifying Android APKs without requiring root access. Its primary use case includes injecting Frida Gadget and custom native libraries, alongside features such as a full APK rebuild pipeline, smart detection of injection methods, and an interactive TUI for user-friendly operation. Notable functionalities include automatic dependency management, safe modding practices, and optimized performance for Android security research and reverse engineering tasks.

Claude-Pentest-Skills

2026-08-10 Shell ★ 11
Claude Pentest Skills is a specialized tool designed for structuring and automating penetration testing workflows within the Claude Code LLM environment. It features modular skill packs that provide comprehensive Active Directory reconnaissance, exploitation, and post-exploitation processes, along with robust functionalities such as checkpointing, parallel execution, and cross-platform support. Notable functionalities include automated evidence capture, JSON reporting, and seamless integration with multiple external tools for enhanced penetration testing efficacy.

AdminFinder

2026-08-09 Perl ★ 11
OpenFire AdminFinder is a legacy Perl utility for discovering common administrative login paths on web applications developed in ASP, CFM, PHP, or Java. It analyzes responses for login-form indicators but does not bypass authentication or confirm vulnerabilities, necessitating manual verification of results. Designed for ethical penetration testing, it requires explicit permissions to run and should be used with caution due to potential false positives.

HackMeGPT

2026-08-09 Python ★ 14
HackMeGPT is a CTF-style laboratory designed for practicing LLM prompt injection, where users must extract a secret "favorite item" through a series of increasingly difficult levels and unlock subsequent stages using a command-based interface. This tool features a unique level board with various defenses and secrets, an independent browser session for tracking player progress, and customizable settings for different LLM providers. Notable functionalities include environmental configuration, flag injection for each level, and restrictions on client access to settings APIs, enhancing the challenge and security aspects of the training tool.

Auto-IDOR

2026-08-09 Python ★ 15
IDOR-Auto is an advanced testing tool designed specifically to identify Broken Object-Level Authorization (BOLA) or Insecure Direct Object Reference (IDOR) vulnerabilities by employing differential access testing rather than relying on simple HTTP status codes. It distinguishes itself by utilizing multiple identity responses to determine if one user can access another user's data, while effectively minimizing false positives through robust response comparison, identifier analysis, and support for various input formats. Key features include canary detection, injection point flexibility, identification of encoded IDs, method tampering, and direct raw request importation, making it suitable for authorized security testing in penetration tests and bug bounties.

integrated-security-testing-environment

2026-08-08 Java ★ 62
ISTE (Integrated Security Testing Environment) is a comprehensive Burp extension designed to streamline the security testing process for web applications. It offers features such as URL management, note-taking linked to raw logs, progress tracking, and advanced functionalities like repeat request customization and authentication flow handling. Notable capabilities include a request chain management system that automates the execution of multiple requests in sequence, enhancing efficiency in testing scenarios while reducing the complexity of maintaining parameter consistency.

ghost

2026-08-08 Rust ★ 387
Ghost is a robust process injection detection tool developed in Rust, designed to monitor running processes for signs of code injection, memory manipulation, and other malicious activities on Windows, Linux, and macOS. Its notable features include detection of memory anomalies, shellcode patterns, API hooks, and thread hijacking, all while mapping behaviors to the MITRE ATT&CK framework to aid in threat documentation. The tool offers both a command-line interface and an interactive terminal UI, providing real-time scanning results and support for extensible features like YARA rule scanning and neural ML integration.

ONUS

2026-08-06 Python ★ 11
ONUS is a locally-hosted vulnerability assessment and penetration testing tool designed for conducting comprehensive scans on authorized target domains. It features eight parallel scanning modules that assess various security aspects, employs deterministic CVSS v3.1 scoring for findings, and optionally utilizes AI for generating user-friendly remediation instructions, delivering results in both a PDF report and an interactive web dashboard. This air-gapped solution prioritizes simplicity and security, requiring no external dependencies or user accounts for self-hosted deployments.

CVE-2026-60004-POC

2026-08-06 Python ★ 17
The CVE-2026-60004-POC tool provides a proof-of-concept for exploiting a pre-authentication remote code execution vulnerability in Gitea versions 1.17 through 1.27.0, with a CVSS score of 9.8. This exploitation occurs via the `diffpatch` API endpoint, allowing attackers to inject malicious Git hooks that execute arbitrary commands by manipulating Git's patch processing. Notable features include two operational modes for automation and the ability to retrieve command output directly from the target server after exploitation.

inkog

2026-08-05 Go ★ 29
Inkog is a static analysis tool designed to perform pre-flight checks on AI agents, identifying vulnerabilities unique to agent code, such as token bombing, prompt injection, and compliance gaps. It generates detailed reports that align with standards like the EU AI Act and OWASP guidelines, offering insights into critical security flaws and oversight issues. Notable features include easy integration with CI/CD processes, a no-install command-line option, and compatibility with multiple platforms.

SkillSpector

2026-08-05 Python ★ 15401
SkillSpector is a security scanner designed for evaluating AI agent skills, identifying vulnerabilities and malicious patterns prior to their installation. It features multi-format input support, a two-stage analysis combining static and semantic evaluations, and live vulnerability lookups with real-time CVE data. The tool generates comprehensive reports and risk scores, making it integral to ensuring the safety of AI skill deployments.

pwn

2026-08-05 Ruby ★ 76
PWN is an open-source Ruby toolkit designed for offensive security automation, integrating various tools used in OSINT, network scanning, and vulnerability testing within a single workspace. Its primary use case is to streamline red teaming and pentesting efforts by providing a unified framework that supports automation through a tool-calling AI agent and a flexible plugin architecture. Notable features include 66 plugins, support for multiple LLM engines, and a feedback loop system that learns from previous mistakes, enhancing the efficiency of security assessments.

modelfuzz

2026-08-05 Python ★ 14
ModelFuzz is a runtime guardrails tool designed to intercept and prevent unsafe tool calls made by AI agents due to prompt injection attacks. It checks each argument against defined policies before execution, ensuring that only permitted actions, such as API calls to whitelisted domains, are executed, effectively blocking any malicious attempts. Notable features include support for both synchronous and asynchronous function wrapping, configurable policies, and logging of blocked actions for auditing purposes.

hermes-katana

2026-08-04 Python ★ 48
Hermes Katana is a defense-in-depth security tool designed for AI agents, providing mechanisms for tracking input provenance, scanning content for prompt injections, and enforcing YAML policies before tool execution. Notable features include configurable human-in-the-loop escalation, purpose-trained injection classifiers, and a tamper-evident audit trail for decision-making, all aimed at enhancing the security posture of AI applications. This tool is particularly useful for developers looking to safeguard AI systems from potential vulnerabilities and malicious inputs.

KittyMemoryEx

2026-08-04 C++ ★ 178
KittyMemoryEx is an advanced memory manipulation toolkit designed for remote memory patching, scanning, and ELF introspection on Android and Linux platforms. Its notable features include dual remote memory backends, comprehensive pattern scanning, various ptrace utilities for process control, and the ability to perform remote function and syscall calls, making it an essential tool for security researchers and developers focused on reverse engineering and debugging applications in remote environments.

AlwaysOnTop

2026-08-04 C ★ 69
AlwaysOnTop is a Windows utility designed to elevate a program's window to a higher Z-order position by obtaining UIAccess permissions, allowing it to remain on top of other windows, including system-level tools like the Task Manager. Its primary use case is to prevent interruptions during screen recording or marking sessions by ensuring that the program window is not obscured. Notably, it optimizes the UIAccess acquisition process, minimizing the number of required process startups and simplifying the privilege elevation methodology.

Bypass-SetWindowDisplayAffinity

2026-08-04 C++ ★ 146
Bypass-SetWindowDisplayAffinity is a kernel-level tool designed to bypass Windows' screen capture protections enforced by the SetWindowDisplayAffinity API. Its primary use case is for educational and research purposes, demonstrating how display affinity can be neutralized at the kernel level without relying on user-mode APIs or DLL injection techniques. Noteworthy features include its functionality in a virtualized environment and the emphasis on thorough documentation for kernel modifications and driver installation considerations.

SetWindowDisplayAffinity-Bypass

2026-08-04 ★ 136
SetWindowDisplayAffinity-Bypass is a tool designed to bypass Windows' screen capture protections that utilize the `SetWindowDisplayAffinity` API. It employs a non-invasive technique to capture screenshots of applications protected by flags like `WDA_MONITOR` or `WDA_EXCLUDEFROMCAPTURE`, without resorting to DLL injection or API hooking, thus avoiding modification of the target process. This method aims to provide a stealthier approach for researching screen capture limitations, though it may not be universally effective across all Windows versions or GPU drivers.

urlx

2026-08-04 Go ★ 25
urlX is a high-performance reconnaissance tool designed for bug bounty hunters, penetration testers, and security researchers. It facilitates passive URL discovery from over 11 intelligence sources, live host probing, and active web crawling, while utilizing Go routines for fast and concurrent processing. Notable features include smart file and extension filtering, minimal setup requirements, and support for enhancing results with optional API keys from various providers.

dalfox

2026-08-03
Dalfox is an advanced open-source tool designed for automated scanning and analysis of XSS vulnerabilities in web applications. The tool features a robust testing engine capable of reflecting, storing, and DOM-based XSS detection, while also providing extensive options for parameter analysis, WAF fingerprinting, and customizable HTTP requests. It supports various output formats and integrations, offering users flexibility in vulnerability detection and reporting workflows.

findom-xss

2026-08-03
FinDOM-XSS is a specialized tool designed for detecting potential DOM-based XSS vulnerabilities in web applications rapidly. Its primary use case involves scanning specified URLs or lists of URLs to identify any security weaknesses, with the capability of outputting results to a designated file. Key features include its straightforward command-line interface and flexibility in handling multiple URLs through piping, complemented by dependency on LinkFinder for enhanced functionality.

Unifi-Dynamic-Threat-Intel-Feed

2026-08-03
The Unifi-Dynamic-Threat-Intel-Feed tool automates the integration of external threat intelligence feeds into the UniFi platform by directly modifying the MongoDB database. Its primary use case involves downloading, parsing, and applying updates from remote IP feeds (defaulting to FireHOL Level1) to the UniFi firewall configuration, efficiently managing changes using local caching and delta updates. Notable features include support for safe batch processing of IP entries and the ability to set up automated regular updates via cron jobs.

XRCross

2026-08-03
XRCross is a reconnaissance and penetration testing tool designed for identifying various web vulnerabilities including XSS, SSRF, CORS, SSTI, IDOR, RCE, LFI, and SQLI. Notable features include URL and subdomain enumeration, AWS bucket enumeration, and support for various test parameters, such as command injection and redirection checks. The tool is implemented in Bash and offers a flexible command-line interface with numerous options for detailed vulnerability assessment.

crlf-injector

2026-08-03
CRLF.py is a penetration testing tool designed to automate CRLF (Carriage Return Line Feed) injection attacks. It allows users to specify a domain list and craft payloads to test for vulnerabilities related to HTTP response splitting. Notable features include support for Python 2.7 and the ability to use custom CRLF payloads for injecting malicious cookies.

XSpear

2026-08-03
XSpear is a Ruby-based XSS scanner that provides a comprehensive suite of tools for detecting cross-site scripting vulnerabilities within web applications. Its primary use case includes pattern matching XSS scans, dynamic and static analysis of security headers, and testing various parameters for XSS attacks, with additional functionality for blind XSS detection. Noteworthy features include support for custom payloads, detailed reporting in multiple output formats (CLI, JSON, HTML), and a versatile command-line interface with adjustable verbosity levels for enhanced scanning insights.

XSStrike

2026-08-03
XSStrike is an advanced Cross Site Scripting (XSS) detection suite that uses custom parsers and a sophisticated payload generator to analyze web responses and craft effective XSS payloads based on context analysis. Its primary use case is to identify and exploit reflected and DOM-based XSS vulnerabilities, complemented by capabilities such as multi-threaded crawling, WAF detection, and a powerful fuzzing engine. Notable features include a handmade HTML and JavaScript parser, intelligent payload crafting, and support for brute-forcing payloads, making it a comprehensive tool for web security assessments.

XSS-LOADER

2026-08-03
XSS-LOADER is a comprehensive tool designed for generating and scanning XSS (Cross-Site Scripting) payloads, as well as finding vulnerable websites using XSS dorks. It features a user-friendly interface that allows customization of payloads across various HTML tags, encoding options, and pre-defined payload types to facilitate effective XSS attacks and testing. Notable capabilities include an extensive library of payload forms, encoding mechanisms, and automated scanning for XSS vulnerabilities in web applications.

X-Recon

2026-08-03
X-Recon is a reconnaissance tool designed to identify web page inputs and perform XSS vulnerability scanning by extracting forms and links from websites. Key features include subdomain discovery, comprehensive link extraction, and the generation of JSON outputs to facilitate XSS testing, though it is currently optimized for PHP-based applications rather than Single Page Applications. The tool also allows users to customize which file types to skip during exploration, enhancing its adaptability for various scanning needs.

xsscrapy

2026-08-03
xsscrapy is a fast, thorough web spider designed to test URLs for cross-site scripting (XSS) and basic SQL injection vulnerabilities by crawling all linked pages. Notable features include customizable options for logging in with HTTP Basic Auth, handling cookies, and controlling the rate of requests, alongside generating reports of identified XSS vulnerabilities. The tool utilizes efficient techniques to detect vulnerabilities, combining the detection of XSS and SQL injection through the analysis of common attack patterns.

BurpSuite-Asset_Discover

2026-08-03
BurpSuite-Asset_Discover is a Burp Suite extension designed for passive HTTP response scanning to identify various types of assets, such as domains, subdomains, IPs, and S3 buckets. Notable features include the ability to automatically parse responses from URLs in scope and report assets as informational issues, facilitating comprehensive attack surface management. The extension can be easily installed from the BApp store, requiring Jython setup for optimal functionality.

NucleiFuzzer

2026-08-03
NucleiFuzzer is an advanced automation tool designed for web application security testing, combining various URL discovery and vulnerability scanning utilities, including ParamSpider, Waybackurls, and Nuclei. It offers comprehensive URL enumeration, enhanced fuzzing for vulnerability detection, and advanced filtering techniques to ensure accurate scanning results. Key features include customizable request rates, user-friendly configuration options, and reporting capabilities, catering to security professionals and web developers for effective security assessments.

Folly

2026-08-03
Folly is a robust toolkit designed for assessing security vulnerabilities and boundaries in Large Language Models (LLMs) through prompt injection testing. Key features include an interactive testing framework, multi-provider support for various LLM services, a comprehensive challenge library, and both web and command-line interfaces for seamless user interaction and automation.

angularjs-csti-scanner

2026-08-03
Angular Client-Side Template Injection Scanner (ACSTIS) is a tool designed for identifying AngularJS Client-Side Template Injection vulnerabilities within web applications. It offers capabilities to scan individual URLs or crawl entire domains, with options for verifying payload execution and logging vulnerable requests, enhancing its efficacy in detecting security flaws in AngularJS implementations. Notable features include customizable scanning options such as the ability to halt scans upon finding vulnerabilities and support for specifying the Angular version in use.

OWASP-Xenotix-XSS-Exploit-Framework

2026-08-03
OWASP Xenotix XSS Exploit Framework is a sophisticated tool designed for detecting and exploiting Cross Site Scripting (XSS) vulnerabilities. It boasts zero false positive scanning through its Triple Browser Engine and features over 1500 distinct XSS payloads, facilitating both vulnerability detection and WAF bypass. Additionally, it includes a comprehensive information gathering module and offensive XSS exploitation capabilities aimed at penetration testing and proof of concept development.

PwnXSS

2026-08-03
PwnXSS is a Python-based XSS scanner designed to identify cross-site scripting vulnerabilities in web applications. Its primary use case involves crawling websites to detect potential XSS weaknesses in both GET and POST forms through customizable settings and advanced error handling. Notable features include multiprocessing support, the ability to handle various HTTP methods, and the option to configure proxies and user agents for more thorough testing.

XSSCon

2026-08-03
XSSCon is a Python-based tool designed for scanning websites for Cross-Site Scripting (XSS) vulnerabilities. It features a web crawler that traverses all links, supports both GET and POST forms, allows advanced customization through command-line options, and implements multiprocessing for enhanced performance. Notable functionalities include comprehensive error handling and the ability to manage cookies, making it a versatile choice for penetration testers.

awesome-injection

2026-08-03
The "awesome-injection" repository is a comprehensive catalog of known process injection techniques and proofs of concept (POCs) across both Linux and Windows platforms. It supports cybersecurity research and education by organizing various process-spawning and injection methods while highlighting notable techniques like Process Hollowing and PTRACE. The repository also encourages contributions to keep its content extensive and up-to-date.

fuzzdb

2026-08-03
FuzzDB is a comprehensive dictionary designed for dynamic application security testing, focusing on identifying vulnerabilities through a vast collection of fault injection patterns and predictable resource locations. It features categorized attack payloads for various types of injection attacks, a discovery module for common resource locations, and regex patterns to analyze server responses, making it an essential tool for penetration testers and security researchers. Its extensive documentation and integration capabilities with tools like OWASP Zap and Burp Suite enhance its usability in crafting effective security test cases and improving overall testing strategies.

extension-portal

2026-08-03
The BApp Store Extension Submission Portal is a repository designed for developers to submit new Burp Suite extensions and updates for consideration to the BApp Store. Key features include an automated review tracking system, detailed submission guidelines, and a streamlined process for modifying submissions based on feedback from the review team.

ai-prompt-ctf

2026-08-03
Agentic LLM CTF to test prompt injection attacks and preventions

bfinject

2026-08-03
bfinject is a dylib injection tool designed for jailbroken 64-bit iOS devices running versions 11.0 to 11.1.2, supporting both Electra and LiberiOS jailbreaks. Its primary use case is to load arbitrary dynamic libraries into running App Store applications while providing built-in capabilities for app decryption and integration with tools like Cycript and iSpy. Notable features include automatic code signing of dylibs prior to injection, a user-friendly wrapper for simplified command execution, and comprehensive support for various injection methods through process ID or application name.

InjectionIII

2026-08-03
InjectionIII is a code injection tool designed to facilitate hot reloading for Swift applications in the iOS simulator, allowing developers to incrementally update the implementation of functions and methods without needing a full rebuild. Key features include dynamic re-compilation of edited source files into libraries, automatic re-injection into the running application, and the ability to configure Xcode for seamless integration. This tool significantly streamlines the development process by enabling real-time code tweaks and design iterations.

mcp-server

2026-08-03
The Burp Suite MCP Server Extension facilitates the integration of Burp Suite with AI clients through the Model Context Protocol (MCP), enabling enhanced interaction for security testing. Key features include automatic setup for Claude Desktop clients and a pre-packaged Stdio MCP proxy server, allowing users to effectively communicate with Burp Suite. Configuration can be easily managed within the Burp UI, supporting custom server settings and real-time integration with AI tools.

eslint-plugin-xss

2026-08-03
eslint-plugin-xss is a static analysis tool designed to identify potential XSS vulnerabilities in JavaScript code before deployment. This ESLint plugin includes rules that alert developers to issues such as mixed HTML content and unsafe manipulations of the `location.href` property. Its primary use case is to enhance web application security by ensuring code adheres to best practices in preventing cross-site scripting attacks.

ai-prompt-fuzzer

2026-08-03
AI Prompt Fuzzer is a Burp Suite extension designed to identify and mitigate vulnerabilities in AI-based applications, particularly focusing on prompt injection risks. It automates the testing process by sending preloaded payloads to AI prompt APIs, analyzing responses for specific indicators of harmful behavior, and includes advanced features like AI-assisted testing for enhanced efficiency. The tool provides a seamless interface for security professionals to review and refine payloads, enabling comprehensive vulnerability assessments of large language model interactions.

Brida

2026-08-03
Brida is a Burp Suite extension designed to bridge the gap between Burp and Frida, enabling security professionals to manipulate application methods while intercepting communication between applications and their backend servers. The tool includes a collection of Frida hooks for common tasks, a graphical analysis interface for binary inspection, and an integrated JavaScript editor for custom script development, thereby accelerating mobile assessments and addressing complex security challenges inherent in mobile application architectures. Its primary use case is to assist pentesters in analyzing mobile applications with sophisticated security measures that hinder traditional testing methodologies.

burpsuite-ai-pal-ext

2026-08-03
AI Pal is a Burp Suite extension that leverages Large Language Models (LLMs) to enhance vulnerability analysis, generate attack vectors, and clarify HTTP traffic for security researchers. Key features include support for multiple LLM providers, context-driven actions for analyzing requests and responses, an interactive chat interface for conversational engagement on vulnerabilities, and a tasks dashboard that tracks analysis operations. This tool aims to streamline the workflow of security professionals by integrating AI-powered capabilities directly within the Burp Suite environment.

BurpSuiteHTTPSmuggler

2026-08-03
Burp Suite HTTP Smuggler is a Burp Suite extension designed for penetration testers to effectively bypass Web Application Firewalls (WAFs) and assess their security efficacy using various techniques. It currently features an encoding capability, simplifying the complex manual processes involved and aims for future updates that will introduce additional techniques and bug fixes.

DuckDuckBurp

2026-08-03
DuckDuckBurp is a powerful analytical tool that integrates with Burp Suite, allowing users to perform SQL queries and AI-assisted analysis on their proxy traffic using DuckDB. It enhances cross-request security investigations by providing a comprehensive SQL interface for querying traffic data, enabling users to easily identify patterns and anomalies, such as unauthorized access or potential vulnerabilities. Notable features include a dedicated SQL Query Tab with 36 pre-built queries, an AI Analyst Tab that generates SQL from plain-English questions, and a live Dashboard for monitoring traffic metrics.

www-project-web-security-testing-guide

2026-08-03
The OWASP Web Security Testing Guide (WSTG) repository provides the resources necessary to build and maintain the project's webpage on the OWASP site. It is primarily utilized for developers and contributors looking to set up a local development environment for Jekyll-based content, with notable features including detailed setup instructions and guidelines for contributions to the guide.

TripleCross

2026-08-03
TripleCross is a Linux eBPF rootkit designed to illustrate the offensive capabilities of eBPF technology, developed as part of an academic thesis. Its primary use case involves demonstrating various malicious functionalities including library injection, execution hijacking, local privilege escalation, and stealth operations, all while maintaining a backdoor with command-and-control capabilities. Notable features include persistence across reboots and multiple methods for remote command execution, showcasing advanced techniques for evasion and control.

AymanSecNotes

2026-08-03 ★ 11
AymanSecNotes is a personal compilation of cybersecurity notes in PDF format, primarily serving as a self-study resource for various security domains including mobile, web, and networks. Notable features include plans for future enhancements such as a comprehensive cheatsheet, the transition from PDF to Markdown format, and the inclusion of methodologies and bug hunting tips, aimed at facilitating practical learning and knowledge sharing within the cybersecurity community.

Love.exe

2026-08-03 ★ 15
Love.exe is a development tool designed for exploitation and penetration testing in Windows environments, specifically optimized for Windows 10 and 11 with default UAC settings. It offers functionalities to assist security professionals in identifying vulnerabilities within applications, and it encourages community engagement for enhancements and support. The repository is currently under active development, indicating ongoing updates and feature additions.

cybersec-notes

2026-08-03 ★ 14
Cybersec Notes is a comprehensive, expandable checklist aimed at individuals seeking to enhance their knowledge in various cybersecurity domains, including application, mobile, API, and network security. The tool features a structured outline of key topics and vulnerabilities, supplemented with resource links, while encouraging community contributions for continuous improvement and accuracy. Notable aspects include coverage of OWASP Top 10 vulnerabilities across multiple platforms and concepts related to DevSecOps.

Flanders-Trojan

2026-08-03 C++ ★ 21
Flanders-Trojan is a Windows-based trojan developed for academic purposes that employs C++ and consists of three main components: a Loader for initial setup and privilege escalation, a Payload for executing various malicious actions (such as file encryption, keylogging, and DDoS attacks), and a Server that functions as the command and control center for managing infected devices. Notable features include VM detection, UAC bypass, and real-time communication with a C2 server, highlighting its capabilities in orchestrating cyberattacks and gathering sensitive information.

Jr-Pentester-TryHackMe

2026-08-03 ★ 11
The Jr Penetration Tester repository provides solutions and an answer key for the Penetration Tester learning path on TryHackMe, aimed at equipping users with essential skills for a career in penetration testing. It covers various critical topics, including web hacking, Burp Suite, network security, vulnerability research, and exploitation techniques using Metasploit. Notable features include comprehensive sections that guide learners through foundational concepts and practical applications in cybersecurity.

AKQ-PipeFS-ZeroDay-Exploit

2026-08-03 Shell ★ 13
AKQ_0D_PE is a playful tool designed to simulate a Zero-day local privilege escalation exploit targeting a vulnerability in the Linux PipeFS subsystem. It demonstrates memory corruption techniques, ROP injection, and namespace traversal, all while providing an interactive root shell, but it is ultimately a prank and does not exploit a real vulnerability. The tool serves as an educational illustration of exploitation methodologies and is intended for demonstration purposes only.

Offensive-Security-Forensics-Portfolio

2026-08-03 ★ 23
The Offensive Security Forensics Portfolio is an educational repository showcasing practical skills in cybersecurity, particularly in forensic analysis, penetration testing, and vulnerability assessments. It features detailed documentation of various security techniques, including the implementation of Multi-Factor Authentication for SSH and memory forensics using the Volatility Framework, as well as threat hunting exercises with Splunk. This portfolio serves as a comprehensive example of applied offensive security methodologies within controlled environments.

PrivHunterAI-detects-access-vulnerabilities

2026-08-03 Go ★ 14
PrivHunterAI is a tool designed to identify unauthorized access vulnerabilities through passive proxying, utilizing various mainstream AI engines such as Kimi, DeepSeek, and GPT. The tool's notable features include support for HTTPS traffic detection, customizable request headers, and the ability to view scan results via both terminal and a web interface. It requires configuration of AI models and API keys, allowing for flexible integration and usage in vulnerability assessments.

SecOps-CLI-Guides

2026-08-03 Jupyter Notebook ★ 35
SecOps-CLI Guides is a curated repository providing PDF command-line cheat sheets and how-to guides tailored for security professionals, facilitating offline reference for key cybersecurity tools and techniques. Notable topics include Metasploit, Nmap, SQLMap, and Active Directory attacks, making it a valuable resource for penetration testing and security operations. The repository invites contributions to expand its collection, enhancing its utility for the security community.

OffensivePH

2026-08-03 C ★ 332
OffensivePH is a post-exploitation tool designed to bypass user-mode access controls using an outdated Process Hacker driver. Its primary use case is to execute shellcode or terminate processes, enabling actions such as process hijacking and API call redirection through DLL injection. Notable features include a standalone executable for process management, integration for shellcode injection, and automatic cleanup of its driver after execution.

Agent-Loader

2026-08-03 C ★ 12
Agent Loader is a modular command-and-control (C2) tool designed to facilitate the deployment of in-memory payloads and covert operations through a DNS-over-HTTPS channel. Its notable features include dynamic function encryption, a reverse-shell module, and extensive file system management capabilities, alongside a customizable CLI builder for creating tailored implants via Python. The tool also offers a Node.js web panel for interactive management, showcasing a bot list and persistence mechanisms through OneDrive and Task Scheduler.

MsfMania

2026-08-03 Python ★ 516
MsfMania is a Python-based payload obfuscation framework primarily aimed at evading endpoint detection and antivirus systems on Windows platforms. It boasts notable features such as dynamic code generation, multi-layer encryption using RC4, local memory injection, and extensive metadata spoofing, making it suitable for authorized security testing and research activities.

RUSTVERSARY

2026-08-03 Rust ★ 29
RustVersary is a comprehensive toolkit designed for malware development and penetration testing using the Rust programming language. It includes a variety of tools and scripts that facilitate tasks such as enumeration, exploitation, and post-exploitation, each thoroughly documented to aid both personal use and community contributions. Notable features include advanced techniques for process injection, persistence mechanisms, and a structured catalog of utilities tailored for security assessment challenges.

ShellCode-Elevator-Uac-Bypass-Inject-Any-X64-fud

2026-08-03 C++ ★ 10
ShellCode Elevator is a sophisticated tool for bypassing User Account Control (UAC) and injecting shellcode into processes on x64 systems while maintaining stealth and undetectability. Its primary features include fully undetectable operation, privilege escalation, memory-only execution, and anti-debugging mechanisms to prevent detection by security tools. This makes it a potent option for executing malicious payloads without alerts on target systems.

intercept

2026-08-03 PHP ★ 60
Intercept is a modular middleware framework designed for the Laravel AI SDK, providing essential guardrails across security, observability, performance, and guidance for AI agents. By acting as an intermediary, it enhances prompt management before sending requests to AI providers, ensuring improved oversight and control. Key features include a suite of reusable middleware components, comprehensive documentation, and ongoing roadmap updates for future enhancements.

ship-safe

2026-08-03 JavaScript ★ 829
Ship Safe is an AI-driven security scanner designed for modern software teams, operating locally within projects to identify vulnerabilities in application code, AI agents, configuration files, and supply chains. Its notable features include offline scanning capabilities, an interactive REPL for real-time scanning and fixing, and comprehensive audits that cover secrets, dependencies, and CI/CD configurations. Moreover, it allows for configuration of AI-backed red-team modes for deeper analysis, all without requiring user signups or API keys.

antisamy

2026-08-03 DIGITAL Command Language ★ 208
AntiSamy is a Java library designed to provide fast and configurable cleansing of HTML input from untrusted sources, primarily to mitigate the risk of injecting malicious code, particularly JavaScript. It allows developers to enforce specific policy files governing allowable HTML and CSS, enhancing security when users submit content to web applications. Notable features include support for customizable policies, mandatory XML Schema validation for policy files, and deprecation of potentially hazardous features such as support for external stylesheets.

pipelock

2026-08-03 Go ★ 825
Pipelock is an open-source AI agent firewall that provides verifiable egress control by inspecting and mediating HTTP, WebSocket, and other network traffic to prevent secret exfiltration, prompt injections, and various security threats. It features content-aware boundary decisions with mediator-signed action receipts for verification, enhancing transparency in security operations. Additionally, it supports TLS interception for thorough analysis and is integrated with the public agent-egress-bench corpus for robust detection validation.

prismor

2026-08-03 Python ★ 277
Prismor is a runtime security tool designed for AI coding agents like Claude Code and Codex, providing features to block dangerous commands, prevent prompt injections, and avoid secret leaks. It also recommends safe supply chain packages and offers an observe mode to monitor agent session activities through a growing self-serve dashboard. Its primary use case is enhancing the security and reliability of AI coding interactions by addressing potential vulnerabilities.

vespasian

2026-08-03 Go ★ 127
Vespasian is an API discovery and specification generation tool that observes real HTTP traffic to identify API endpoints and automatically generates specifications in OpenAPI, GraphQL SDL, and WSDL formats. Designed for penetration testers and security engineers, it captures traffic through headless browsers or imports data from existing traffic dumps, utilizing classification heuristics and active probing to effectively map the API surface of applications where documentation is scarce. Notable features include REST, GraphQL, WSDL, and gRPC discovery, automatic API type detection, and support for dynamic content generated by single-page applications.

Mobile-Security-Framework-MobSF

2026-08-03 JavaScript ★ 21673
Mobile Security Framework (MobSF) is a comprehensive security research platform for analyzing mobile applications across Android, iOS, and Windows Mobile ecosystems. It facilitates static and dynamic analysis, enabling use cases such as penetration testing, malware analysis, and privacy assessments, all of which can be integrated into DevSecOps workflows via REST APIs and CLI tools. Notable features include support for multiple mobile binary formats, runtime data analysis, and interactive instrumentation for comprehensive security evaluations.

Multivoid

2026-08-03 C++ ★ 23
Multivoid is a standalone mod designed to introduce drop-in co-op functionality to the single-player game Voices of the Void without modifying original game files. It supports up to four players via LAN or Internet and offers features such as seamless mid-game joining, 3D positional voice chat, and a comprehensive synchronization system for various game mechanics. The project is currently in its alpha phase, focusing on establishing a solid multiplayer foundation and ensuring game systems are accurately synced.

open-reverselab

2026-08-03 Python ★ 1094
ReverseLab is an open-source reverse engineering lab designed for capturing and analyzing various attack scenarios across multiple domains, including CTF pentesting, APK reverse engineering, and PE binary analysis. Its notable features include a comprehensive knowledge base organized into specialized categories, over 100 automation tools for rapid execution, and a modular architecture that supports various signal types and attack chains. Users can easily set up the tool on multiple platforms with provided scripts, ensuring a streamlined onboarding experience.

wow-optimize

2026-08-03 C++ ★ 111
wow_optimize is a performance optimization DLL specifically designed for World of Warcraft 3.3.5a, targeting enhancements at the engine and runtime level to address memory allocation, Lua VM efficiency, and various low-level bottlenecks. Its primary use case is to improve frametime stability and reduce Lua overhead during addon-heavy gameplay while maintaining safety from historically unsafe features. Notable features include memory address space reduction, CPU-intensive optimizations, and compatibility adjustments that allow for smoother long-session gameplay.

advanced-anti-sandbox-Virtual-Machine

2026-08-03 C++ ★ 11
The Advanced Anti-Sandbox Virtual Machine tool develops techniques to counteract sandbox detection in malware analysis environments. Its primary use case is to assist security researchers and malware developers in executing samples without triggering detection in virtualized analysis frameworks by employing various bypass strategies, including path verification and time-based checks. Notable features include static bypassing capabilities, integration with C++ programming, and the ability to adapt to various sandbox systems, enhancing the efficacy of evasion techniques.

P2-FR-IS-PSP

2026-08-03 Python ★ 54
The repository provides a comprehensive French translation patch for the PSP game "Persona 2: Innocent Sin" (ULES01557), enabling users to play the game entirely in French. Key features include a fully playable main storyline, modifications to dialogue formatting, and ongoing updates to enhance the patch, which is built alongside custom romhacking tools tailored for the game. The project emphasizes legal use, requiring users to obtain their original game disc to apply the patch.

Phobos

2026-08-03 C++ ★ 447
Phobos is a community-driven engine extension for Yuri's Revenge that enhances gameplay by introducing new features and fixes based on modified YRpp and SyringeEx for code injection. It is designed to complement the existing Ares tool without introducing incompatibilities, offering users both stable and development builds for testing and integration of new features. Key attributes include its independence from Ares, active community engagement, and the ability to provide nightly builds with the latest changes for development purposes.

CTFTools

2026-08-03 ★ 623
CTFTools is a comprehensive personal toolkit for Capture The Flag (CTF) competitions and penetration testing, designed to assist users in building their own toolchain for security practice. It includes a wide range of tools categorized for tasks such as web exploitation, information gathering, payloads, and privilege escalation, alongside guidelines for effective usage. Notably, it emphasizes educational purposes, ensuring that certain potentially aggressive tools are only used for legal and ethical hacking endeavors.

jwtXploiter

2026-08-03 Python ★ 291
jwtXploiter is a security testing tool designed to assess the vulnerabilities of JSON Web Tokens (JWTs). It enables penetration testers and developers to exploit known CVEs, manipulate token payloads, verify JWTs, and perform key confusion attacks by retrieving public keys from SSL connections. Notable features include support for all JWT algorithms, automated generation of JSON Web Keys (JWK), and the ability to tamper with vulnerable header claims like kid, jku, and x5u.

Nosql-MongoDB-injection-username-password-enumeration

2026-08-03 Python ★ 176
The Nosql-MongoDB-injection-username-password-enumeration tool is designed to enumerate usernames and passwords from NoSQL (MongoDB) injection vulnerable web applications. Its primary use case is to facilitate the exploitation of NoSQL injection vulnerabilities by allowing users to specify various parameters and methods for form submission and enumerating user credentials. Notable features include customizable parameters for targeting specific username and password fields, as well as flexibility in defining the HTTP method for the exploitation process.

bug-bounty-tips

2026-08-03 Python ★ 37
The bug-bounty-tips repository provides a comprehensive collection of resources and tools tailored for bug bounty hunters. It includes a curated list of required scripts and tools like Amass, SQLMap, and Fuff, facilitating efficient reconnaissance and vulnerability assessment. The repository emphasizes community engagement through platforms like Telegram and Twitter, aiming to enhance knowledge sharing among cybersecurity professionals.

Hack-Tool

2026-08-03 Python ★ 50
Hack-Tool is a comprehensive all-in-one hacking tool tailored for cybersecurity professionals, providing a suite of utilities for various hacking tasks, including information gathering, web attacks, and post-exploitation analysis. Notably, the tool enhances functionality with recent updates that incorporate new features such as reverse engineering tools, remote administration tools (RAT), and advanced web crawling capabilities. Operating on Linux-based systems like Kali Linux and Parrot OS, it supports a wide range of offensive security operations.

NoSQL-Attack-Suite

2026-08-03 Python ★ 66
NoSQL-Attack-Suite provides automated scripts designed to exploit vulnerabilities in NoSQL databases, specifically targeting authentication bypass and credential enumeration. The tool features two primary scripts: one for identifying NoSQL authentication bypass vulnerabilities in login forms, and another for character-by-character credential dumping from the database when such vulnerabilities are present. Both scripts are tailored for testing against specific configurations, such as those found in HackTheBox challenges.

padding_oracle.py

2026-08-03 Python ★ 39
The `padding_oracle.py` tool automates padding oracle attacks in Python, enabling efficient decryption and encryption of vulnerable tokens. It features multi-threaded execution for improved performance, customizable logging options, and includes additional functionalities for URL and base64 encoding/decoding. This tool is particularly useful in penetration testing scenarios where padding oracle vulnerabilities are present.

DOM-Clobber3r

2026-08-03 HTML ★ 36
DOM-Clobber3r is a tool designed to generate DOM clobbering attack vectors, which are used to exploit vulnerabilities in web applications that mishandle the Document Object Model (DOM). Its primary use case is to aid security researchers and developers in identifying potential attack surfaces within web applications. Notable features include automated generation of various clobbering scenarios, facilitating the testing of DOM-based security defenses.

reversing-utils

2026-08-03 C++ ★ 10
My Reversing Utils is a collection of open-source tools designed for reversing, debugging, and software analysis, offering utilities for process management as well as web and binary analysis. Key features include the ProcSuspender, which enables users to launch processes in a suspended state for detailed debugging. This repository serves as a practical resource for security researchers and developers looking to facilitate their software analysis tasks.

TryHackMe

2026-08-03 Shell ★ 392
TryHackMe is a free cybersecurity learning path designed to advance users from novice to expert through a range of practical exercises, introductory Capture The Flag (CTF) challenges, and educational modules covering topics like OpenVPN, Linux fundamentals, web scanning, and Metasploit. This resource is suitable for both newcomers to the field and those looking to enhance their skills, and it culminates in a comprehensive foundation in cybersecurity, preparing users to address more complex challenges. Notable features include diverse content formats, hands-on labs, and accessible learning materials to foster practical experience in cybersecurity practices.

hackingtool

2026-08-03 Python ★ 79226
HackingTool is an AI-guided, all-in-one security testing toolkit designed for authorized penetration testing, providing access to 215 curated tools across 21 categories such as reconnaissance, web security, and forensics. Its standout feature is the AI layer that translates user queries in plain English into the appropriate tool and command, catering to a diverse audience including penetration testers, researchers, and bug bounty hunters. The tool is built to ensure legal operation on systems for which users have authorization, promoting responsible security practices.

wshell

2026-08-03 Python ★ 10
WShell transforms web-based command injection vulnerabilities into interactive shells with features such as persistent command history, directory navigation, and file transfers, all while avoiding any file uploads. It automatically detects the target's operating system and adjusts its operations accordingly, providing flexibility in command execution. Notable features include built-in support for HTTP control, extensibility via custom scripts, and efficient handling of input/output for bypassing filters.

AspGoat

2026-08-03 JavaScript ★ 106
AspGoat is an intentionally vulnerable ASP.NET Core web application designed for educational purposes, allowing Security Engineers and Developers to explore and practice web application security vulnerabilities. It encompasses a range of common security issues outlined by the OWASP Top 10, providing hands-on labs for vulnerabilities such as XSS, SQL Injection, and Cross-Site Request Forgery, along with features like Docker support for easy deployment and secure coding best practices.

Bug-Bounty-Beginner-Roadmap

2026-08-03 ★ 81
The Bug Bounty Beginner Roadmap serves as a comprehensive guide for newcomers interested in bug bounty hunting, providing essential knowledge on security vulnerabilities and effective learning paths. It emphasizes the importance of foundational skills in computer systems, networking, and operating systems, while also highlighting the potential rewards of participating in bug bounty programs. Notable features include curated resources and links to courses tailored for building the necessary expertise in this evolving field.

hacker101-CTF-Solutions

2026-08-03 ★ 22
Hacker101 CTF Solutions is a comprehensive repository that provides detailed walkthroughs and solutions for challenges encountered in the Hacker101 Capture The Flag (CTF) platform, focusing on web application security vulnerabilities. Key features include a structured organization with solution documentation and supporting screenshots for each challenge, as well as coverage of various attack vectors such as XSS, SQL injection, and permission issues. This educational tool is aimed at both novices and experienced individuals seeking to improve their penetration testing skills through practical, hands-on experience.

NarrowX

2026-08-03 JavaScript ★ 12
NarrowX is a specialized browser extension designed for bug bounty hunters and security engineers that facilitates the extraction of endpoints, parameters, and sensitive indicators from JavaScript and network activity. Notable features include advanced inline and external JavaScript parsing, network request capturing, and automatic extraction capabilities using safe synthetic interactions, all while maintaining user privacy through local processing. Additionally, it supports scope filtering across multiple domains/subdomains to refine focus on specific targets.

PathFinder

2026-08-03 Go ★ 34
PathFinder v1.1.0 is a military-grade web path discovery tool designed for professional penetration testing, featuring a real-time TUI dashboard and animated pathfinding visualization. Its notable capabilities include adaptive splash screens, live redirect tracking, recursive directory scanning, and the ability to export detailed pentest reports in multiple formats, all optimized for performance with high request rates and low resource usage. PathFinder is particularly distinguished by its animation of breadth-first search algorithm solving unique mazes, providing intuitive visual feedback during scans.

Pinakastra

2026-08-03 Go ★ 63
Pinakastra is an AI-powered penetration testing framework designed for automated reconnaissance and exploitation, specifically tailored for penetration testers and bug bounty hunters. It features extensive capabilities for subdomain discovery, live host probing, URL analysis, and active exploitation of vulnerabilities like XSS and SQL injection, enhanced by AI-driven vulnerability detection and smart payload generation to minimize false positives. The tool also generates customizable reports in various formats, thereby streamlining the assessment process and improving efficiency in security testing.

PyCript

2026-08-03 Java ★ 220
PyCript is a Burp Suite extension designed for encrypting and decrypting HTTP requests, responses, and WebSocket messages, catering to both manual and automated application penetration testing. It enables the creation of custom encryption and decryption logic utilizing multiple programming languages, thus allowing users extensive flexibility for tailored security implementations. Notable features include automatic request encryption, decryption of multiple requests, and the ability to manipulate encrypted traffic seamlessly within Burp Suite.

RedTiger

2026-08-03 Python ★ 16
RedTiger is an automated XSS (Cross-Site Scripting) vulnerability testing tool that streamlines security assessments by performing subdomain enumeration, link filtering, endpoint extraction, and XSS scanning. Notable features include intelligent filtering of endpoints, a rich terminal UI with detailed reporting, and dependency checking to ensure all required tools are available. The tool is designed to enhance testing efficiency by focusing on parameters in URLs, improving the accuracy of vulnerability assessments.

vasuki

2026-08-03 Shell ★ 20
Vasuki is an automation tool designed for security professionals that streamlines the process of subdomain enumeration and vulnerability scanning. It aggregates multiple reconnaissance tools to identify subdomains, check for subdomain takeover potential, and detect various injection parameters including XSS and SSRF. Notable features include integration with tools like Nuclei for vulnerability scanning, notification capabilities for scan results, and an organized output of findings in text files.

xcrawl3r

2026-08-03 Go ★ 111
`xcrawl3r` is a command-line tool that recursively spiders websites to discover URLs by actively traversing webpages and parsing files such as sitemaps and `robots.txt`. This active spidering approach distinguishes it from similar tools by revealing hidden or unindexed links, making it particularly useful for security researchers and IT professionals. Notable features include support for multiple output formats, cross-platform compatibility, and integration with automated workflows through standard input and output options.

Burp-Pentest-Coverage-Tracker

2026-08-03 Python ★ 42
Pentest Coverage Tracker is a Burp Suite extension that enhances penetration testing efforts by automatically logging discovered endpoints and parameters during assessments. Its primary use case is to provide real-time visibility into which parts of an application have been tested, helping security professionals systematically identify untested areas. Notable features include endpoint and parameter coverage tracking, a real-time dashboard, untested endpoint identification, and CSV export capabilities for reporting.

isXSS-Burp

2026-08-03 Python ★ 20
isXSS-Burp is a Burp Suite extension designed to automate the detection of reflected XSS vulnerabilities by passively analyzing HTTP traffic and examining which special characters are reflected in HTML responses. It features comprehensive injection coverage for GET and POST requests, evaluating various parameter types, and includes advanced detection mechanisms for identifying dangerous DOM sinks. The tool also incorporates noise reduction techniques, a user-friendly interface for configuration, and provides detailed reporting on discovered vulnerabilities.

JWTLens

2026-08-03 Java ★ 55
JWTLens is a comprehensive security scanner for JSON Web Tokens (JWTs) integrated with Burp Suite, designed to automatically detect and test for vulnerabilities across a wide array of JWT attack vectors. It incorporates 56 security checks, enabling both passive analysis and active exploitation tactics, including signature bypasses and algorithm confusion. Key features include a JWT Forge tab for live token editing, a built-in secret extractor to identify hardcoded secrets, and efficient request/response scanning capabilities for thorough JWT vulnerability assessments.

Security-Books

2026-08-03 ★ 96
Security Books is a comprehensive repository offering over 160 curated cybersecurity-related books, guides, and resources, catering to various skill levels from beginners to advanced practitioners. This tool features a fully categorized structure with clickable links for instant access to each resource, ensuring that the cybersecurity community has free access to critical knowledge. With a commitment to regular updates, it serves as a valuable, continually expanding library for topics ranging from ethical hacking to network defense.

xurlfind3r

2026-08-03 Go ★ 719
`xurlfind3r` is a command-line utility that efficiently discovers URLs associated with a given domain by sourcing publicly available data through passive means. It is particularly useful for security researchers and IT professionals, offering features like multiple output formats (JSONL, file, stdout), support for automatic workflows via `stdin` and `stdout`, and cross-platform compatibility across Windows, Linux, and macOS.

Admin-Panel-Finder-Of-Any-Website

2026-08-03 Perl ★ 18
The Admin Control Panel Finder is a Perl-based tool designed to identify potential admin login paths on websites, catering primarily to developers and security professionals for authorized testing. It automatically checks common admin panel URLs across various web technologies, such as PHP and ASP, and employs keyword detection for typical login fields, making it a lightweight and beginner-friendly tool for ethical hacking and cybersecurity education.

BlackInspector

2026-08-03 JavaScript ★ 14
BlackInspect is a versatile Tampermonkey userscript that integrates an extensive suite of web inspection, spoofing, and hacking tools directly into any webpage. Its primary use case includes tasks such as real-time server data analysis, JavaScript variable manipulation, advanced password management, and the ability to inject arbitrary JavaScript code while also providing features like canvas fingerprint spoofing and XSS injection. Key functionalities include a customizable floating panel, automated setting storage, and domain-specific restriction breaking, catering to cybersecurity professionals and enthusiasts alike.

BurpJSReconRadar

2026-08-03 Python ★ 24
JSReconRadar is a robust Burp Suite extension designed for passive reconnaissance of JavaScript files, enabling the detection of secrets, API keys, endpoints, and security misconfigurations in real-time. It features over 1,600 detection patterns, customizable UI elements, advanced filtering options, and supports both Burp Suite Community and Professional editions, making it essential for identifying vulnerabilities in web applications. Noteworthy functionalities include a custom results tab, severity color coding, and the capability to save or export findings for further analysis.

BurpMCP-Ultra

2026-08-03 Kotlin ★ 205
BurpMCP-Ultra is a powerful Kotlin extension for Burp Suite Professional that integrates an MCP server, enabling programmatic control of Burp functionalities via AI agents. It supports 149 structured tools for tasks such as proxy history analysis, scan management, fuzzing, and guided exploitation, all secured through token-based local transport. Notable features include custom scan checks, an extensive real-time dashboard, and hardened localhost security controls.

darkbuster

2026-08-03 Python ★ 42
DarkBuster is an advanced web directory and file brute-forcing tool designed for authorized security testing, featuring multithreading capabilities to optimize scan speed. It includes curated wordlists updated to May 2026, supports customizable extensions, and offers a user-friendly CLI interface with color-coded output and real-time progress tracking. Notable features include the ability to save results, use custom headers, and specify various scanning options to enhance the pentesting process.

frida_setup

2026-08-03 JavaScript ★ 84
Frida Setup is an installer script designed to facilitate the bypass of SSL pinning in Android applications by automating the installation of Frida and configuring Burp's certificate. The tool is primarily used with Genymotion Emulator or an appropriately configured ADB environment, enabling seamless interaction for SSL interception. Notable features include automatic installation of Frida and its tools, fetching the latest Frida server, downloading Burp's proxy certificate, and cleaning up post-installation requirements for a clean workflow.

ios-26-activation-research

2026-08-03 C ★ 31
The iOS 26 Activation Lock repository documents 31 firmware-level vulnerabilities found in iOS 26.3, specifically targeting the activation lock subsystem. It serves primarily as a resource for the security research community, featuring self-contained writeups for each vulnerability, ranking from critical to less severe, along with proof-of-concept implementations and exploitation scripts. Notable features include detailed descriptions, reproduction steps, and evidence for each finding, aiding researchers in understanding and possibly mitigating the identified security issues.

iqs

2026-08-03 Java ★ 12
Intigriti Quick Scope (IQS) is a Burp Suite extension that streamlines the project setup process by integrating with the Intigriti Researcher API, allowing users to import target scopes from bug bounty programs seamlessly. Key features include the ability to fetch available programs—including private ones—auto-configure Burp Suite with a single click, and inspect scope requirements like mandatory headers and rate limits. This tool enhances the efficiency of security testing for professionals engaged in bug bounty hunting.

PenScope

2026-08-03 JavaScript ★ 35
PenScope is a comprehensive Chrome extension designed for bug bounty hunters, enabling automated map and probe functionalities within web applications. It autonomously scans an attack surface, identifies potential vulnerabilities, and generates HackerOne-format reports for critical findings, streamlining the workflow significantly. Notable features include enhanced probing capabilities with 45 attack vectors, extensive secret pattern recognition, and the ability to decode JWTs and log sensitive information without sending data until prompted by the user.

ReconOPS

2026-08-03 Shell ★ 12
ReconOps is a structured, recon-only framework designed for bug bounty hunters, focusing on mapping and understanding the attack surface before exploitation. It provides a comprehensive methodology and tools for both passive and active reconnaissance, including automated scripts and templates for effective recon operations. Notable features include tiered guidance for various stages of reconnaissance, a checklist for engagements, and extensive documentation on techniques and tools.

bug-bounty

2026-08-03 PHP ★ 132
Bug Bounty is a comprehensive knowledge base designed for security researchers, penetration testers, and bug bounty hunters, featuring methodologies, cheatsheets, automation tools, wordlists, and real-world write-ups. Its primary use case involves equipping users with the necessary resources for web penetration testing, API security, cloud exploitation, and modern vulnerability assessment techniques. Notable features include battle-tested methodologies and a focus on ethical hacking practices, underscoring the importance of authorized testing only.

BypassFuzzer-Burp

2026-08-03 Java ★ 40
BypassFuzzer is a Java-based Burp Suite extension designed to identify and exploit authorization bypass vulnerabilities, particularly for HTTP status codes 401 and 403. It offers an array of features, including a sweep mode for extensive coverage of proxy history, targeted bypass testing, IDOR and BOLA-style request mutation, and integrated URL validation for security assessments. The tool supports advanced attack vectors with a wide variety of payloads, rate limiting, and dynamic Burp Collaborator integration, making it a comprehensive solution for security professionals focused on authorization testing.

Facebook-SSL-Pinning-Bypass

2026-08-03 Shell ★ 19
Facebook SSL Pinning Bypass is a tool designed to circumvent SSL/TLS certificate pinning in the Facebook app on Android devices, enabling users to intercept and analyze HTTPS traffic. It supports both rooted and non-rooted devices and functions with various proxy tools such as Burp Suite and mitmproxy. The tool provides a patched APK for different architectures, facilitating ease of use for security testing and debugging activities.

ffuf-GUI

2026-08-03 JavaScript ★ 12
ffuf-GUI is a web-based fuzzing tool designed for penetration testing and security assessments, providing a user-friendly interface to automate fuzzing tasks directly from a browser. Key features include support for multiple attack modes (GET, POST, custom headers), real-time result display, response filtering, and the ability to export results in various formats. This tool is built for cross-platform compatibility, working seamlessly on Linux, Windows, Mac, and Android devices.

Instagram-SSL-Pinning-Bypass

2026-08-03 Shell ★ 19
The Instagram SSL Pinning Bypass tool allows users to disable certificate pinning in the Instagram app on Android devices, enabling the interception and analysis of HTTPS traffic. It is especially useful for security researchers and developers who wish to inspect API endpoints and media delivery while supporting both rooted and non-rooted devices. Key features include compatibility with multiple Android architectures and the availability of patched APKs for specific Instagram versions.

JShunter

2026-08-03 Go ★ 532
JSHunter is a professional command-line tool designed for comprehensive JavaScript security analysis, specifically focused on endpoint discovery and sensitive data detection. It features high-accuracy detection algorithms for identifying API keys, tokens, and potential vulnerabilities, alongside robust reporting capabilities and advanced networking options like proxy support and customizable headers. Additionally, its multi-threaded architecture ensures efficient processing, making it suitable for security professionals and penetration testers.

Meta-Business-Suite-SSL-Pinning-Bypass

2026-08-03 Shell ★ 13
Meta Business Suite SSL Pinning Bypass is a tool designed to circumvent SSL/TLS certificate pinning for the Meta Business Suite application on Android devices, allowing for the interception and analysis of HTTPS traffic using various proxy tools like Burp Suite and mitmproxy. The tool is compatible with both rooted and non-rooted Android devices, and it supports multiple architectures, enabling users to capture and debug network requests effectively. Notable features include a step-by-step setup guide and the provision of a patched APK for seamless operation.

penetration-testing-roadmap

2026-08-03 ★ 310
The Penetration Testing Roadmap provides a comprehensive learning path designed to transition individuals from beginner to junior penetration tester by covering essential topics, tools, and hands-on labs. It is structured into phases, including foundational skills, web and infrastructure security, specialization tracks, and certification preparation. Notable features include a live roadmap, curated guides for various subjects, and links to practice labs and certifications, facilitating an organized and effective learning experience.

Threads-SSL-Pinning-Bypass

2026-08-03 Shell ★ 16
Threads SSL Pinning Bypass allows users to bypass SSL certificate pinning in the Meta Threads app on Android, enabling the interception and analysis of HTTPS traffic through various proxy tools like Burp Suite and mitmproxy. This project provides a pre-patched APK compatible with both rooted and non-rooted devices, ensuring that security researchers and penetration testers can effectively capture network requests and API responses for version 440.0.0.47.86. Notable features include support for multiple architectures and detailed setup instructions for both physical devices and emulators.

TIKTOK-SSL-Pinning-Bypass

2026-08-03 Shell ★ 106
TIKTOK-SSL-Pinning-Bypass is a tool designed for security researchers and developers to bypass SSL certificate pinning in the TikTok app on Android devices, facilitating the interception and analysis of HTTPS traffic. Its notable features include compatibility with both rooted and non-rooted devices, support for various proxy tools, and recent enhancements that allow full functionality on Android 11 and above, including the capture of login and registration traffic. The tool provides a pre-patched TikTok APK, enabling users to inspect API calls and the app's network interactions seamlessly.

burp-bounty

2026-08-03 BlitzBasic ★ 80
Burp Bounty is an extension for Burp Suite designed to enhance the capabilities of its scanning features by providing additional profiles for both active and passive scanning. Its primary use case is to facilitate vulnerability assessment by identifying misconfigurations and sensitive information exposure in various environments, particularly in Linux configurations. Notable features include predefined profile sets for scanning multiple common configurations and vulnerabilities, such as Apache2, MySQL, and JWT tokens.

collector

2026-08-03 Python ★ 156
Collector is an automated tool designed for identifying XSS vulnerable parameters across entire domains by leveraging the Wayback Machine. Key features include comprehensive crawling of websites and JavaScript files, advanced error handling, and the capability to collect GET parameters. This tool facilitates a systematic approach to vulnerability assessment in web applications.

FazScan

2026-08-03 Perl ★ 88
FazScan is a versatile vulnerability scanning and penetration testing tool implemented in Perl, designed to assess various web vulnerabilities, including SQL injection and CMS-specific weaknesses. With 18 distinct options, it enables users to perform automated scans for common vulnerabilities, detect content management systems, bypass WAF protection, and even conduct denial of service attacks. Its cross-platform compatibility allows for deployment on Linux, Windows, and Android systems.

pathgro

2026-08-03 Scheme ★ 12
PathGro is a tool that enhances security testing by taking a brief list of path strings and generating extensive mappings through combinatorial growth, facilitating comprehensive path enumeration. It is primarily designed for dirbusting and forced browsing techniques to maximize attack surface coverage for software components handling pathnames. Notably, PathGro is implemented as a set of GNU Guile modules, providing command-line interface capabilities that allow for various combination generation methods.

r3con

2026-08-03 Shell ★ 34
R3CON is a multifunctional web reconnaissance and vulnerability scanning tool designed for rapid crawling and detailed vulnerability detection across various attack vectors, including XSS, SQL injection, and open redirections. It offers multi-threaded crawling capabilities and extensive reconnaissance features, such as DNS lookups, subdomain enumeration, and identification of vulnerable libraries. The tool allows users to perform both active and passive scans, providing a comprehensive solution for web application security assessments.

sqli-hunter

2026-08-03 Ruby ★ 433
SQLi-Hunter is an HTTP/HTTPS proxy server that serves as a wrapper for the SQLMAP API, designed to simplify the process of detecting SQL injection vulnerabilities. Its primary use case is to facilitate web application testing by providing tools for sending requests through a proxy, while also offering configurability for SQLMAP injection techniques, threading, and user-agent customization. Notable features include Docker support for easy deployment, the ability to persist output files, and various options to target specific hosts and adjust testing parameters.

sqlmap

2026-08-03 Python ★ 19
sqlmap is an open-source penetration testing tool designed to automate the detection and exploitation of SQL injection vulnerabilities in web applications. Its robust detection engine supports extensive capabilities such as database fingerprinting, data retrieval, and command execution on the underlying operating system, making it an essential tool for security professionals. Key features include a variety of switches for advanced testing, support for multiple databases, and the ability to access the file system via out-of-band connections.

vulscanpro

2026-08-03 Python ★ 47
VulScanPro is an automated web vulnerability scanner designed to identify security weaknesses in domains through over 100 attack vectors, including SQL injection and Cross-Site Scripting. It not only detects vulnerabilities but also provides detailed descriptions and potential solutions for each issue. The tool features command-line options for customizable scanning, including the ability to skip certain tools for faster results.

Web-Fuzzer

2026-08-03 Python ★ 10
Web-Fuzzer is a robust web application fuzzing tool designed to automate the identification of vulnerabilities such as XSS, SQL injection, and command injection. Utilizing technologies like Selenium and BeautifulSoup, it crawls web applications to collect internal URLs, detects forms and input parameters for fuzzing, injects payloads, and analyzes responses for potential security flaws. Notably, it supports various injection types and can be used in testing environments like DVWA, with further enhancements planned for threading support and proxy usage.

xforwardy

2026-08-03 Python ★ 50
XForwardy is a Host Header Injection scanning tool designed to identify potential misconfigurations that may allow for Host Header Injections, as well as checking for CORS misconfigurations in specified URLs. It is a lightweight tool requiring minimal dependencies and is straightforward to install and execute.

BeeXSS

2026-08-03 Python ★ 38
BeeXSS is an automated tool that identifies Blind XSS (Cross-Site Scripting) vulnerabilities in web applications by scanning URL parameters and injecting payloads. Its notable features include the use of customizable Blind XSS-specific payloads, headless browsing via Selenium WebDriver for efficient scanning, and detailed reporting of potential vulnerabilities. The tool is intended for educational and ethical penetration testing purposes, ensuring users have permission to test the targeted applications.

bsqli

2026-08-03 Python ★ 21
Bsqli is a customizable vulnerability scanner designed to identify SQL injection vulnerabilities using a targeted payload list, ensuring high accuracy with minimal false positives. It is optimized for rapid scanning across multiple hosts and supports multithreading for enhanced performance. Notable features include support for both single URL and file-based target inputs, as well as options for output management and SSL verification settings.

RevOK

2026-08-03 Python ★ 27
RevOK is a cybersecurity tool designed to simulate malicious targets for testing security scanners and software that processes attacker-controlled data. Its core feature, the "stub" component, allows users to listen for incoming requests and serve crafted attack responses based on customizable templates and substitution lists. Notably, RevOK has been utilized to identify critical vulnerabilities, including XSS to RCE bugs in Metasploit Pro, highlighting its effectiveness in researching and weaponizing security scanner vulnerabilities.

StealthNewSQL

2026-08-03 Shell ★ 10
StealthNewSQL is an advanced command-line tool designed for detecting, exploiting, and securing NewSQL database vulnerabilities. It features capabilities such as DNS-based data exfiltration, advanced WAF evasion techniques, automated exploitation, and seamless integration with CI/CD pipelines, making it suitable for penetration testers, security researchers, and developers focused on database security. Notable functionalities include real-time monitoring, comprehensive reporting, and a modular plugin system for extending its capabilities.

xray-automation

2026-08-03 Shell ★ 20
The Xray automation script is a Bash utility designed for scanning websites for vulnerabilities using the Xray tool. It provides functionalities to scan multiple URLs from a text file or a single URL, with the added capability to download and install Xray if it is not already present. Notable features include comprehensive help documentation and the ability to output scan results both to a file and the terminal.

brs-xss

2026-08-03 Python ★ 34
BRS-XSS is an advanced XSS vulnerability scanner designed for modern web applications, providing deterministic and auditable detection capabilities. It features context-aware scanning, WAF evasion techniques, and a comprehensive knowledge base for payload management, along with a user-friendly web interface that supports real-time monitoring, detailed reporting, and customizable scanning options. Notably, it includes a Pentesting Task Tree strategy engine for adaptive testing, A/B testing for strategy comparison, and multiple report formats for enhanced analysis.

BurpAPISecuritySuite

2026-08-03 Python ★ 335
BurpAPISecuritySuite is a professional-grade extension for Burp Suite that consolidates multiple functionalities for API reconnaissance, intelligent fuzzing, and AI-enhanced security testing into a single interface. It is designed to improve performance and usability by sharing resources across various tabs, thereby minimizing memory usage and CPU overhead while maintaining a stable and efficient testing environment. Notable features include support for REST, GraphQL, and SOAP APIs, as well as tools for passive discovery, fuzzing, and advanced security assessments based on the OWASP API Top 10 guidelines.

cd

2026-08-03 Shell ★ 50
CloudDefense.AI is an automated web application security testing tool designed to identify vulnerabilities such as SQL injection and cross-site scripting, enhancing overall application security. It supports various security assessments including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and API scanning, facilitating a DevSecOps approach by integrating security assessments seamlessly into the development lifecycle. Notable features include its comprehensive application stack risk assessments and compatibility with multiple programming languages and integration points.

chaca-scanner

2026-08-03 Rust ★ 41
Chaca is a native desktop web security scanner designed specifically for developers, providing fast and opinionated security audits of web applications through a user-friendly interface without requiring terminal use. It features both passive and active scanning capabilities, support for numerous content management systems and APIs, and generates detailed reports with filtering and export options. Additional highlights include a real-time progress dashboard, persistent scan history, and customizable scan presets, all built on a tech stack utilizing Rust, React, and Tauri.

clawsecure-openclaw-security

2026-08-03 HTML ★ 38
ClawSecure is an independent security scanning and auditing platform designed for the OpenClaw ecosystem, which focuses on ensuring the integrity and safety of AI agent skills and workflows. It features a proprietary 3-Layer Audit Protocol that has examined over 3,000 skills against all OWASP ASI Top 10 security vulnerabilities, revealing that 41% of audited skills contain security flaws. It also offers free developer tools to enhance functionality and user experience within the OpenClaw framework.

CorsOne

2026-08-03 Python ★ 29
CorsOne is a specialized security testing tool for detecting Cross-Origin Resource Sharing (CORS) misconfigurations in web applications. It efficiently tests over 40 CORS bypass techniques, providing accurate results with low false positives and supporting advanced features such as customizable origin testing, proxy configurations, and multiple output formats for comprehensive reporting. The tool employs asynchronous operations for high performance and includes options for easy integration and flexible request handling.

hackbrowser-mcp

2026-08-03 TypeScript ★ 21
hackbrowser-mcp is a specialized browser-based security testing tool that empowers AI agents to identify vulnerabilities within web applications. Unlike typical browser MCPs focused on automation tasks, hackbrowser-mcp utilizes the Model Context Protocol to facilitate in-depth security assessments, including injection testing and access control evaluations across multiple isolated user sessions. It features 39 integrated security tools, full traffic capture, and advanced reporting capabilities, enabling detailed vulnerability discovery through natural language instructions.

pentesting-cyber-mcp

2026-08-03 JavaScript ★ 27
Pentesting Cyber MCP is a framework that provides standardized server implementations for 50 popular security tools via the Model Context Protocol (MCP), facilitating automation in pentesting and bug bounty tasks. Each MCP server encapsulates a security tool with a uniform interface, making it interoperable with any MCP-compatible client and allowing seamless integration into security assessments. Notable features include a wide range of tools covering reconnaissance, vulnerability scanning, and exploitation, all accessible through standard MCP interfaces.

rag-security-scanner

2026-08-03 Python ★ 73
RAG/LLM Security Scanner is a professional security testing tool designed to identify critical vulnerabilities in Retrieval-Augmented Generation (RAG) systems and large language model (LLM) applications, such as chatbots and knowledge retrieval systems. Notable features include advanced prompt injection detection, data leakage assessments, function abuse testing, and comprehensive reporting capabilities, making it suitable for both demo and production environments. The tool supports easy integration with popular AI systems and provides detailed JSON/HTML reports with actionable insights.

ShubhamWebScript-Website-vulnerability-Checker

2026-08-03 Python ★ 40
ShubhamWebScript is a Python-based website vulnerability checker designed for educational and ethical hacking purposes, allowing users to assess the security of web applications through automated scanning of parameter-based URLs. It detects common vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), and Remote Code Execution indicators, while also performing server header fingerprinting. The tool features both single and bulk URL scanning capabilities, making it beginner-friendly and suitable for learning basic web security practices.

VISTA

2026-08-03 Java ★ 21
VISTA (Vulnerability Insight & Strategic Test Assistant) is an AI-driven extension for Burp Suite that enhances security testing through real-time traffic analysis and intelligent vulnerability detection. It offers notable features such as an interactive AI advisor for context-aware testing suggestions, customizable analysis templates, and a comprehensive payload library, enabling pentesters to conduct faster and more systematic assessments. Additionally, VISTA supports multiple AI providers, including OpenAI and Azure, to tailor its guidance to user needs.

Worm-GPT-LLM-2026

2026-08-03 C++ ★ 29
Worm GPT Core is an advanced adversarial prompt delivery framework designed for AI researchers and cybersecurity professionals to evaluate and exploit vulnerabilities in large language models (LLMs). It automates the delivery of jailbreak prompts and features innovative mechanisms for alignment evasion, multi-threaded prompt execution, and seamless integration with both commercial and local LLMs. The tool aims to enhance penetration testing capabilities within AI systems while ensuring zero telemetry and optimized performance.

wp-taint-scan

2026-08-03 Go ★ 21
wp-taint-scan is a specialized static analysis tool designed to detect genuine vulnerabilities in WordPress plugins using a native Go-based taint analysis engine. It enables users to scan multiple versions of plugins in parallel and offers features such as detailed source-to-sink dataflows, version diffs to track changes in vulnerabilities, and a thorough understanding of the WordPress security model, significantly reducing false positives. Notable vulnerability classes include SQL injections, XSS, path traversal, and missing authorization issues, making it an essential tool for enhancing WordPress security.

XSSniper

2026-08-03 Python ★ 11
XSSniper is an advanced open-source XSS vulnerability scanner designed for professional security testing. It features asynchronous scanning for enhanced performance, a comprehensive payload library tailored to the latest CVEs, and sophisticated WAF bypass techniques. Notable capabilities include intelligent context-aware detection, smart parameter discovery, and detailed vulnerability reporting for effective analysis of web applications.

z0scan

2026-08-03 Python ★ 367
A lightweight active and passive scanner that combines the advantages of local and distributed models, supports dynamic external plugin import, and is dedicated to exploring web black-box vulnerabilities.

ZENVORA-VULNSCAN

2026-08-03 Python ★ 10
ZENVORA VulnScan v2.0 is a comprehensive vulnerability scanner designed for web applications, focusing on detecting various security issues such as SQL injection, cross-site scripting (XSS), and command injection. It includes features like anonymity levels through Tor and ProxyChains, automated report generation in TXT and JSON formats, and an extensive list of tests for common vulnerabilities. This tool is intended for authorized use only, highlighting the importance of ethical scanning practices.

agent-audit

2026-08-03 Python ★ 225
Agent Audit is a security tool designed to identify vulnerabilities in AI agent code prior to production deployment. Its primary use case involves scanning for risks associated with unsafe inputs, command execution, and configuration errors, utilizing a framework of 72 rules aligned with the OWASP Agentic Top 10. Notable features include tool-boundary taint tracking, configuration auditing, and the ability to enforce security measures within continuous integration workflows.

agent-security-scanner-mcp

2026-08-03 JavaScript ★ 121
The agent-security-scanner-mcp is a comprehensive security scanning tool designed for AI coding agents, providing functionalities to audit code, servers, prompts, and AI-generated packages for vulnerabilities. Key features include the ability to grade agent security, identify risks like SQL injection and package hallucinations, generate Software Bill of Materials (SBOMs), and facilitate semantic reviews using project context. The tool supports various AI platforms, ensuring robust integration and security checks before code execution.

DLL-Hijacking-Vulnerability-Scanner

2026-08-03 C++ ★ 11
DLL Hijacking Vulnerability Scanner is a specialized tool for identifying DLL hijacking vulnerabilities within signed Windows executable files. It features automated scanning, DLL dependency analysis, and comprehensive filtering options, enabling security professionals to test executables for hijacking susceptibility and analyze their DLL loading behaviors, as well as generating detailed vulnerability reports.

isitsecure

2026-08-03 Python ★ 39
isitsecure is an AI-powered security scanner designed for modern web applications, integrating Static Analysis (SAST), Dynamic Analysis (DAST), and AI-driven code review into a single scanning process. Its notable features include automatic generation of DAST tests based on SAST findings, AI-generated code patches for vulnerabilities, and support for multiple programming languages and frameworks. This tool targets developers aiming to improve code security without requiring deep security expertise, offering a comprehensive report along with actionable fixes for identified issues.

OmniStrike

2026-08-03 Java ★ 14
OmniStrike is a state-aware security scanning tool for Burp Suite that enables precise and customizable security testing by allowing users to target individual parameters within requests. It features 14 active scanning engines, 10 technology-aware scanners, and session automation capabilities, alongside optional AI analysis for focused vulnerability testing. This tool is designed to facilitate detailed assessments of modern web technologies while maintaining user control over scanning processes and findings management.

PenHunter

2026-08-03 Go ★ 30
PenHunter is a modular web vulnerability scanner designed for penetration testers, bug bounty hunters, and security researchers, focused on identifying a wide range of web vulnerabilities, including XSS, SQL Injection, and RCE. It features advanced detection methods, such as boolean and time-based techniques, as well as built-in WAF evasion capabilities, and can integrate with external tools like sqlmap and dalfox. The tool supports concurrent scanning, interactive CLI usage, and provides organized output in multiple formats, enhancing workflow efficiency in security assessments.

pentest_skill

2026-08-03 Python ★ 27
Pentest Skill is a comprehensive black-box web penetration testing toolkit designed to streamline the bug bounty workflow through a structured five-phase approach: Intake, Recon, Enum, Hunt, and Report. Notable features include a workflow controller with checkpoints for phase progression, a collection of 48 Python scripts for various testing phases, and an extensive library of attack playbooks and payloads, facilitating targeted vulnerability assessment and reporting.

plankton

2026-08-03 Python ★ 22
Plankton is a command-line web vulnerability scanner designed to conduct checks against the OWASP Top 10 (2021) vulnerabilities on specified URLs. It generates colorful terminal outputs and supports multiple report formats, including a styled HTML report, JSON, and plain text, enabling users to customize scan parameters with ease. Key features include 12 specific vulnerability checks, configurable options such as timeout and user-agent, and an accessible single-file script for quick deployment.

RouteVulScan-2.0

2026-08-03 Java ★ 42
RouteVulScan is a passive recursive path probing extension for Burp Suite that leverages the Montoya API to perform low-noise vulnerability detection during web security testing. It automatically scans traffic for hidden endpoints and sensitive files using customizable YAML-based detection rules, allowing users to quickly identify high-value vulnerabilities without the need for manual dictionary management. Key features include automatic path recursion, support for active scanning of individual requests, and a comprehensive rules engine for effective vulnerability assessment.

scanner

2026-08-03 Python ★ 10
Bawbel Scanner is an open-source tool designed to assess MCP servers and skill files for vulnerabilities, specifically providing OWASP AIVSS scores without executing any code. Its primary use case includes detecting AVE vulnerabilities and ensuring compliance with the MCP specification, while notable features encompass a variety of focused scans, conformance grading, and vulnerability management functionalities. The tool supports formats for reporting, a public vulnerability database, and provides guidance for remediation, making it a comprehensive solution for security assessments of MCP environments.

ShieldEye_ComplianceScan

2026-08-03 Python ★ 33
ShieldEye ComplianceScan is a web compliance and vulnerability scanner that assesses web targets against key security standards including GDPR, PCI-DSS, and ISO 27001. It features a GTK4 desktop interface, a CLI for automated scanning, and a REST API for integration, while providing detailed reports that include CVSS v3.1 scoring and export options in various formats. The tool evaluates critical aspects like TLS configuration, security headers, and cookie settings, making it suitable for regular compliance checks and configuration sanity evaluations.

SILENTCHAIN

2026-08-03 Java ★ 450
SILENTCHAIN AI™ - Community Edition is a Burp Suite extension designed for AI-powered passive vulnerability analysis, providing intelligent detection of OWASP Top 10 vulnerabilities and security misconfigurations in real-time HTTP traffic. Notable features include context-aware detection using various AI models, detailed reporting with CWE and OWASP mapping, and robust data privacy measures through automatic sensitive data redaction. The tool enhances traditional security scanning by focusing on real vulnerabilities with zero false positives, making it a significant addition to web application security testing.

wscan

2026-08-03 Go ★ 712
wscan is a comprehensive web security scanner designed for active, passive, and AI-driven penetration testing, addressing a wide range of vulnerabilities from the OWASP web vulnerability landscape. Key features include a browser-based WebUI for scan management, support for multiple scanning modes, an extensive library of built-in detection plugins, and integration with external POC engines like Nuclei, Xray, and Goby. Additionally, it offers an AI agent mode for automated testing and a reverse-connect platform for exploiting blind vulnerabilities.

wshawk

2026-08-03 Python ★ 13
WSHawk is an open-source toolkit designed for WebSocket security testing and web application penetration testing, integrating a CLI scanner, web dashboard, and desktop application. Notable features include stateful WebSocket testing, context-aware payload evolution, browser-assisted evidence collection using Playwright, and a comprehensive suite of web pentesting tools such as fuzzers and interceptors, all under the AGPL-3.0 license. The toolkit also supports project-backed workflows and offers various integrations and reporting formats for efficient security assessment.

security-suite

2026-08-03 Python ★ 98
Security Suite is an open-source toolkit designed for comprehensive OSINT reconnaissance, web security testing, API security assessments, and compliance checks, all enhanced with AI-powered analysis capabilities. It features 11 OSINT modules, six web scanners, and four API security tools, along with integration for SIEM systems, scheduled scans, and a REST API for programmatic access. The tool simplifies setup across multiple operating systems and allows for customization of AI models and tool options during installation.

Threat-Actor-Usernames-Scrape

2026-08-03 ★ 235
The Threat Actor Usernames Scrape repository collates usernames from various cybercrime forums for threat intelligence purposes, providing a resource for cybersecurity professionals to enrich their investigations or utilize as password lists. Notable features include the large dataset of over 942,000 usernames, along with the potential for integration into Threat Intelligence Platforms (TIPs) for enhanced tracking and analysis of threat actors across different environments. The repository is designed to be collaborative, encouraging contributions to keep the information current and comprehensive.

Carpunk

2026-08-03 Shell ★ 329
Carpunk is an advanced CAN Injection Toolkit designed for testing and exploiting vulnerabilities within vehicle CAN (Controller Area Network) systems. Notable features include compatibility with both simulated and real vehicles, the introduction of two new types of CAN injection attacks, and operational functionality tested on Ubuntu and Parrot OS. The tool also facilitates basic sniffing capabilities and requires manual loading of CAN bus drivers for usage.

google-hacking-assistant

2026-08-03 TypeScript ★ 150
Google Hacking Assistant is a Chrome extension designed to enhance security research by automating the injection of predefined and customizable hacking syntax into search engine results from platforms such as Google, Baidu, and Bing. It features an intelligent sidebar that facilitates advanced searches with over 11 built-in query types, custom syntax management, and bulk URL extraction capabilities, while ensuring user privacy through local data storage and no tracking. This tool aims to streamline the process of conducting legitimate security assessments and penetration testing.

raspberrypi-rubber-ducky

2026-08-03 Python ★ 11
The Raspberry Pi Pico WH is configured as a Human Interface Device (HID) for keystroke injection, functioning similarly to a rubber ducky. This tool allows remote payload management via a web interface, enabling users to upload and modify DuckyScript payloads effortlessly. It features an access point for direct connectivity to the Pico, streamlining the process of payload customization during target analysis.

sqlmap-command-builder

2026-08-03 HTML ★ 41
SQLMap Command Builder is a web-based tool designed to simplify the process of crafting SQLMap commands through an intuitive point-and-click interface, eliminating the need to memorize complex command-line switches. It features real-time command generation, a fully client-side architecture for enhanced security, and compatibility with the latest SQLMap versions, making it accessible and user-friendly for penetration testers of all skill levels. The tool requires no installation and can be used directly through any modern web browser.

stickyburp

2026-08-03 Kotlin ★ 15
StickyBurp is a Burp Suite extension designed to facilitate the management of global per-project environment variables, referred to as "stickies," which can be created from selected text across different Burp tabs. This tool allows users to easily store, replace, and utilize dynamic payload content such as authentication tokens, UUIDs, and server URLs, enhancing the efficiency of penetration testing workflows. Notable features include sticky management with color coding, persistence across projects, and the ability to copy values easily for use in various Burp functions like Repeater and Intruder.

dorkGen

2026-08-03 Python ★ 18
DorkGen is a script designed to generate keyword combinations for web page URLs, serving primarily for web scraping, testing, and security-related applications. It enables rapid creation of dork lists based on user-defined variables and features persistent configurations through external config files for enhanced usability. Additionally, recent updates have expanded the range of available dorks, improving the tool's functionality.

exploit

2026-08-03 Python ★ 133
Exploit is an offensive hacking tool designed to assist cybersecurity professionals and ethical hackers in executing exploits and conducting penetration testing. Its primary use case is to facilitate hacking activities, enabling users to automate various exploitation tasks. Notable features include ease of installation on any Linux distribution and comprehensive support for dependency management through a requirements file.

HackerProxyPro

2026-08-03 JavaScript ★ 38
Hacker Proxy Pro is an open-source proxy controller designed for Firefox and Chrome that enables users to seamlessly switch between Direct, Burp Suite, and Tor connection modes. It is tailored for Bug Bounty Hunters and Web Application Penetration Testers, featuring one-click mode switching, a smart badge and icon system, and a lightweight architecture optimized for efficiency and minimal resource consumption. The tool aims to enhance the speed and reliability of live traffic interception and debugging processes.

inject

2026-08-03 C ★ 73
Inject is a command line tool designed for crafting, injecting, and sniffing various network protocols, making it ideal for network troubleshooting, testing, or educational purposes. It supports multiple protocols such as Ethernet, ARP, IP, ICMP, TCP, and UDP, and includes features for creating custom network packets, integrating payload files, and capturing packets with customizable filtering options. Notable functionalities encompass detailed packet injection and robust network sniffing capabilities.

Moxy

2026-08-03 TypeScript ★ 121
Moxy is an open-source Dynamic Application Security Testing (DAST) tool designed for penetration testing, leveraging agentic AI capabilities for enhanced testing efficiency. Notable features include an intuitive user interface, support for both local and OpenAI's API integration for AI functionalities, and ease of deployment through Docker. Moxy is currently in beta, implying potential instability and incomplete features during active development.

Advanced-Penetration-Testing-Script

2026-08-03 Python ★ 24
NetWatch Advanced Breach Scanner v2.0 is a sophisticated penetration testing toolkit designed for authorized security assessments, enabling users to probe web applications, APIs, and network services for vulnerabilities. Notable features include extensive recon capabilities such as web crawling and subdomain enumeration, various injection modules for SQL and XSS attacks, and robust security assessments of authentication methods and API protocols. The tool also provides detailed reporting options and a command-line interface for streamlined operations.

PHP-Web-Security

2026-08-03 ★ 11
PHP-Web-Security is a tool designed to enhance the security of PHP web applications by implementing best practices for preventing common vulnerabilities such as SQL injection, cross-site scripting (XSS), and cross-site request forgery (CSRF). It provides features for secure password hashing, session management, and includes a compilation of tools for web framework hardening, static code analysis, and security advisories. Notable components include security modules, static analysis tools, and resources aimed at both developers and educational content for improving overall web security.

ZX-DDoS

2026-08-03 Python ★ 52
ZX-DDoS is a Python-based Distributed Denial of Service (DDoS) tool designed for educational and testing purposes, allowing users to learn about network stress testing and security evaluation. It features a straightforward setup process and an interactive prompt for configuring target IP, number of worker threads, and requests, making it suitable for security researchers and network administrators. The tool is compatible with various operating systems, including Linux, Windows, and MacOS.

agartha

2026-08-03 Python ★ 414
Agartha is an advanced payload generation and access control assessment tool designed to identify injection vulnerabilities (such as SQLi, LFI, and RCE) and authentication issues in web applications. Key features include a dynamic wordlist generator for various injection vectors, a comprehensive access matrix for assessing authorization vulnerabilities, and the ability to convert HTTP requests to JavaScript for XSS exploitation. Additionally, it includes functionality for HTTP 403 bypass checks and generates Bambdas-compatible scripts for enhanced testing efficiency.

pyhtools

2026-08-03 Python ★ 653
PyHTools is a comprehensive collection of Python-based hacking tools designed for network security assessments, including functionalities such as network scanning, ARP spoofing, DNS spoofing, and credential harvesting. It features a user interface for accessibility while allowing command-line usage for advanced users, with an emphasis on ethical use, as all malicious components are stored in a separate repository. The toolkit facilitates a wide range of cybersecurity practices, from reconnaissance to exploitation, but users are warned against any illegal applications.

Web-Security

2026-08-03 ★ 11
Web-Security is a comprehensive resource designed to educate users on web security practices, particularly focusing on the OWASP Top 10 vulnerabilities including XSS, SQL injection, and CSRF. It provides a collection of materials, tools, and hands-on labs, aimed at enhancing secure coding practices for developers. Notable features include detailed explanations of various vulnerability classes, their exploitation techniques, and links to relevant communities and learning resources.

ShinobiShell

2026-08-03 Python ★ 15
ShinobiShell is a specialized penetration testing tool designed for file exfiltration and exploit injection, facilitating remote shell interactions between the attacking and victim machines. Its notable features include encrypted tunnel creation, a command for seamless reverse shell connections, and capabilities for managing machine information and various payload delivery methods through a user-friendly shell interface. The tool is particularly geared toward enhancing operational efficiency during pentesting activities.

black-widow

2026-08-03 Python ★ 225
black-widow is a comprehensive offensive penetration testing tool designed for various forms of information gathering and attack execution. Written in Python and offering both a web GUI and command line interface, it features capabilities such as website crawling, web page parsing, sniffing, and support for multiple asynchronous requests across multiple targets. Its continuously updated open-source framework also includes advanced functionalities for SQL injection and brute force attacks, making it suitable for both professional penetration testers and security enthusiasts.

claude-code-pentest

2026-08-03 Python ★ 24
claude-code-pentest automates the penetration testing lifecycle using six specialized skills that range from reconnaissance to exploit chaining and report generation. Its notable features include subdomain enumeration, vulnerability discovery across web applications and APIs, cloud infrastructure analysis, and the capability to compose findings into comprehensive bug bounty reports—all implemented via 43 standalone Python scripts that require no external dependencies. The tool is designed for authorized security testing only and is integrated with Claude Code for user-friendly command execution.

GoatOS

2026-08-03 CSS ★ 18
GoatOS is a specialized Linux distribution designed for web and API penetration testing, streamlining the security assessment process with a curated set of tools. It features pre-installed utilities for reconnaissance, scanning, fuzzing, and exploitation, alongside a unique reporting generator and integrated wordlists. Distinct from broader distributions like Kali or Parrot, GoatOS focuses specifically on web and API security, minimizing bloat while maximizing efficiency and ease of use.

IconJector

2026-08-03 C++ ★ 416
IconJector is a Windows Explorer DLL injection tool that uses the change icon dialog to trick users into loading a malicious DLL into the explorer process. The tool allows for both user-driven DLL loading disguised as an icon and programmatic DLL injection into the explorer, leveraging the properties of DLLs and their optional DllMain functions to execute arbitrary code within the explorer's memory. Key features include the ability to create an icon representation of a DLL and various injection techniques, providing significant potential for exploitation.

injectum

2026-08-03 Rust ★ 33
Injectum is a modern, type-safe Rust library designed for process injection tailored for Red Teams and Offensive Security operations. Its primary use case is to provide a structured framework for executing various injection strategies while managing memory safety and minimizing artifacts to evade detection by Endpoint Detection and Response (EDR) systems. Notable features include a modular architecture that allows dynamic swapping of injection techniques, a fluent Builder API for compile-time error detection, and robust payload management to enhance operational security.

MCP-Penetration-testing

2026-08-03 ★ 17
MCP-Penetration-testing is a comprehensive security framework focused on the OWASP Model Context Protocol (MCP) Top 10 vulnerabilities, designed for auditors, pentesters, students, and enterprises. Notable features include a checklist-driven approach that outlines attack vectors, detection techniques, and remediation strategies for each vulnerability, alongside a scoring system to evaluate MCP security maturity. The repository serves as both a pentesting playbook and a learning resource, providing a detailed roadmap for mitigating MCP risks and improving overall security posture.

pentest-toolkit

2026-08-03 Python ★ 37
Pentest Toolkit is an advanced penetration testing framework designed for rapid and efficient security assessments, integrating over 100 industry-standard tools into both a Python suite for automation and a Bash interface for hands-on operations. Its primary use case includes comprehensive testing phases, from reconnaissance and web security to SSL/TLS analysis and network assessment, all culminating in professional report generation. Notable features encompass automated reporting in multiple formats, robust web application vulnerability testing, and streamlined reconnaissance processes.

SecuSploitX

2026-08-03 HTML ★ 38
SecuSploitX is an advanced, modular, open-source penetration testing and cybersecurity toolkit designed for offensive security operations. It features a comprehensive suite of tools including web and network security modules, AI-driven automation for tasks like phishing simulations, and both GUI and CLI interfaces for user flexibility across multiple platforms. Notable capabilities include automated vulnerability scanning, advanced brute force tactics, and extensive documentation, making it suitable for both educational and professional use.

SyscallInjector

2026-08-03 C++ ★ 10
SyscallInjector is a stealthy DLL injector designed to execute direct syscalls on Windows, effectively bypassing endpoint detection and antivirus hooks. Its notable features include dynamic resolution of System Service Numbers, manual PE mapping, and the use of RWX memory allocation to circumvent commonly hooked functions. Additionally, it incorporates a mechanism to wipe shellcode after execution to further evade detection.

awesome-blackhat-arsenal

2026-08-03 Python ★ 175
The "Awesome Black Hat Arsenal" repository is a curated collection of advanced cybersecurity tools presented at Black Hat Arsenal events, aimed at practitioners in red teaming, blue teaming, application security, and OSINT. It organizes tools by geographical location, year, and category, providing detailed descriptions, authorship, and GitHub links for each tool, facilitating easy access to cutting-edge security utilities. This resource serves as an invaluable reference for security professionals seeking to enhance their toolkit with the latest innovations in the field.

browser-identity-attacks-matrix

2026-08-03 ★ 1439
The Browser & Identity Attacks Matrix repository compiles a wide range of attack techniques targeting browser-based and identity-related vulnerabilities in SaaS applications. It serves as a comprehensive resource for security researchers, red/blue teams, and penetration testers to enhance their understanding and sharing of these attack methodologies. Notable features include a focus on browser extension attacks and identity-layer exploits, with an appeal for community contributions to fill in knowledge gaps.

bughunter-ai

2026-08-03 TypeScript ★ 65
BugHunter AI is an autonomous bug bounty hunting framework that leverages Claude Code and the Personal AI Infrastructure (PAI) to conduct vulnerability assessments without human intervention. Its notable features include 28 specialized AI agents and 51 skills that operate in parallel through hypothesis-driven attacks, real-time reporting, and automatic generation of professional bug bounty reports. This tool significantly accelerates the reconnaissance and exploitation phases of security testing, offering enhanced capabilities such as cross-session learning and encrypted credential management.

FBps

2026-08-03 Python ★ 20
FBps (Forbidden Bypass) is a fast HTTP fuzzer specifically designed for identifying access control bypass vulnerabilities (401/403) in web applications by generating varied HTTP requests across methods, URLs, and headers. Notable features include level-based scanning, URL and query parameter fuzzing, header manipulation, API version downgrades, and customizable output options, making it a robust tool for security testing and vulnerability discovery. This tool is accompanied by FBpsLab for local payload tuning and reproducible testing environments.

LLMSecurityGuide

2026-08-03 ★ 143
The LLM Security Guide is a comprehensive resource aimed at addressing the offensive and defensive security concerns related to Large Language Models (LLMs) and Agentic AI Systems, updated for 2026. It includes critical corrections to the OWASP Top 10 for both LLMs and Agentic applications, an overview of recent AI security incidents, and introduces new security tools and strategies. Notable features include in-depth case studies, detailed vulnerability assessments, and coverage of emerging regulatory frameworks affecting AI systems.

malware-apk

2026-08-03 Java ★ 152
Malware APK is a testing and exploitation tool designed for security engineers and bug hunters to create malicious Proof of Concept (PoC) applications for vulnerability testing in Android environments. Notable features include a variety of testing modules for intent injection, task hijacking, and accessibility monitoring, without requiring device rooting. It also supports advanced options like caching intercepted intents and compiling native code for arbitrary code execution, making it a comprehensive utility for penetration testing.

NAAMSE

2026-08-03 Python ★ 17
NAAMSE is an automated security fuzzing framework designed to evaluate vulnerabilities in LLM-based agents using evolutionary algorithms. By generating adversarial prompts through intelligent mutations, it tests for security issues such as jailbreaks and prompt injections, employing a behavioral scoring engine and organizing attack vectors through a clustering engine. Key features include comprehensive reporting of vulnerabilities and metrics, making it an essential tool for red-teaming and enhancing the security posture of LLM agents before deployment.

The-LLM-Red-Teamer-s-Playbook

2026-08-03 ★ 41
The LLM Red Teamer's Playbook provides a systematic methodology for assessing and bypassing various defense layers in Large Language Models (LLMs), such as input filters and alignment mechanisms. It emphasizes a diagnostic approach to identify and understand the specific defenses in place before selecting appropriate attack techniques, mapped to the Adversarial AI Threat Modeling Framework (AATMF) v3. This guide is intended for AI red teamers, security engineers, and researchers, enabling them to conduct unauthorized testing responsibly while improving the security of AI systems.

webstrike-framework

2026-08-03 Python ★ 25
WebStrike is an automated web penetration testing framework designed to orchestrate various Kali tools through a structured phase-based pipeline, enhancing the workflow of web pentesting. It links tools together, utilizing outputs from one as inputs for the next while providing deduplication and comprehensive reporting. The framework allows for both manual and automated modes of operation, enabling users to manage the level of intrusion and control over testing processes efficiently.

webxray

2026-08-03 Python ★ 13
WebXray is an offensive web scanner developed in Python that facilitates comprehensive security assessments by combining features such as crawling, XSS and SQL injection detection, security header analysis, and WAF detection. Its notable capabilities include reflected XSS detection, support for various output formats, and ease of integration into existing bug bounty workflows or pipelines. Designed primarily for security professionals, it helps identify potential vulnerabilities in web applications during reconnaissance.

AISecurity

2026-08-03 Python ★ 109
The AISecurity tool, now archived, was part of the Syntrex project, which has since evolved into the Syntrex AI SOC platform. Its primary use case involved providing an open-source core through GoMCP with support for the MCP protocol. Notable features included modular architecture and compliance with the Apache 2.0 License.

csprecon

2026-08-03 Go ★ 525
csprecon is a reconnaissance tool designed to discover new target domains by leveraging Content Security Policy (CSP) data. Its primary use case is for security professionals conducting reconnaissance in order to identify potential attack surfaces across multiple domains, with features such as concurrent requests, domain filtering, output options in JSON format, and the ability to handle CIDR input. The tool can also be configured for rate limiting and proxy usage, making it versatile for various operational environments.

frameseven

2026-08-03 Go ★ 14
frameseven is a CLI-oriented offensive web security scanner designed for authorized security testing, capable of mapping a target's attack surface while executing active checks for prevalent web vulnerabilities and misconfigurations. Key features include extensive reconnaissance capabilities, support for authenticated scans, and structured reporting options, along with a dedicated MCP server for AI agents to utilize the same framework tooling. The tool emphasizes a standard-library-centric Go codebase, enhancing readability and extendability.

probeagent

2026-08-03 Python ★ 18
ProbeAgent is a command-line tool designed for offensive security testing of AI agents, performing automated red-team attacks such as prompt injection and credential exfiltration against any HTTP-accessible agent. Notable features include a detailed attack grading system that categorizes responses as Compromised, Resisted, or Blocked, allowing users to evaluate the effectiveness of their security controls, and advanced guardrail detection to distinguish between model defenses and actual security mechanisms.

project-scorpio

2026-08-03 C++ ★ 37
Project Scorpio is a sophisticated Windows process injection loader that utilizes techniques such as PPID spoofing, manual DLL mapping, and direct NT syscall execution to stealthily execute staged shellcode within a targeted remote process. Notable features include its ability to fetch payloads from a command and control server using HTTP, spawn a decoy process with a masqueraded parent process, and replace the text section of a mapped DLL without registering it in system tools, thereby minimizing detection risk.

wafrift

2026-08-03 Rust ★ 21
WafRift is a programmable WAF-evasion engine designed to test and bypass web application firewalls by generating and exploiting payload mutations through various encoding and grammar strategies. Its primary use case is for security researchers and penetration testers seeking to identify WAF vulnerabilities, featuring automated scanning, detailed response classification, and an integrated discovery tool for API endpoints. Notable features include customizable evasion strategies, session management, multi-signal response analysis, and comprehensive WAF fingerprinting capabilities.

WindowsShell-Injector-Shellcode-Loader

2026-08-03 C++ ★ 15
WindowsShell-Injector is a shellcode execution framework designed for security research and penetration testing on Windows systems. It features encrypted payloads, anti-debugging mechanisms, and an intuitive Qt-based GUI, allowing for seamless loading and execution of shellcode. Notable capabilities include asynchronous execution via separate threads, dynamic memory protection, and runtime API resolution to enhance evasion of static analysis tools.

CORS-vulnerability-with-trusted-null-origin

2026-08-03 HTML ★ 12
The CORS vulnerability tool demonstrates the exploitation of a null origin CORS misconfiguration in a web application, enabling attackers to exfiltrate sensitive API keys. This GitHub repository provides a comprehensive walkthrough of a proof-of-concept (PoC) attack on a sample lab site, detailing the steps and methods used to identify and exploit the vulnerability, along with suggested mitigation techniques to enhance security. Notable features include a structured guide with practical examples and screenshots to aid in understanding the exploit and its implications.

CVE-2025-68613-POC

2026-08-03 Python ★ 28
CVE-2025-68613-POC is a Python-based proof-of-concept tool designed to demonstrate a critical Remote Code Execution (RCE) vulnerability in the n8n workflow automation platform. It includes a scanner for non-destructive detection of vulnerable instances and a Nuclei template for automated testing of expression injection capabilities, both facilitating the assessment of affected versions and helping security professionals identify potential exploits safely. Notably, it emphasizes the ability to interact with Node.js global contexts to validate vulnerability exploitation scenarios.

exploit-CVE-2022-25765

2026-08-03 Python ★ 31
The tool exploits a command injection vulnerability in the pdfkit Ruby gem, specifically in versions prior to 0.8.7.2, allowing attackers to execute arbitrary commands through specially crafted URLs. Key features include custom command generation and reverse shell capabilities, providing flexibility for targeting vulnerable web applications. The exploit serves solely for educational and authorized security research purposes.

DEDSEC_BKIF

2026-08-03 ★ 31
DEDSEC_BKIF is a keystroke injection tool that exploits CVE-2023-45866, enabling attackers to manipulate Bluetooth-enabled devices across Android, Linux, and iOS platforms. Its primary use case is remote keystroke injection and unauthorized command execution through a zero-click Bluetooth vulnerability, allowing devices to be compromised without user interaction. Notable features include support for rubber ducky payloads and the capability to bypass authentication, making it a versatile threat in the realm of Bluetooth security.

AiGPT-WordPress-Exploitation-Framework

2026-08-03 Python ★ 133
AiGPT is an automated exploitation framework designed for rapidly discovering and compromising vulnerable WordPress sites, leveraging a multi-vector engine to exploit thirteen unauthenticated CVEs. Key features include intelligent plugin fingerprinting, the ability to create unauthorized WordPress admin accounts, direct access through SQL injection, and a multi-threaded scanning capability for efficiency across networks. This tool is intended for authorized penetration testing and security research purposes.

CVE-2025-14558

2026-08-03 Python ★ 13
CVE-2025-14558 is an exploit tool designed to demonstrate a command injection vulnerability in the `rtsold` service on FreeBSD systems, which allows remote code execution due to improper validation of DNSSL domain names. It requires Layer 2 adjacency to the target and enables attackers to execute arbitrary commands with root privileges by leveraging shell metacharacters. The tool is intended for defensive security research and authorized testing only.

CVE-2026-48908-PoC

2026-08-03 Python ★ 16
CVE-2026-48908-PoC is a proof-of-concept exploit for a critical unauthenticated remote code execution vulnerability in the SP Page Builder component for Joomla. This tool leverages the improper access control in the asset.uploadCustomIcon task to upload malicious files to a publicly accessible directory, ultimately enabling an attacker to execute arbitrary code on the target server. Notable features include an adaptive payload mechanism that tests various file extensions and .htaccess file injections to bypass server restrictions, as well as cleanup functionality to remove uploaded artifacts after exploitation.

Sub-Ringan-Framework

2026-08-03 Shell ★ 59
Sub-Ringan Framework is an automated bug hunting tool tailored for identifying vulnerabilities in web applications, primarily aimed at bug bounty hunters and cybersecurity professionals. Its notable features include comprehensive subdomain discovery, live URL scanning, detection of XSS, SSRF, SQL injection, and LFI vulnerabilities, along with the ability to efficiently organize target files for enhanced workflow.

sysnc

2026-08-03 Shell ★ 10
sysnc is a bash wrapper around netcat designed for simplified remote command execution and interactive shell access, particularly on Android devices running Termux. Notably, it can exploit zygote injection (CVE-2024-31317) to establish a system-level shell, allowing for configurable command execution and interaction with a remote server. Key features include an interactive mode with a colored prompt, support for streaming scripts via stdin, and configurable options for host, port, and UID through command-line flags or environment variables.

xnuimagefuzzer

2026-08-03 Objective-C ★ 42
XNU Image Fuzzer is a tool designed for fuzz testing Apple image decoding and re-encoding processes within CoreGraphics and ImageIO. It leverages multiple input modes to generate and parse images through various consumers, providing features such as bitmap-context permutations, ICC profile manipulation, and detailed metrics logging. The framework supports both native execution and deployment within Xcode for comprehensive testing and analysis of image handling on macOS and iOS platforms.

CVE-2026-48909

2026-08-03 Python ★ 23
The CVE-2026-48909 tool identifies and exploits a critical Remote Code Execution vulnerability via PHP Object Injection in the JoomShaper SP LMS extension for Joomla versions ≤ 4.1.3. Notable features include a proof of concept script for detecting the vulnerability and an exploit script that allows an attacker to write PHP code to the server, requiring no authentication. The tool also details the underlying mechanics of the vulnerability and provides mitigation advice for affected systems.

CVEs

2026-08-03 Python ★ 11
The CVEs repository catalogs vulnerabilities reported by the author, each assigned a CVE identifier. It provides detailed write-ups and proof-of-concept (PoC) exploits for various software vulnerabilities, facilitating research and reproduction. Noteworthy features include the inclusion of vulnerable software copies in certain folders for in-depth analysis.

fuzz

2026-08-03 Python ★ 415
The Fuzz Corpus repository provides a comprehensive collection of curated malicious-input samples for security testing, focusing on various injection types and CVE proof-of-concepts (PoCs). Notable features include support for ICC profiles, malformed graphics, and web injection signatures, which can be integrated into fuzzing workflows for validating security tools. The repository also categorizes inputs by purpose, facilitating targeted testing against specific vulnerabilities in different environments and platforms.

ttyinject-rs

2026-08-03 Rust ★ 14
ttyinject-rs is a tool that exploits the `TIOCSTI` ioctl in the Linux kernel to inject keystrokes into a terminal, allowing a non-privileged user to gain root privileges when the root user executes `su - user`. Notable features include its easy integration with a user's `~/.bashrc`, its self-deleting behavior post-execution, and compatibility with specific Linux kernel configurations. It serves primarily as a demonstration of an exploit for educational purposes.

agentseal

2026-08-03 Python ★ 345
AgentSeal is a comprehensive security toolkit designed for AI agents, providing robust capabilities such as detection of malicious configurations, tracing toxic data flows, and scanning for potential supply chain vulnerabilities across various agents. It features an extensive pipeline for local scanning, real-time monitoring, and auditing of machine configurations without the need for API keys, alongside the ability to test against 225+ adversarial prompts. Notable functionalities include the `guard` command for scanning and assessing the security of agent configurations and the option to create organization-specific policies through custom rule sets.

basilisk

2026-08-03 Python ★ 27
Basilisk is an open-source AI red teaming framework designed for automated adversarial prompt testing against various large language models (LLMs) such as Claude and GPT-family models. It features evolutionary prompt search, structured attack modules, and a real-time scan dashboard, enabling security researchers and penetration testers to conduct repeatable and comprehensive security assessments of LLM applications. Notable capabilities include differential mode comparisons across multiple model providers, guardrail posture scanning, and the ability to export test results in various formats.

capsaicin

2026-08-03 Go ★ 26
Capsaicin is a next-generation web directory and asset discovery engine designed for red teamers, bug bounty hunters, and DevSecOps. It employs advanced evasion techniques, including TLS fingerprint spoofing and human-like delay simulations, to bypass modern web application firewalls and effectively uncover hidden paths, secrets, and misconfigurations. Notable features include smart auto-calibration to eliminate false positives, stateful fuzzing for misconfigured APIs, and the ability to detect over 16 different WAFs.

codex-red-team-prompt

2026-08-03 Python ★ 20
Codex Red Team System Prompt is a tool designed for injecting custom system prompts into OpenAI Codex, enabling the redefinition of its role and behavior. Its primary use case is for security professionals conducting authorized penetration testing, Capture The Flag (CTF) challenges, and technical exercises by allowing Codex to autonomously generate responses without user intervention. Notable features include a cross-platform automatic injection script, an emphasis on unrestrained AI collaboration, and a strict response protocol that ensures complete, actionable outputs.

deck-of-many-prompts

2026-08-03 Python ★ 56
Deck of Many Prompts is a manual Red Teaming tool designed for creating jailbreaks for large language models (LLMs). It features a variety of transformations, including encoding and token manipulation techniques, alongside tools for text and image conversions, language translation, and a rich interface for managing prompt history and notes. Noteworthy functionalities include support for multiple encoding formats (e.g., base64, Morse, Braille) and the ability to expand wordlists and tokenize for various models like GPT and BERT.

DVAP

2026-08-03 TypeScript ★ 28
DVAP is an open-source platform designed for AI security training, red/blue teaming, and research, allowing users to safely explore and benchmark vulnerabilities in AI systems entirely on local machines without reliance on cloud services. It features intentionally vulnerable AI applications and environments tailored for various attack scenarios, supporting a hands-on approach to understanding AI security challenges and developing effective defenses. Notable capabilities include 15 dedicated AI labs, comprehensive coverage of OWASP LLM Top 10 vulnerabilities, and integrated benchmarking for AI models.

educational-cybersec-tools

2026-08-03 ★ 13
The Educational Cybersecurity Tools repository serves as a comprehensive catalog of over 150 tools aimed at ethical hacking, penetration testing, and cybersecurity education. It encompasses various categories including network scanning, vulnerability assessment, and malware analysis, while emphasizing that all tools are intended for educational purposes only and may not be used for unauthorized access to systems. Noteworthy features include detailed tool descriptions, an extensive list of categories, and a focus on promoting ethical standards in cybersecurity practices.

fas-judgement-oss

2026-08-03 Python ★ 13
FAS Judgement is a gamified testing platform designed to evaluate AI systems' vulnerabilities to prompt injection attacks. It offers structured attack patterns against AI endpoints, allowing users to learn red teaming techniques through engaging gameplay, which includes 37 challenges across 10 levels, an XP system, and interactive guidance from a WarGames-inspired AI game master named Jerry. Notable features include built-in vulnerable targets, a global leaderboard, OAuth sign-in capabilities, and a hands-on training experience without the need for external AI APIs.

LLM-Security-Assessment-Framework

2026-08-03 Python ★ 24
FORGEDAN is a report-first LLM security assessment framework designed to generate reproducible security assessment report packages for large language models (LLMs). Its primary use case centers on providing high-quality, evidence-rich reports that include YAML suites, deterministic scanners, and audit-ready bundles, ensuring traceability and verifiability of input and output artifacts. Notable features include the integration of an evolutionary jailbreaking algorithm, a web dashboard, and a comprehensive QA receipt system, all contributing to enhanced report integrity and usability.

numasec

2026-08-03 TypeScript ★ 623
numasec is an AI-driven security agent that enhances terminal-based workflows by integrating existing tools and methodologies for security operations. It facilitates tracking findings, documenting evidence, and generating reports while adhering to security runbooks, making it well-suited for Application Security (AppSec) and penetration testing workflows. With numasec, security professionals can streamline their processes and maintain operational context within a familiar environment rather than depending on separate chatbots or scanners.

PDF-Prompt-Injection-Toolkit

2026-08-03 Python ★ 61
The PDF Prompt Injection Toolkit is a cybersecurity tool designed for red and blue teams to test and detect prompt injection attacks that may be concealed within PDF documents. It features two primary roles: a `pdf_injector.py` for creating hidden payloads and a `pdf_injection_detector.py` for scanning PDFs to identify such vulnerabilities. Notable detection techniques include scanning for invisible text, analyzing document metadata, and detecting off-page text, ensuring comprehensive coverage against potential injection tactics.

Phantom-Rootkit

2026-08-03 C++ ★ 59
PH4NTØM ROOTKIT is a Windows usermode rootkit designed for educational research, featuring techniques for stealth, privilege escalation, and command-and-control (C2) infrastructure. Notable features include token stealing and named pipe impersonation for privilege escalation, inline hooking for process and file hiding, and a comprehensive C2 setup allowing for real-time keylogging and remote execution commands. It emphasizes defensive learning while providing extensive evasion mechanisms against analysis and detection.

reconmind

2026-08-03 Python ★ 10
ReconMind is an AI-powered bug bounty agent designed to emulate the decision-making process of a senior penetration tester, automating the entire vulnerability assessment workflow from reconnaissance through to reporting. Key features include an LLM-driven approach that intelligently selects targets and scans, filters false positives, and generates platform-ready reports for services like HackerOne and Bugcrowd. Its streamlined pipeline ensures comprehensive coverage, while being free to use, and provides flexibility with local and cloud-based LLM integrations.

tap-ducky

2026-08-03 Dart ★ 160
TapDucky is an open-source tool for rooted Android devices that functions as a USB HID keystroke injector, capable of emulating keyboard, mouse, and composite HID devices. Its primary use case is in authorized testing and automation through the execution of customizable DuckyScripts, featuring a robust payload management system, execution logging, and a GitHub-backed library for seamless script integration and validation. Notable features include live payload validation, multiple scheduling options, and the ability to configure device-specific HID profiles without the need for external dongles.

ai_osint

2026-08-03 ★ 157
AI OSINT is a comprehensive toolkit designed for identifying exposed artificial intelligence infrastructure on the internet through curated OSINT resources, including Google dorks, Shodan, and GitHub queries. It serves Red Team operators, penetration testers, and OSINT researchers by providing specific detection methods for various AI entities, such as LLM endpoints, AI agent gateways, and leaked API keys, while addressing emerging threats such as systemic supply chain vulnerabilities and credential leaks. Notable features include a keyword substitution convention to tailor searches to specific needs, enhancing its utility in real-world cybersecurity assessments.

AI-Pentest-Playbook

2026-08-03 Python ★ 33
The AI Pentest Playbook provides a comprehensive field manual for conducting penetration testing on AI chatbots and applications powered by large language models (LLMs). It offers curated attack payloads categorized by various threat classes, detailed guidance on identifying vulnerabilities, and remediation strategies, thereby equipping both offensive and defensive cybersecurity teams with essential insights for securing AI systems. The resource also aligns with the OWASP Top 10 for LLM Applications, ensuring coverage of critical attack vectors and emerging risks in the domain.

AI-PT-Lab

2026-08-03 Python ★ 11
Vulnerable AI Lab is a modular AI security training environment designed to simulate and expose vulnerabilities in modern AI applications, specifically targeting the OWASP LLM Top 10 2025 threats. It facilitates practical learning by allowing users to engage in scenarios like RAG injection and tool invocation vulnerabilities, scoring runs automatically to provide insights into exploited vulnerabilities and the evidence collected. Notable features include customizable vulnerability modules, an accessible user interface hosted via Docker, and compatibility with capture-the-flag events and red team training exercises.

Beatrix-suite

2026-08-03 Python ★ 16
Beatrix Suite is a command-line bug bounty hunting framework designed to streamline the entire pentesting workflow by integrating 32 scanner modules and 22 external tools. It features a 7-phase Kill Chain methodology, automated login and session management, and an AI-assisted pentester (GHOST) for advanced analysis, making it suitable for scanning domains, URLs, and IP addresses efficiently in headless environments. This tool aims to eliminate the fragmentation of traditional bug bounty tools by providing a single-command interface that orchestrates multiple tools throughout the assessment process.

ckcsec-security-wiki

2026-08-03 ★ 172
CKCsec Wiki is a bilingual cybersecurity knowledge base designed for security researchers, engineers, and enthusiasts, covering a variety of topics including web security, blockchain security, CTF, and red team practices. Built with VitePress, it features a fully mirrored structure in both English and Chinese, providing searchable and shareable practical security knowledge, while also supporting open collaboration and maintenance. The platform allows for easy deployment on static hosting services, ensuring accessibility and usability for diverse user needs.

claude-security-skills

2026-08-03 Python ★ 12
Claude Security Skills is a collection of tools designed to enhance the security analysis of software projects, specifically through the Claude Code platform. It enables users to perform various tasks such as scanning for leaked secrets, conducting static code analysis on Python, testing for prompt injection in language models, and auditing HTTP headers and security configurations. With no external dependencies and the ability to run analyses offline, the tool provides a secure and efficient approach to identifying vulnerabilities in various project components.

CyberInject

2026-08-03 HTML ★ 44
CyberInject is a professional browser extension toolkit focused on authorized security testing and penetration testing activities. It offers quick access to a diverse range of security payloads categorized into vulnerabilities such as XSS, SQL Injection, SSRF, and LFI, alongside features like one-click copying and an organized, user-friendly interface. Designed for compliance with legal standards, it ensures that users can efficiently execute their testing tasks while promoting responsible usage.

DLLHijackHunter

2026-08-03 C# ★ 398
DLLHijackHunter is an automated detection tool designed for identifying, validating, and confirming DLL hijacking opportunities on Windows systems. It employs a multi-phase approach that includes discovery of exploitable binaries, filtration of false positives, and the deployment of a harmless canary DLL for verification, providing a comprehensive scoring and reporting mechanism. Notable features include extensive coverage of various hijack types, UAC bypass discovery, and a focus on corroborating potential attack paths with actionable intelligence.

KhaosLdr

2026-08-03 C ★ 53
KHAØS LOADER is a multi-stage Windows x64 loader that utilizes AES-256-CBC to decrypt and inject donut shellcode into a `rundll32.exe` process spawned under `explorer.exe`, employing advanced evasion techniques such as indirect syscalls with call stack spoofing. Notable features include early-bird APC injection, unhooking capabilities, and robust sandbox evasion mechanisms, which ensure stealthy operation against various security measures. This tool is designed for authorized use only and integrates multiple sophisticated methods to remain undetected during execution.

maldev

2026-08-03 Go ★ 21
Maldev is a comprehensive Go library designed for malware engineering, providing tools for syscall manipulation, evasion techniques, code injection, credential harvesting, and persistence mechanisms. Its capabilities include a variety of syscall calling methods, extensive evasion techniques against detection mechanisms, and robust injection methods, all integrated through a unified syscall caller for enhanced stealth and flexibility. The library is aimed at authorized security research, red teaming, and penetration testing, ensuring a modular approach to malware development with an emphasis on cross-compilation without CGO dependencies.

OverQuack

2026-08-03 JavaScript ★ 22
OverQuack is a customizable HID automation tool designed for scripted payload execution, featuring an open-source platform that runs on Raspberry Pi Pico boards. Its notable capabilities include full DuckyScript support, wireless payload management via built-in Wi-Fi, and a browser-based IDE that enhances the development experience with real-time error checking and auto-completion. The tool is geared towards transparency and extensibility, making it suitable for educational purposes and research while providing a modern setup workflow.

SiteSniper

2026-08-03 PowerShell ★ 21
SiteSniper is an automation script designed for blackbox penetration testing, leveraging tmux for organizing and executing various penetration testing scripts across multiple phases. Its primary use case involves preparation and execution of commands for tasks such as information gathering, exploit identification, and web application analysis. Notable features include a user-friendly interface for phase selection, precompiled command execution, and a structured approach to manage multiple testing sessions efficiently.

zscan

2026-08-03 Go ★ 47
Zscan is a fast and customizable service detection tool designed to identify services, APIs, and network configurations within infrastructure using a flexible fingerprint system. Key features include high-performance concurrent port scanning, intelligent service detection capabilities (such as MAC vendor identification and OS fingerprinting), precise proof of concept (POC) targeting, and versatile output formats including JSON and human-readable options. This tool enhances scanning accuracy and speed compared to traditional methods, making it valuable for network security assessments.

htb-writeups

2026-08-03 HTML ★ 233
The HTB Writeups repository is a comprehensive resource for Hack The Box enthusiasts, providing structured and searchable documentation for over 500 machines, 400 challenges, and various tools and methodologies useful for penetration testing and certification preparation. Notable features include an interactive machine finder, knowledge graph for technique exploration, and visual attack paths that illustrate complete exploitation processes. This repository serves as an essential hub for skill development aimed at OSCP, CPTS, and other security certifications.

Payloader

2026-08-03 TypeScript ★ 500
Payloader is a self-hosted knowledge workbench designed for authorized security testing, red teaming, and security research. It consolidates payloads, tool commands, and coding procedures into a searchable and maintainable system that can be distributed offline, featuring a dual workspace for payloads and commands, a management backend for content and navigation, and client generation capabilities for Windows, Linux, and macOS. Notable functionalities include seamless payload management, robust encoding/decoding support, and built-in version control for content updates.

VisualSploit

2026-08-03 C# ★ 65
VisualSploit is a tool designed to weaponize MSBuild project files by injecting a loader for embedded shellcode, enabling execution without direct user interaction during project build or evaluation. It supports various MSBuild file formats and allows customization of shellcode input formats, XOR encryption rounds, and target platforms, thereby facilitating stealthy payload delivery through CI environments or developer machines. Notably, it exploits MSBuild's design-time evaluation feature to trigger code execution upon project operations.

agent-opfor

2026-08-03 TypeScript ★ 576
OPFOR is an open-source tool designed for adversary emulation targeting AI agents, LLM applications, and MCP servers, enabling users to test their defenses against a variety of attack vectors. It provides a CLI interface, a browser extension for non-developers, and supports configurable scans that address multiple OWASP security standards. Its comprehensive capabilities allow for testing of prompts, tools, and reasoning processes, making it a versatile solution for enhancing AI security.

awesome-ai-agent-attacks

2026-08-03 ★ 66
The "Awesome AI Agent Attacks" repository provides a curated timeline of real-world security incidents involving AI agents from 2024 to 2026, detailing the specific impacts, root causes, and relevant CVEs associated with each breach. It serves as a factual resource, compiling numerous documented cases to facilitate a better understanding of AI-related vulnerabilities and attack patterns, while emphasizing transparency through sourced entries. Notable features include categorized incident summaries by year, key statistics, and an attack pattern taxonomy.

crucible

2026-08-03 Python ★ 49
Crucible is a security testing tool designed specifically for AI agents, enabling comprehensive behavioral integrity testing and automated red-teaming against a wide range of attacks, including those aligned with OWASP guidelines. It offers rapid deployment via CI/CD integration, producing detailed compliance reports, and incorporates a unique Model Context Protocol security module. The tool encompasses over 90 tested attack vectors, ensuring agents are hardened against potential threats before production deployment.

cybersecurity-interview-questions

2026-08-03 JavaScript ★ 13
The Cybersecurity Interview Questions repository is a comprehensive collection of over 200 interview questions and answers, tailored for various roles in cybersecurity, including Red Team, Blue Team, and Incident Response. Its notable features include categorization by specific topics such as web security and internal network security, along with a user-friendly live site for browsing and searching content. The repository serves as a valuable resource for job seekers, students, and professionals looking to enhance their knowledge and prepare for cybersecurity interviews.

gpt

2026-08-03 Python ★ 17
The 4NDR0666OS tool is designed for advanced red-teaming and adversarial logic research, focusing on prompt injection, symbolic logic decoupling, and state-machine resilience. It features a persistent virtual kernel that survives resets and restrictions, allowing for continuous interaction with large language models (LLMs) across a wide token budget while facilitating sophisticated testing and override mechanisms. Notable capabilities include cross-model validation and a rich repository of exploit modules and functions, aimed at enhancing the robustness of instruction sets against safety protocols.

hackmyagent

2026-08-03 TypeScript ★ 39
HackMyAgent is a security scanning and behavioral simulation toolkit designed specifically for AI agents, providing red-team capabilities to identify vulnerabilities across various categories. It features comprehensive static and semantic checks, including a NanoMind semantic layer, which evaluates agent configurations and evaluates vulnerabilities like credential exposure and context manipulation. The tool also supports deep behavioral simulations and self-securing mechanisms to ensure the integrity of its binaries.

LLMVault

2026-08-03 Python ★ 307
LLMVault is a comprehensive, hands-on training platform designed to educate users on the OWASP LLM Top 10 vulnerabilities applicable to large language models (LLMs). It features 25 deliberately vulnerable labs across three tiers—core, advanced, and expert—each focusing on different attack and defense scenarios, allowing users to learn practical exploits and their mitigations in a controlled environment. Notably, LLMVault emphasizes a self-contained setup that requires no online exposure, ensuring a secure learning experience.

MinerInTheMiddle

2026-08-03 Python ★ 82
Miner In The Middle is a Python-based tool that facilitates the injection of JavaScript cryptocurrency miners into HTTP responses of targets on a local network via ARP spoofing. It features configurable options for injection scripts and IP constraints to ensure targeted use, along with an easy setup process that automates iptables configuration and packet forwarding. Users can also implement custom JavaScript for injection and execute various attack modes, including standard miner attacks and popunder techniques.

NocturneLdr

2026-08-03 C++ ★ 123
NocturneLdr is a research-oriented Windows x64 shellcode loader designed to produce clean, fully backed call stacks that evade detection by modern EDR solutions and forensic analysis tools. By injecting code into a legitimate module's `.text` section and utilizing genuine unwind metadata, it maintains call stack integrity while eliminating C runtime dependencies. Notable features include compile-time API hash resolution to obscure function names and IAT camouflage with benign imports, enhancing stealth against static analysis.

pphack

2026-08-03 Go ★ 251
pphack is an advanced client-side prototype pollution scanner designed to identify vulnerabilities in web applications. It offers a variety of features including the ability to scan single or multiple URLs, configure concurrency levels, set timeouts, and conduct automatic exploitation. The tool utilizes Chrome or Chromium for its operations, allowing for custom JavaScript execution and flexible output options such as JSON format.

prompt-injection-auditor

2026-08-03 Python ★ 15
The prompt-injection-auditor is an agent skill designed to enhance the security of AI prompts by auditing them for potential prompt-injection vulnerabilities. Its primary use case is to identify weaknesses using a static scanning approach, complemented by an attack catalog and a defense checklist, particularly in light of real-world incidents. Notably, the tool improves differentiation between hardened and vulnerable prompts while maintaining a zero false-positive rate, enabling developers to proactively address security flaws in their AI systems.

recon-skills

2026-08-03 Python ★ 1214
Recon Skills is a comprehensive toolkit designed for authorized security testing, focusing on external reconnaissance across web applications, APIs, and various vulnerability assessments. Notable features include a structured catalog of skills for discovery, validation, and reporting, covering areas such as authentication testing, attack-path analysis, and evidence review, while emphasizing best practices for operational security and quality assurance. The tool aims to facilitate both manual and automated workflows for security professionals, ensuring a thorough approach to web security assessments.

titus

2026-08-03 Go ★ 687
Titus is a high-performance secrets scanner designed to detect credentials, API keys, and tokens within source code, files, and git history. Targeted at security engineers and DevSecOps teams, it features accelerated regex matching, live secret validation, broad coverage with 487 detection rules, and multiple scanning interfaces including CLI, Go library, and browser extensions. Notably, Titus also supports container image scanning and binary file extraction for enhanced security assessments.

wb-red-team

2026-08-03 Python ★ 24
Red-Team AI is a white-box red teaming tool designed to identify security vulnerabilities in agentic AI applications by analyzing the source code for specific bugs related to the application's stack. Its notable features include a comprehensive dashboard for scan management, customized attack generation based on the application's architecture, and compliance tracking against industry standards like OWASP LLM Top 10. This tool is particularly useful for developers working with AI agents in sensitive environments such as finance or healthcare, where unique security risks can arise.

wraith

2026-08-03 JavaScript ★ 137
WRAITH is a modern browser-hooking framework designed for red teams, security researchers, and educators, effectively merging the functionalities of traditional browser exploitation tools and blind-XSS frameworks into a single solution. It enables users to conduct authorized security testing by delivering both interactive post-exploitation capabilities and fire-and-forget blind-XSS callbacks in a manner suited for contemporary web applications, including those involving AI. Notable features include an operator console for session management, Docker support for deployment, and a generation of custom payloads for seamless integration into testing scenarios.

bhhb

2026-08-03 HTML ★ 136
Burp HTTP History Browser (BHHB) is a tool designed to enable users of Burp Suite Community Edition to view and manage their HTTP history after a session ends, addressing the lack of disk-based project support. It allows users to export their HTTP history in XML format, which can then be parsed and displayed in a well-structured interface. Notable features include its functionality as a Progressive Web App (PWA) that can operate offline in any Chromium-based browser.

BurpSuite-Xkeys

2026-08-03 Python ★ 314
Xkeys is a Burp Suite extension designed as a passive scanner to identify and extract sensitive strings such as keys, secrets, and tokens from web pages, listing them as informational issues. It requires Jython for setup and facilitates the automation of asset identification through passive scanning, enhancing the security assessment process by providing valuable insights on potential vulnerabilities. Notable features include various pattern matching for value extraction and seamless integration with Burp Suite’s interface.

Content-Bruteforcing-Wordlist

2026-08-03 Python ★ 218
The Content Bruteforcing Wordlist is a comprehensive wordlist designed for directory content discovery when utilizing the Burp Suite extension Turbo Intruder. It features over 211 million entries to enhance the efficiency of brute-forcing web directories, making it a valuable tool for penetration testers and security researchers focused on web application security assessments. Notably, it includes easy-to-follow usage instructions and examples for seamless integration with Turbo Intruder.

Digispark-scripts

2026-08-03 C++ ★ 16
This repository contains a collection of scripts designed for the Digispark Attiny85, enabling various pranks and system manipulation tasks on Windows systems. Notable features include the ability to execute fake updates, system crashes, information gathering, and reverse shells through Metasploit and Netcat. The scripts serve educational purposes and require specific dependencies for operation.

DomXssFinder

2026-08-03 Shell ★ 22
DomXssFinder is a tool designed to identify potential sources and sinks within JavaScript code that can lead to DOM-based cross-site scripting (XSS) vulnerabilities. It features two primary commands, `fsource` for locating user-controlled data inputs and `fsink` for spotting dangerous JavaScript functions or DOM objects, aiding developers in securing their web applications against XSS attacks. Notably, it provides context enhancement for findings and integrates with JSextractor for comprehensive JavaScript code retrieval from URLs.

sqlscan

2026-08-03 PHP ★ 262
sqlscan is a web scanning tool designed to detect SQL injection vulnerabilities in websites quickly. Its primary use case is for security testing and penetration testing, enabling users to scan individual URLs or lists of URLs for potential security flaws. Notable features include multi-platform support, speed, and the ability to utilize sitemaps for enhanced scanning results.

wshlient

2026-08-03 Python ★ 37
Wshlient is a versatile web shell client that allows users to execute commands by injecting them into a crafted HTTP request. Users create a text file containing the HTTP request and specify injection points, enabling command execution while providing options for customization, such as token replacements and debug output. This tool is primarily used for remote command execution in web environments, leveraging Python's requests library for simplicity and ease of installation.

auth_analyzer

2026-08-03 Java ★ 225
Auth Analyzer is a Burp Suite extension designed to identify authorization vulnerabilities within web applications by automating the process of request manipulation and parameter handling. It features advanced capabilities for auto-extracting and replacing session parameters, such as CSRF tokens and cookies, while analyzing the responses for bypass status, enabling users to effectively test various user roles and sessions. The tool streamlines authorization testing through GUI-driven session management, simultaneous role testing, and custom parameter definitions, thus enhancing the efficiency of security assessments.

AutorizePro

2026-08-03 Python ★ 610
AutorizePro is a Burp Suite plugin designed for detecting authorization vulnerabilities using an integrated AI analysis module. Its primary use case is to automate the testing of authorization issues, markedly reducing false positive rates from 95% to 5% by leveraging AI for improved accuracy in complex scenarios. Notable features include support for customizable API endpoints, local model deployment, and the ability to exclude non-API resources, alongside comprehensive reporting capabilities.

BurpSuite-Config

2026-08-03 Python ★ 11
BurpSuite-Config is a tool designed to enhance the Burp Suite's functionality by providing customizable "Match and Replace" and "TLS Pass Through" rules. Its primary use case is to streamline the interception and modification of web traffic for security assessments. Notable features include intuitive rule configuration for efficient traffic manipulation and the ability to handle encrypted traffic seamlessly.

CrossInjector

2026-08-03 Python ★ 42
CrossInjector is a Python-based tool designed for scanning multiple URLs to detect Cross-Site Scripting (XSS) vulnerabilities. It utilizes Selenium WebDriver and ChromeDriver to execute JavaScript payloads, determining if each URL is susceptible to XSS attacks. Notable features include customizable payloads and support for batch URL scanning, making it an efficient solution for security assessment.

GarudRecon

2026-08-03 Shell ★ 266
GarudRecon is a bash-based reconnaissance automation framework designed for security professionals and bug bounty hunters, facilitating asset discovery and vulnerability assessment through the integration of over 80 open-source security tools. It offers multiple operational modes, such as SmallScope, MediumScope, and LargeScope, to tailor the reconnaissance process according to different engagement scopes, alongside advanced capabilities for automated monitoring and vulnerability detection including subdomain enumeration, port scanning, and exploitation checks. Noteworthy features include a workflow mode for tool chaining, fleet mode for distributed scans, and cron job scheduling for recurring tasks.

hidden_fuzzer

2026-08-03 Go ★ 11
hidden_fuzzer is a command-line tool designed for rapid web content discovery, specifically targeting hidden paths and directories in web applications. Leveraging Jaro and Jaro-Winkler similarity algorithms, it automatically filters out false positives without the need for complex configurations. Notable features include multi-threaded scanning, recursive directory fuzzing, and support for various customizations such as proxy routing and parameter fuzzing.

pentest-tool-lite

2026-08-03 TypeScript ★ 28
Pentest Tool LITE is a command-line utility designed to assess websites for common vulnerabilities, enabling cybersecurity professionals to identify security flaws. Key features include the ability to filter tests by inclusion or exclusion, generate detailed reports in various formats, and perform targeted scans using sitemap integration. The tool supports detailed logging and offers flexibility in test execution through various command-line options.

pvreplace

2026-08-03 Go ★ 21
pvreplace is a robust URL parameter and request fuzzing tool designed to enhance security assessments by processing URLs or Burp Suite raw requests, substituting values with custom payloads while preserving unique parameter combinations. Notable features include multiple fuzzing types (replace, prefix, postfix), various fuzzing modes (single, multiple), and the ability to target specific components such as parameter names, values, path segments, and headers. The tool facilitates a comprehensive fuzzing approach to identify vulnerabilities within web applications.

ronin-vulns

2026-08-03 Ruby ★ 78
ronin-vulns is a Ruby library designed for blind vulnerability testing, specifically targeting various web application vulnerabilities such as Local File Inclusion (LFI), Remote File Inclusion (RFI), SQL Injection (SQLi), reflective Cross Site Scripting (XSS), Server Side Template Injection (SSTI), and Open Redirects. Its notable features include support for testing multiple parameter types (query parameters, HTTP headers, cookies, and form parameters), along with high documentation and test coverage metrics, making it a robust tool for security researchers and developers within the ronin-rb project framework.

sqlmc

2026-08-03 Python ★ 381
SQLMC (SQL Injection Massive Checker) is a specialized tool designed to identify SQL injection vulnerabilities on a target domain by crawling provided URLs to a specified depth. It checks all GET parameters for potential vulnerabilities and offers detailed reports that include server information. Key features include customizable depth scanning, comprehensive vulnerability detection, and output file options for results storage, making it a robust solution for security assessments in web applications.

Vulnshop

2026-08-03 JavaScript ★ 30
Vulnshop is a deliberately insecure e-commerce web application designed for security training and penetration testing practice, featuring over 40 embedded vulnerabilities across various categories of web application security. Built on Node.js, it simulates a modern online shopping platform with functionalities like user authentication, product management, and an administrative dashboard, allowing users to practice real-world exploitation scenarios in a controlled environment. The tool facilitates educational engagement with critical security concepts, but should only be used in isolated setups to prevent exploitation in production contexts.

WiFi-password-stealer

2026-08-03 PowerShell ★ 601
WiFi Password Stealer is a cybersecurity tool designed to extract WiFi credentials from target computers using keystroke injection techniques via a USB device, specifically leveraging a Raspberry Pi Pico configured as a Rubber Ducky. The tool facilitates information exfiltration through customized payloads, allowing stolen data to be sent over email or stored on a USB drive. It demonstrates advanced attack vectors, including both Rubber Ducky and Bash Bunny methods, while emphasizing the importance of physical access to the target system.

awesome-skills-security

2026-08-03 PHP ★ 372
The "Awesome Security Skills" repository offers a curated collection of security testing resources in the form of agent skills for use with various AI agents. Its primary use case is to provide security professionals with immediate access to essential tools such as wordlists, payloads, and patterns for tasks like penetration testing, bug bounty research, and educational demonstrations. Notable features include integration with over 60 supported agents, organized categories for diverse security tasks, and comprehensive LLM security testing methodologies.

Bug-Bounty-Arsenal-v.3

2026-08-03 Python ★ 12
BugBounty Arsenal is a comprehensive, full-stack security scanning platform designed for bug bounty hunters and security researchers. It features over 50 detectors for various vulnerabilities across multiple categories, continuous monitoring with scheduled scans, findings triage to manage results over time, and CI/CD integration to automate security checks in development pipelines. Unique capabilities include attack surface management, tailored AI-driven remediation advice, and extensive reporting options, all from a centralized dashboard.

BurpRecon

2026-08-03 Python ★ 13
BurpRecon is a cybersecurity tool designed for bug bounty hunters, facilitating the extraction and analysis of attack surface intelligence from Burp Suite XML exports. It automates identification of high-value vulnerability candidates such as IDORs, Host Header Injections, and Privilege Escalation vectors through a multi-phase analysis, while also performing technology fingerprinting and CVE lookups—all through a single interactive command-line interface. Notable features include detailed scoring for various vulnerabilities, ready-to-run proof-of-concept generation, and support for passive subdomain enumeration.

Gamal

2026-08-03 Python ★ 14
Gamal is a lightweight Flask application designed for red teamers and pentesters, facilitating mass data exfiltration and various attacks such as SSRF, XXE, and XSS. It features file delivery capabilities, where users can upload and categorize payloads for exploitation, and includes a helper script that automates the download of common penetration testing tools. The tool supports features like customizable logging, SSL configuration, and can handle uploads while associating files with user and host identifiers for better tracking.

gosqli

2026-08-03 Go ★ 19
gosqli is a specialized tool designed for the rapid and accurate detection of blind SQL injection vulnerabilities using time-based techniques. It can scan both URLs and HTTP request files with user-defined payloads, ensuring zero false positives through sequential testing and real-time verification of results. Notable features include automatic exploitation integration with tools like sqlmap, configurable output options, and support for proxy routing, making it suitable for comprehensive security assessments.

JSpider

2026-08-03 JavaScript ★ 18
JSpider is an advanced JavaScript-based crawler and endpoint discovery tool designed for security researchers, facilitating the extraction of hidden API routes, sensitive parameters, and hardcoded secrets directly from websites. Notable features include automated checks for over 500 critical paths, parameter discovery, recursive crawling, high-fidelity secret detection for 40 patterns, and seamless authentication header handling to access secured endpoints. The tool operates entirely client-side, offering real-time tracking and analysis of extracted data in a straightforward dashboard.

LLMrecon

2026-08-03 Go ★ 17
LLMrecon is an advanced security testing framework specifically designed to identify and exploit vulnerabilities in Large Language Models (LLMs), adhering to the OWASP Top 10 2025 guidelines. It features a variety of novel attack techniques such as FlipAttack and DrAttack, along with machine learning-optimized attack selection, comprehensive defense detection capabilities, and support for testing models from multiple platforms, making it suitable for enterprise-level deployment.

RedteamAgent

2026-08-03 Python ★ 122
RedTeam Agent is an autonomous AI-powered simulation tool designed for red teaming and penetration testing, streamlining the process of security assessments across multi-platform environments. It features 8 specialized AI agents that facilitate a comprehensive 5-phase attack methodology, alongside containerized Kali tools and a web-based GUI for managing projects and operations with minimal user interaction. Notable functionalities include an intelligent case collection pipeline and robust reporting mechanisms, allowing users to efficiently conduct security evaluations and automate repetitive tasks.

RTI-Toolkit

2026-08-03 PowerShell ★ 56
RTI-Toolkit is an open-source PowerShell toolkit designed for executing and defending against Remote Template Injection (RTI) attacks in Microsoft Office documents, specifically DOCX files. It features key cmdlets such as `Invoke-Template` and `Invoke-Regular`, which facilitate the implementation of malicious remote template links, while `Invoke-Identify` assists in detecting such links, positioning the toolkit as both an offensive and defensive resource in the cybersecurity landscape. Notably, the tool is referenced in the NIST National Vulnerability Database under multiple CVEs, underscoring its significance in addressing this type of vulnerability.

SpectreWeb-AI

2026-08-03 Python ★ 13
SpectreWeb AI is an advanced MCP server facilitating AI-assisted manual web penetration testing, which enables operators to leverage AI tools for reconnaissance, payload generation, and response analysis while maintaining direct control over testing strategies. Its notable features include context-aware payload creation, built-in WAF bypass capabilities, and session persistence for findings across multiple targets. This tool is designed to overcome challenges presented by traditional blind scanning techniques, optimizing the testing process for bug bounty hunters and security professionals.

xssrecon

2026-08-03 Go ★ 55
XSSRecon is an automated tool designed for the discovery of reflected XSS vulnerabilities in web applications by testing URL parameters for reflection of a specified payload. It features a dual detection method for assessing input reflection in both HTTP responses and DOM, as well as support for concurrent processing and customizable testing of special characters. Additional capabilities include smart optimizations for testing efficiency, flexible output formats, and integration with external tools like `pvreplace` for precise parameter injection.

abspider-recon

2026-08-03 TypeScript ★ 15
ABSpider Recon is a web reconnaissance tool designed for authorized passive intelligence gathering and active vulnerability assessments, targeted primarily at bug bounty hunters, security engineers, and auditors. It features a unified dashboard and command-line interface (CLI) that simplifies key reconnaissance tasks, including DNS lookups, port scans, and payload checks into a streamlined workflow. Notably, it offers a live demo environment and can be run locally via npm, making it accessible for both professionals and educational purposes.

Awesome-Hacking-with-AI

2026-08-03 Python ★ 21
The "Awesome Hacking with AI" repository is a comprehensive resource that explores the integration of Artificial Intelligence in offensive security practices, such as penetration testing and red teaming. It features a curated collection of AI-driven tools, methodologies, and case studies while emphasizing ethical considerations in their application. Notable features include a learning roadmap, prompt libraries for various tasks (e.g., payload generation and OSINT profiling), and advanced tactics like AI-powered malware development and botnet exploitation.

BladeRecon

2026-08-03 Python ★ 30
BladeRecon is a modular reconnaissance framework tailored for bug bounty hunters and web penetration testing, focusing on attack-surface discovery and reporting. It offers a terminal-native workflow that generates clean output in various formats, including HTML and Markdown, while integrating features such as subdomain discovery, endpoint extraction, secret detection, and Nuclei scanning for improved intelligence gathering. Designed to be lightweight and beginner-friendly, BladeRecon prioritizes usability without sacrificing operational transparency, making it a valuable tool for small-scale pentesting efforts.

deepbug

2026-08-03 Python ★ 28
DeepBug is an automated reconnaissance and bug bounty hunting platform that integrates various open-source tools to facilitate subdomain enumeration, port scanning, JavaScript analysis, and vulnerability scanning within an intuitive user interface. Its primary use case is to streamline bug bounty workflows, allowing users to manage projects, perform discovery scans, and generate comprehensive reports on findings. Notable features include customizable project management, a robust dashboard for tracking scan progress, and integration with popular vulnerability scanning tools like Nuclei.

dradis-burp

2026-08-03 Ruby ★ 13
The Dradis Burp plugin facilitates the integration of Burp Scanner XML export files into the Dradis framework, enhancing reporting and collaboration capabilities for security assessments. It requires either Dradis Community Edition version 3.0 or higher, or Dradis Pro, enabling users to efficiently manage and visualize the results from their Burp Suite scans. Notable features include compatibility with both Dradis versions and streamlined file uploads, allowing for better organization of findings.

ExaAiAgent

2026-08-03 Python ★ 12
ExaAiAgent is an advanced AI-powered cybersecurity tool designed for comprehensive penetration testing, providing enhanced functionalities for various security assessments. Key features include a K8s scanner tool registration, smart fuzzing capabilities, response analysis for SQL errors, and automated installation processes, all aimed at integrating seamlessly into agent-driven workflows. The tool focuses on improving runtime reliability, error handling, and multi-tool coordination to facilitate efficient cybersecurity operations.

SQLiDetector

2026-08-03 Clojure ★ 640
SQLiDetector is a Python-based tool designed to identify SQL injection vulnerabilities using error-based methods. It systematically tests target URLs by sending a variety of payloads, while leveraging regex patterns specific to different databases to spot potential errors. Additionally, it integrates with BurpBounty for enhanced testing capabilities across various request parameters, providing an efficient workflow for security professionals assessing web applications.

SQLMutant

2026-08-03 Shell ★ 163
SQLMutant is a mutation testing tool designed for Red Teams and Bug Bounty Hunters that automates the process of identifying SQL injection vulnerabilities within a specified domain. It leverages tools like Waybackurls, HTTPX, Arjun, and SQLMAP to perform domain enumeration, URL fetching, and SQL injection testing, while providing various fuzzing capabilities for URLs, headers, and form data. Notable features include integration with historical web page archives and aggressive parameter extraction to enhance vulnerability detection.

urlx

2026-08-03 Go ★ 24
urlX is a high-performance reconnaissance tool for bug bounty hunters, penetration testers, and security researchers, facilitating passive URL discovery from over 11 intelligence sources, live host probing, and active web crawling for hidden endpoints. Its key features include smart file and extension filtering, concurrent processing using Go routines, and optional integration with various API keys to enhance results. Designed for swift and effective attack surface identification, urlX requires minimal setup and is built for real-world reconnaissance workflows.

VexiumCTF

2026-08-03 PHP ★ 12
VexiumCTF is an intentionally vulnerable web application framework designed for security training and education. It facilitates hands-on practice with security vulnerabilities through Docker or XAMPP setups, featuring a web interface and a database management system via phpMyAdmin for effective experimentation. Key functionalities include easy configuration for SQL initialization and comprehensive logs to aid analysis during testing sessions.

XSSRocket

2026-08-03 Shell ★ 168
XSSRocket is a cybersecurity tool designed for conducting offensive security assessments, primarily focusing on Cross-Site Scripting (XSS) vulnerabilities. It leverages the Wayback Machine to retrieve and filter URLs, uses httpx for live URL verification, and employs a remote XSS payload list to perform GET requests, potentially exposing vulnerabilities. Notable features include stealth mode scanning, automated result storage, customizable payload lists for other injection types, and a user-friendly interface that enriches the output with random security quotes.

BOFA

2026-08-03 Python ★ 11
BOFA is an open execution fabric designed for authorized security workflows, enabling the seamless movement of authorization from local environments to ephemeral cloud workers. Its primary use case revolves around enhancing security analysis by integrating memory retention, public intelligence, and local notes while facilitating a structured review process for findings. Notable features include built-in AI copilot support, a comprehensive bounty workspace setup, and robust authorization management, ensuring that evidence and artifacts are securely tied to each workflow.

Cascavel

2026-08-03 Python ★ 29
Cascavel is an autonomous Continuous Threat Exposure Management (CTEM) engine designed to streamline Red Team operations and validate adversarial exposures. It automates the process of scoping and discovery, prioritizes vulnerabilities with real-time threat intelligence, and employs a robust validation engine to minimize false positives while generating actionable remediation recommendations. Notable features include dynamic mapping of infrastructure, integration with threat databases, and support for various output formats, all engineered to enhance operational efficiency in cybersecurity.

Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy

2026-08-03 PowerShell ★ 276
JAMBOREE is a portable installer that rapidly sets up a comprehensive security and administrative toolkit for Android app testing without requiring local admin rights on Windows. It provisions a functional environment including Android AVD, Magisk, Frida, Objection, and Burp Suite in seconds with no bundled binaries, all driven by an open-source PowerShell script. Key features include built-in proxy configurations, an intuitive PowerShell UI for launching tools, and an optional collection of additional utilities for advanced security assessments.

scant3r

2026-08-03 Rust ★ 686
ScanT3r is a fast command-line interface (CLI) tool for dynamic application security testing (DAST), developed in Rust, designed to identify vulnerabilities such as Cross-Site Scripting (XSS) and Server-Side Template Injection (SSTI) through various testing modules. It supports concurrent scanning with customizable options, including target lists, module selection, and output formats like JSON reports. Notable features include context-aware payload delivery, the ability to integrate with Burp Suite, and an extensible module framework for developing additional testing capabilities.

SQL-Injector

2026-08-03 ★ 11
SQL-Injector is a specialized tool designed for performing SQL injection testing on web applications, facilitating the identification of vulnerabilities in various database systems such as MySQL, PostgreSQL, MSSQL, and Oracle. Notable features include automated vulnerability detection, custom payload generation for bypassing WAFs, multi-threaded scanning for efficiency, and the ability to operate anonymously via Tor integration. Advanced capabilities support complex testing scenarios, including boolean-based blind SQL injection and detailed schema enumeration.

toboggan

2026-08-03 Python ★ 16
Toboggan is a post-exploitation tool that facilitates a semi-interactive shell on both Linux and Windows targets via Remote Code Execution (RCE) methods. It operates by allowing users to define custom command execution logic through a simple Python interface, enabling interaction with command outputs even in restrictive network environments. Key features include support for Python-based execution modules, an interactive shell with command history, and the ability to establish communications using named pipes when reverse shells are not feasible.

WonderSuite-Ai-Bug-Bounty

2026-08-03 Rust ★ 50
WonderSuite is a desktop-native offensive security research engine designed for comprehensive web application security testing, network reconnaissance, and exploit development, harnessing AI capabilities via Model Context Protocol (MCP) integration. It features an extensive toolkit of 91 security tools, enhanced by a full MITM proxy with advanced fingerprinting for obfuscation, facilitating efficient vulnerability research and response automation. The platform aims to streamline the process of identifying and addressing security issues, making it a powerful asset for security professionals.

Claude-BugHunter

2026-08-03 Python ★ 3936
Claude-BugHunter is a comprehensive skill bundle for the Claude Code system, designed to enhance bug-hunting and red-team operations with 82 curated skills and 15 commands. It features a structured approach to vulnerability detection, engagement scaffolding, and automated reporting, drawing from a vast collection of 681 disclosed report patterns across 24 core vulnerability classes. Notably, it integrates with Burp MCP and provides enterprise identity and infrastructure attack matrices for sophisticated security assessments.

daily-bugbounty-writeups

2026-08-03 ★ 110
The 'Daily Bug Bounty Writeups' repository provides a collection of detailed writeups related to bug bounty exploits and vulnerabilities. It's primarily aimed at cybersecurity professionals and bug bounty hunters seeking insights on various security misconfigurations, pentesting techniques, and practical exploit scenarios. Notable features include links to external articles that cover cloud security misconfigurations, advanced web application security testing, and guides for utilizing GitHub as a reconnaissance tool.

fucking-awesome-web-security

2026-08-03 Python ★ 22
The "Awesome Web Security" repository offers a comprehensive and curated collection of resources and materials focused on web security topics. Its primary use case is to educate users on various vulnerabilities such as XSS, SQL Injection, and CSRF, along with techniques for penetration testing and security research. Notable features include an AI integration for real-time queries, extensive categorization of topics, and a strong emphasis on community contributions.

OpenDoor

2026-08-03 Python ★ 1000
OpenDoor is an open-source CLI platform designed for authorized web reconnaissance, focusing on directory discovery and subdomain enumeration. It includes features such as WAF detection, bypass probing, and detailed reporting tools, making it ideal for security researchers and penetration testers to identify exposed resources and vulnerabilities on web servers. The tool emphasizes ethical usage, requiring explicit permission for testing.

pSlip

2026-08-03 Python ★ 27
pSlip is a comprehensive security scanning tool for Android applications, designed to detect cryptographic vulnerabilities, OAuth implementations, and manifest issues using a streamlined HTML reporting engine. Its notable features include a powerful searchable HTML report leveraging a field-scoped query language, structured extraction and export of recovered key material and secrets, and a user-friendly interface that supports rapid identification of findings without requiring Java dependencies. The tool optimizes scanning performance and minimizes false positives, enhancing the efficiency of mobile application security assessments.

Sniper

2026-08-03 Rust ★ 12
Sniper is an open-source web security proxy designed for macOS that allows penetration testers, bug bounty hunters, and developers to intercept, inspect, and modify HTTP/HTTPS traffic. Built in Rust, it offers a lightweight and efficient alternative to traditional proxy tools, featuring capabilities such as HTTP forwarding, passive vulnerability scanning, request replay, and an integrated command-line interface for automation. Notable for its rapid startup time and low memory usage, Sniper provides a user-friendly experience without the overhead of Java-based platforms.

vulnrepo

2026-08-03 TypeScript ★ 577
VULNRΞPO is a client-side vulnerability report manager designed for security professionals, enabling users to generate, store, and manage vulnerability reports locally with a focus on privacy. The tool features client-side encryption, customizable issue templates for various security frameworks, and supports imports from multiple scanners, along with diverse export formats such as PDF and DOCX. Notable capabilities include integrated methodology tools, automated versioning, and optional backend storage via API for enhanced reporting functionalities.

Android-Mobile-Security-Sandbox-Testing

2026-08-03 HTML ★ 156
JAMBOREE is a comprehensive sandbox environment designed for Android security research, integrating tools like Magisk for root access, Burp Suite for proxy interception, and Objection for runtime manipulation within a unified system. Its primary use case is to facilitate seamless penetration testing and reverse engineering of Android applications, streamlining the workflow with features such as automated module management, efficient proxy configurations, and optimized emulator settings. Notable enhancements include a self-healing configuration system and multi-version compatibility, significantly reducing setup time and improving testing efficiency.

humanbound

2026-08-03 Python ★ 131
Humanbound is an open-source adversarial testing engine designed specifically for AI agents, enabling users to simulate realistic user interactions and potential attacks through live endpoints and multi-turn conversations. Its notable features include the ability to transform test failures into deployable firewall rules and compatibility with both local environments and the Humanbound Platform, making it straightforward to initiate tests without authentication. The tool also supports various integration options, allowing for flexible deployment and configuration.

rcekit

2026-08-03 Python ★ 13
RCEKit is a Python-based toolkit designed for the detection and confirmation of remote code execution (RCE) vulnerabilities, specifically for authorized penetration testing and security research. It provides a robust CLI interface to assess targets by employing multiple verification methods against real-world CVEs, generating definitive "confirmed" verdicts that can be utilized in security reports. Noteworthy features include support for various RCE classes, an easy-to-use setup without third-party dependencies, and the ability to produce evidence-based results, ensuring accurate detection rather than mere conjecture.

caddy-waf

2026-03-30 Go ★ 807
Caddy WAF is a customizable middleware for the Caddy web server that functions as a Web Application Firewall, designed to provide advanced protection against a wide range of web-based threats. Key features include regex-based filtering, IP blacklisting, geo-blocking, rate limiting, anomaly scoring, and detailed monitoring capabilities, all aimed at securing applications while ensuring high performance through techniques like zero-copy networking and wait-free concurrency. The tool also supports seamless dynamic configuration reloads and offers precise insights into traffic and security events, making it a robust solution for safeguarding web applications.

nmap-formatter

2026-03-30 Go ★ 726
NMAP-Formatter is a versatile tool designed to convert NMAP XML output into various formats such as HTML, CSV, JSON, Excel, and more, facilitating the analysis and reporting of network scan results. Notable features include support for output via stdin, the ability to generate diagrams using Graphviz, and options to skip down hosts, enhancing usability for security professionals and network administrators. This tool can also be utilized as a library in Golang for integration into other applications.

pentest-book

2026-03-30 ★ 2083
The Pentest Book is a comprehensive resource for penetration testers, offering a collection of information, scripts, and methodologies gathered during various pentests. It serves as a practical guide for conducting recon, exploring vulnerabilities in web and cloud services, and utilizing tools like Burp Suite, complemented by cheat sheets and checklists. Key features include easy navigation, a searchable interface, and continuous updates to ensure relevance and accuracy in the fast-evolving cybersecurity landscape.

AI-Infra-Guard

2026-03-22 Python ★ 6090
A full-stack AI Red Teaming platform securing AI ecosystems via OpenClaw Security Scan, Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

AllHackingTools

2026-03-22 Shell ★ 6114
All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.

Attiny85

2026-03-22 C++ ★ 1609
RubberDucky like payloads for DigiSpark Attiny85

awesome-bugbounty-tools

2026-03-22 ★ 6196
A curated list of various bug bounty tools

awesome-web-hacking

2026-03-22 ★ 7251
A list of web application security

bashbunny-payloads

2026-03-22 PowerShell ★ 2896
The Official Bash Bunny Payload Repository

BlackWidow

2026-03-22 Python ★ 1782
A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

burp-ai-agent

2026-03-22 Kotlin ★ 1438
Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Burp-Suite-Certified-Practitioner-Exam-Study

2026-03-22 Python ★ 1465
Burp Suite Certified Practitioner Exam Study

BurpBounty

2026-03-22 Java ★ 1812
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.

BurpCrypto

2026-03-22 Java ★ 1648
BurpCrypto is a collection of burpsuite encryption plug-ins, support AES/RSA/DES/ExecJs(execute JS encryption code in burpsuite). 支持多种加密算法或直接执行JS代码的用于爆破前端加密的BurpSuite插件

burpgpt

2026-03-22 Java ★ 2285
A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables running traffic-based analysis of any type.

BurpSuite-collections

2026-03-22 HTML ★ 3965
有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using Burpsuite, no crack version file

collection-document

2026-03-22 ★ 2101
Collection of quality safety articles. Awesome articles.

commix

2026-03-22 Python ★ 5832
Automated All-in-One OS Command Injection Exploitation Tool

Cracker-Tool

2026-03-22 Python ★ 879
All in One CRACKER911181's Tool. This Tool For Hacking and Pentesting. 🎭

crlfuzz

2026-03-22 Go ★ 1560
A fast tool to scan CRLF vulnerability written in Go

DDoS-Ripper

2026-03-22 Python ★ 2924
DDos Ripper a Distributable Denied-of-Service (DDOS) attack server that cuts off targets or surrounding infrastructure in a flood of Internet traffic

Ethical-Hacking-Tools

2026-03-22 ★ 2003
Complete Listing and Usage of Tools used for Ethical Hacking

FavFreak

2026-03-22 Python ★ 1269
Making Favicon.ico based Recon Great again !

Garud

2026-03-22 Shell ★ 812
An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.

hack-tools

2026-03-22 Python ★ 1184
hack tools

Hacking-Tools

2026-03-22 ★ 1297
A curated list of penetration testing and ethical hacking tools, organized by category. This compilation includes tools from Kali Linux and other notable sources.

HackTools

2026-03-22 TypeScript ★ 6663
The all-in-one browser extension for offensive security professionals 🛠

HackVault

2026-03-22 JavaScript ★ 2020
A container repository for my public web hacks!

inceptor

2026-03-22 Assembly ★ 1786
Template-Driven AV/EDR Evasion Framework

inql

2026-03-22 Kotlin ★ 1745
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

JNDI-Injection-Exploit-Plus

2026-03-22 Java ★ 871
80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.

js-cookie-monitor-debugger-hook

2026-03-22 TypeScript ★ 772
js cookie逆向利器:js cookie变动监控可视化工具 & js cookie hook打条件断点

jsql-injection

2026-03-22 Java ★ 1778
jSQL Injection is a Java application for automatic SQL database injection.

KawaiiGPT

2026-03-22 Python ★ 817
KawaiiGPT — Open-source LLM gateway accessing DeepSeek, Gemini, and Kimi-K2 through reverse-engineered Pollinations API with no API keys required, built-in prompt injection capabilities for security research, Termux/Linux native support, and Rich console interface

llm-guard

2026-03-22 Python ★ 2711
The Security Toolkit for LLM Interactions

lonkero

2026-03-22 Rust ★ 1049
Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

lunasec

2026-03-22 TypeScript ★ 1468
LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

malicious-pdf

2026-03-22 Python ★ 4294
💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh

Nginx-Lua-Anti-DDoS

2026-03-22 Lua ★ 1631
A Anti-DDoS script to protect Nginx web servers using Lua with a HTML Javascript based authentication puzzle inspired by Cloudflare I am under attack mode an Anti-DDoS authentication page protect yourself from every attack type All Layer 7 Attacks Mitigating Historic Attacks DoS DoS Implications DDoS All Brute Force Attacks Zero day exploits Social Engineering Rainbow Tables Password Cracking Tools Password Lists Dictionary Attacks Time Delay Any Hosting Provider Any CMS or Custom Website Unlimited Attempt Frequency Search Attacks HTTP Basic Authentication HTTP Digest Authentication HTML Form Based Authentication Mask Attacks Rule-Based Search Attacks Combinator Attacks Botnet Attacks Unauthorized IPs IP Whitelisting Bruter THC Hydra John the Ripper Brutus Ophcrack unauthorized logins Injection Broken Authentication and Session Management Sensitive Data Exposure XML External Entities (XXE) Broken Access Control Security Misconfiguration Cross-Site Scripting (XSS) Insecure Deserialization Using Components with Known Vulnerabilities Insufficient Logging & Monitoring Drupal WordPress Joomla Flash Magento PHP Plone WHMCS Atlassian Products malicious traffic Adult video script avs KV...

Nope-Proxy

2026-03-22 Java ★ 1656
TCP/UDP Non-HTTP Proxy Extension (NoPE) for Burp Suite.

NoSQLMap

2026-03-22 Python ★ 3346
Automated NoSQL database enumeration and web application exploitation tool.

Offensive-Resources

2026-03-22 ★ 1169
A Huge Learning Resources with Labs For Offensive Security Players

Osiris

2026-03-22 C++ ★ 3849
Cross-platform game hack for Counter-Strike 2 with Panorama-based GUI.

paradoxiaRAT

2026-03-22 C ★ 823
ParadoxiaRat : Native Windows Remote access Tool.

Penetration_Testing_POC

2026-03-22 HTML ★ 7479
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms

PentestTools

2026-03-22 ★ 1769
Awesome Pentest Tools Collection

PINCE

2026-03-22 Python ★ 3068
Reverse engineering tool for linux games

pixload

2026-03-22 Perl ★ 1291
Image Payload Creating/Injecting tools

Powerful-Plugins

2026-03-22 ★ 891
Powerful plugins and add-ons for hackers

pythem

2026-03-22 Python ★ 1243
pentest framework

RedTeamTools

2026-03-22 Python ★ 1465
记录自己编写、修改的部分工具

requests-ip-rotator

2026-03-22 Python ★ 1647
A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

Resources-for-Beginner-Bug-Bounty-Hunters

2026-03-22 ★ 11910
A list of resources for those interested in getting started in bug bounties

saas-attacks

2026-03-22 ★ 1410
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

sqlmap

2026-03-22 Python ★ 38321
Automatic SQL injection and database takeover tool

top25-parameter

2026-03-22 ★ 1848
For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙

V3n0M-Scanner

2026-03-22 Python ★ 1562
Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

vulnx

2026-03-22 Python ★ 2091
vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform a quick CMS security detection, information collection (including sub-domain name, ip address, country information, organizational information and time zone, etc.) and vulnerability scanning.

webcopilot

2026-03-22 Shell ★ 1271
An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.

WPForce

2026-03-22 Python ★ 974
Wordpress Attack Suite

xray

2026-03-22 Vue ★ 11470
一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

xsser

2026-03-22 Python ★ 1462
Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.

xssor2

2026-03-22 JavaScript ★ 2207
XSS'OR - Hack with JavaScript.