23 Aug 2026
Python
★ 10
Oxide is a cross-platform remote access trojan (RAT) framework designed for security research and detection engineering, allowing users to demonstrate and analyze threat actor tactics, techniques, and procedures (TTPs) at the code level. It includes an implant written in Rust, a C2 panel implemented in Python, and provides comprehensive detection capabilities with paired YARA rules, Sigma rules, and incident response playbooks. The framework facilitates purple team exercises through a structured approach to understanding implant-panel communications and establishing effective detection strategies.
23 Aug 2026
Go
★ 10
msarjun is a high-performance tool that enhances Arjun by enabling mass-scale parameter discovery through concurrent scanning of multiple URLs. Its primary use case is for efficient vulnerability assessment, significantly reducing execution time with features like automatic wordlist setup, multiple output formats, and optimized performance for extensive URL targeting. Notable features include configurable concurrency, output management for seamless tool integration, and a user-friendly command-line interface.
23 Aug 2026
Python
★ 32
HTLogin is a security testing tool designed to inspect and identify vulnerabilities in login forms and authentication APIs across web applications. It comprehensively tests for common weaknesses, including default credentials, injection vulnerabilities, and rate-limiting issues, while supporting HTML forms, JSON/GraphQL APIs, and JavaScript-rendered SPAs. Notable features include confidence-based detection with detailed reporting, a CLI interface for streamlined usage, safe operational modes, and extensive integration support with proxies and testing frameworks.
22 Aug 2026
FlatlineProxy is a routing tool that optimizes API calls to various OpenAI-compatible response providers by estimating request costs and selecting the most economical option. Notable features include seamless streaming of responses without buffering, environment variable management for API keys, and support for dynamic prompt validation through a byte-for-byte match against specified templates. The tool also offers logging of routing decisions and integrates with various upstream models, ensuring efficient and cost-effective API utilization.
22 Aug 2026
DeepSeek Harness Desktop is a macOS application that serves as a Tauri wrapper for the DeepSeek Harness Web UI, enabling users to run a private loopback Harness server configured to interact with an OpenAI-compatible vLLM endpoint. Notable features include customizable session management without server restarts, built-in local certificate verification, and straightforward local development setup. The tool maintains the current configuration and does not expose the server beyond local access, ensuring a secure environment for development.
22 Aug 2026
oMLX is a macOS application designed for optimized inference of large language models (LLMs) specifically targeting Apple Silicon hardware. It features continuous batching and tiered key-value caching, allowing users to manage model performance directly from the menu bar, persist context across dynamic conversations, and utilize custom kernel support for enhanced efficiency. Its primary use case is to facilitate practical local LLM operations for coding tasks, improving both speed and control compared to traditional LLM servers.
22 Aug 2026
C
★ 55
wolfSentry is an embedded Intrusion Detection and Prevention System (IDPS) and firewall designed for resource-constrained environments, offering both static and dynamic traffic filtering capabilities. It features flexible configuration through APIs and JSON input, dynamic reconfiguration with atomic transition, and seamless integration with lwIP and wolfSSL for efficient tracking and management of network traffic. Its lightweight design allows for deployment on various embedded platforms while maintaining deterministic performance and minimal memory usage.
22 Aug 2026
Python
★ 42
TraceTree is an advanced autonomous security tool designed to enhance development workflows with robust detection and protection capabilities. Its primary use case revolves around analyzing packages for malicious intent through sandbox isolation, syscall parsing, and machine learning-based anomaly detection, enabling developers to maintain security before package installations. Notable features include a multi-agent coordination server, a web dashboard for monitoring, and a behavioral receipt export for summarizing observed behaviors without compromising syscall logs.
22 Aug 2026
Python
★ 13
Cratos FastAPI serves as a proxy API for the MISP Threat Sharing Platform, enabling the seamless extraction of threat indicators in various formats for consumption by security tools such as SIEMs, firewalls, and EDRs. Key features include tag-based feed classification, scoped access tokens for enhanced security, multi-tenancy support, and flexible output formats tailored to specific consumer requirements, facilitating efficient integration of threat intelligence into security workflows without exposing MISP credentials.
22 Aug 2026
JavaScript
★ 145
AEGIS is an OS-level monitoring tool designed to observe the activities of AI coding agents, tracking their processes, file accesses, and network interactions without requiring any hooks. Its key features include the ability to attribute actions to specific agent instances, maintain an evidence graph for auditing, and support multiple operating systems while ensuring no telemetry is transmitted off the local machine. Built with a robust monitoring engine, AEGIS provides extensive detection rules and anomaly scoring for enhanced visibility into agent behavior.
22 Aug 2026
Java
★ 188
The RevEng.AI Ghidra Plugin integrates with Ghidra to facilitate AI-assisted binary analysis, enabling users to upload binaries for analysis and perform Binary Code Similarity operations. Its notable features include automatic function renaming based on confidence thresholds and the ability to display similar function names, which assist in reverse engineering stripped binaries. This tool is particularly useful for security researchers and software developers involved in binary analysis and reverse engineering tasks.
22 Aug 2026
TypeScript
★ 10
The tool is a userscript designed to migrate the deprecated Reddit API endpoints `gateway.reddit.com` and `gql.reddit.com` to functional alternatives, ensuring continued access to Reddit content. Its primary use case is for users requiring legacy API functionality to interact with Reddit while leveraging a modular architecture for network requests. Notable features include the ability to inspect network traffic through a script manager and independent operations from Reddit Inc.
22 Aug 2026
C#
★ 42
The LegoDimensions tool provides a .NET implementation for interacting with the Lego Dimensions portal and NFC tags, enabling users to automate and manipulate these elements beyond their original gaming context. Its primary use case includes reading tags and controlling portal LEDs, with support for various platforms including Windows, Linux, and MacOS, facilitating integration with devices like Raspberry Pi. Notable features include event-driven handling of tag presence and dynamic LED color adjustments for the portal pads.
22 Aug 2026
C++
★ 51
Chaos Zero Nightmare ASSet Ripper is a specialized asset extraction tool designed to retrieve encrypted game assets from the Yuna engine and specific anime games. It features support for exporting various formats, including SCT images as PNG, encrypted databases as JSON, and SCSP Spine format, with an integrated viewer for the latter. The tool allows users to navigate a file tree for asset management and enables batch exports of selected files and folders, enhancing usability for game modding and asset repurposing.
22 Aug 2026
C
★ 17
Wing Commander II source reconstruction and SDL2 port serves to restore and port the classic space combat game "Wing Commander II" as found in "Wing Commander: The Kilrathi Saga." This project enables cross-platform gameplay through the SDL2 framework, supporting both Kilrathi Saga and partial original DOS game data, while offering significant fidelity in function mapping with 98.06% machine-code similarity to the original executable. Notable features include enhanced graphical rendering options, full mouse and joystick support, and various fixes to improve user experience, such as window resizing and aspect ratio correction.
22 Aug 2026
C
★ 48
Persona 3 FES Decompilation is a work-in-progress project aimed at decompiling the USA version of Shin Megami Tensei: Persona 3 FES. Its primary use case is to provide a complete source code version of the game, facilitating modifications and research into its architecture. Notable features include ongoing efforts towards achieving a fully comprehensive decompilation to enhance accessibility for developers and modders.
22 Aug 2026
Rust
★ 43
HSR-OWNER is a comprehensive reverse-engineering and modding toolkit specifically designed for Honkai: Star Rail on Windows, stripped of any illicit cheat features to maintain legitimacy. It provides functionalities to analyze game data, modify client behavior, and aid in updating through minimal manual intervention, with full support for integration with AI tools for automation. Key features include a runtime layer that adapts to game updates, in-depth client analysis capabilities, and a straightforward build process using the MSVC toolchain.
22 Aug 2026
C++
★ 18
The CSS-MultiHack-Internal is an internal multihack designed for Counter-Strike: Source, featuring functionalities such as aimbot, triggerbot, bunnyhop hack, and anti-flash capabilities. It requires a DLL injector for installation and operation, allowing the user to toggle features via an in-game menu. Notable features include precise aimbot functionality, automatic jumping through the bunnyhop hack, and the capability to negate flashbang effects.
22 Aug 2026
C++
★ 136
Creation Kit Platform Extended (CKPE) is an enhanced editing platform for Bethesda's Creation Kit, providing a collection of modifications and reverse-engineered resources aimed at improving the user experience for titles like Skyrim Special Edition, Fallout 4, and Starfield. Notable features include various fixes, editor enhancements, and additional support for Unicode, aimed at streamlining game modding workflows. This platform serves as a comprehensive successor to previous projects focused on improving the Creation Kit's functionality.
22 Aug 2026
Python
★ 39
Caterpillar is a Python library designed for the efficient packing and unpacking of structured binary data, building upon Python's native `struct` capabilities. Its primary use case is facilitating the declaration of custom data structures through Python class definitions, enabling features like dynamic endian configuration, inheritance-based struct adaptation, and the implementation of bitfields and unions. Notable functionalities include memory optimization via `__slots__`, type compliance for static checking, and extensibility for custom parsing logic written in C or C++.
22 Aug 2026
Python
★ 10
The Ansible Security Scanner is a static analysis tool designed for evaluating Ansible playbooks, roles, and related files to identify security vulnerabilities including malicious code and unauthorized access risks. It features a comprehensive reporting mechanism that generates outputs in various formats such as SARIF and CycloneDX SBOM, while providing remediation guidance and mapping findings to established security frameworks like OWASP and MITRE ATT&CK.
22 Aug 2026
Python
★ 12
Simple Recon - Domain (SRDomain) is a comprehensive tool designed for passive and active domain enumeration, primarily aimed at OSINT workflows and reconnaissance. This Python-based application incorporates 50 data sources, offering advanced features such as DNSSEC zone walking, wildcard detection, TLS certificate SAN extraction, and HTML/JS crawling, enabling users to perform thorough domain assessments with parallel processing and no external shell dependencies.
22 Aug 2026
★ 16
The "Python for Security Professionals" course equips learners with practical skills in Python programming specifically tailored to security tasks, ranging from language fundamentals to the development of security tools. It features hands-on labs that culminate in building applications like port scanners and log analyzers, all while emphasizing clean coding practices and error handling. This lab-driven, self-paced curriculum is suitable for beginners and progresses through advanced concepts, ensuring students learn to write maintainable security software effectively.
22 Aug 2026
Python
★ 33
XeroDay's API Sniffer is a comprehensive toolkit designed for the discovery of exposed API keys, tokens, and other sensitive information in public GitHub repositories. It features an AI-driven workflow orchestration for natural-language requests, alongside manual execution options that enable users to conduct multi-stage discoveries and scans. Key functionalities include live scanning dashboards, adaptive query strategies for new repositories, and support for detailed querying of findings through a robust AI search engine.
22 Aug 2026
TypeScript
★ 59
lookup.tools is a versatile cybersecurity tool that facilitates the research of domains, IP addresses, email addresses, and other online assets. Notable features include its utilization of serverless architecture through Cloudflare Workers, a user-friendly interface built with React, and support for WHOIS and RDAP queries via the backend framework Robyn. This tool serves as an all-in-one resource for cybersecurity professionals seeking to perform comprehensive lookups.