> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

cliam

Cliam is a multi-cloud IAM permissions enumeration tool designed to identify and enumerate the permissions associated with AWS, GCP, and Azure cloud services, with Oracle support in progress. It features the `enumerate` command to specifically retrieve permissions and offers options for thread management, request timeouts, and output saving, enhancing efficiency for security assessments and audits. With built-in support for various credential sources and autocompletion for ease of use, Cliam streamlines permissions discovery across multiple cloud environments.

chisel

Chisel is a high-performance TCP/UDP tunneling tool that operates over HTTP and is secured via SSH, allowing seamless communication through firewalls and providing secure network endpoints. Notable features include encrypted and authenticated connections, automatic reconnection capabilities, multiple tunnel endpoints through a single TCP connection, reverse port forwarding, and support for SOCKS5 proxying. This single executable, written in Go, simplifies the process of establishing secure connections for remote management and network access.

chezmoi

chezmoi is a tool designed for managing dotfiles across multiple machines securely. Its primary use case is to streamline the configuration and synchronization of user environment settings, allowing for easy installation and backup of dotfiles. Notable features include its ability to handle diverse system environments and robust security measures for sensitive configurations.

cherrytree

CherryTree is a hierarchical note-taking application designed for efficient data organization in rich text format, equipped with syntax highlighting for various programming languages. Its notable features include embedded file handling, LaTeX math rendering, an integrated terminal for executing code, and extensive import/export capabilities across multiple formats including HTML and plain text. Additionally, it supports rich text formatting options, spell checking, and password protection for enhanced security, making it suitable for users requiring robust note management functionalities.

checksec

Checksec is a security analysis tool designed to evaluate the security properties of executables, including features such as Position Independent Executables (PIE), Relocation Read-Only (RELRO), stack canaries, Address Space Layout Randomization (ASLR), and Fortify Source capabilities. Originally developed in Bash and now reimplemented in Golang, it offers improved performance and supports various output formats like JSON, XML, and YAML for parsing results. The tool is especially useful for validating binary security settings on Linux systems and is adaptable for use on macOS with certain limitations.

chatmcp

ChatMCP is a cross-platform AI chat client compatible with macOS, Windows, Linux, iOS, Android, and web browsers. Its primary use case is to facilitate seamless communication across multiple devices while providing features such as synchronized data within local networks, enhanced dark theme support, and integration with deep learning models for generating content. Notably, it allows for interactive data access and real-time Q&A through its integration with DeepWiki, enhancing user experience and usability across diverse environments.

chatgpt-cli

ChatGPT CLI is a command-line interface that facilitates real-time interaction with the ChatGPT model, enabling users to engage in chat, ask questions, and perform various tasks directly from the terminal. Notable features include non-interactive question asking, image generation, text-to-speech conversion, and the ability to process multiple files simultaneously for text revisions. This tool is particularly useful for developers and users seeking efficient ways to integrate ChatGPT capabilities into existing workflows or automation scripts.

chatgpt-cli

ChatGPT CLI is a versatile command-line interface designed for interacting with various modern language models, including OpenAI and Azure. It features multi-step task capabilities, streaming and interactive chat modes, prompt file support, and robust context management for coherent conversations, making it suitable for developers and researchers engaging with LLMs. Notable functionalities include an experimental agent mode, comprehensive safety and budget controls, and seamless integration with various model providers.

chatgpt

ChatGPT CLI is a command-line interface designed for interacting with OpenAI's GPT-3.5-turbo and GPT-4 models, enabling users to engage in chat or process text inputs with customizable prompts. It supports various installation methods and allows for integration into pipelines, boosting productivity by converting text formats and translating content. Notable features include extensive keyboard shortcuts for efficient navigation and input management, along with plans for support for additional AI providers.

CF-Hero

CF-Hero is an advanced reconnaissance tool designed to uncover the true IP addresses of web applications shielded by Cloudflare. It integrates multiple intelligence-gathering techniques, utilizing data from sources such as ZoomEye, Censys, and Shodan, while performing DNS reconnaissance to identify and validate the origin IP addresses, thereby reducing false positives. Notable features include comprehensive DNS analysis, associated domain discovery, and ability to analyze both current and historical data.

cayley

Cayley is an open-source graph database designed for Linked Data, drawing inspiration from Google's Knowledge Graph. It offers features such as a built-in query editor, visualizer, and support for multiple query languages including Gizmo, GraphQL-inspired syntax, and MQL. Its modular architecture allows easy integration with various programming languages and back-end storage solutions, making it suitable for production workloads.

CasaOS

CasaOS is a personal cloud platform designed to facilitate autonomy and reduce reliance on SaaS solutions. Its primary use case revolves around creating a customizable storage and application environment that users can control and manage from a single interface. Notable features include a user-friendly dashboard, integration capabilities with various applications, and community support for collaborative enhancement and feedback.

CarrotAI

CarrotAI is an advanced AI agent application designed for real-time chat interactions, leveraging Server-Sent Events (SSE) and Model Control Protocol (MCP) for enhanced performance. It features robust multi-server support to aggregate responses, multi-language interfaces, and a responsive user experience with deep thinking capabilities for complex queries. Additionally, it incorporates secure authentication, file upload functionality, and extensive customization options, all powered by a Flutter frontend and FastAPI backend.

CardputerLoRaChat

CardputerLoRaChat is a simple chat application designed for the M5 Cardputer and M5 E220 LoRa modules, enabling communication over defined channels utilizing LoRa technology. Notable features include multiple chat tabs for distinct channels, a user status interface, and customizable settings for username, display brightness, and message pinging, as well as the ability to operate using Wi-Fi via the ESP-NOW protocol. This tool serves as an experimental platform for learning and exploration of LoRa communication principles.

carapace-bin

Carapace-bin provides argument completion functionality for a variety of command-line interface (CLI) commands, enhancing user experience across multiple POSIX and non-POSIX shells, including Bash, Zsh, Fish, PowerShell, and others. Notable features include a comprehensive listing of supported completions, extensibility via macros, and dedicated documentation for installation and setup. This tool aims to streamline command input and improve efficiency for users working in diverse shell environments.

canarytokens-docker

Canarytokens-docker is a Dockerized implementation of Thinkst’s Canarytokens, which serve as honeypots to monitor and track malicious activity within a network. The tool allows users to configure and deploy these tokens easily, utilizing features like PDF-opening tracking and alert systems via email providers. Notable functionalities include detailed setup instructions, migration support for versioning, and options for HTTPS and basic authentication enhancements.

camtruder

Camtruder is an advanced RTSP camera discovery and vulnerability assessment tool developed in Go, designed to efficiently scan for and identify vulnerable cameras across networks. Key features include comprehensive scanning capabilities (single IP, CIDR ranges, and Internet-wide), smart authentication testing with a built-in credential database, and the ability to capture screenshots from discovered devices. Its multi-threaded architecture ensures high performance, while real-time logging and detailed camera fingerprinting support thorough vulnerability analysis.

BugLens

BugLens is a tool designed to enhance the precision of static analysis results specifically for "taint-style" bugs in Linux kernel code using large language models (LLMs). It achieves a remarkable sevenfold improvement in precision and aids recall for bugs typically overlooked by human reviewers. Notable features include integration with PostgreSQL for logging and storing analysis results, as well as the capability to manage multiple LLM API keys for comprehensive analysis.

BucketLoot

BucketLoot is an automated S3-compatible bucket inspector designed to uncover assets and sensitive data in publicly-exposed storage buckets across AWS, Google Cloud, DigitalOcean, and custom domains. Key features include secret scanning using over 80 regex signatures, keyword and regex search capabilities, and the ability to execute scans with minimal setup through a guest mode, enhancing usability for security assessments. The tool outputs results in JSON format for easy integration with other tools and processes.

btop

btop is a resource monitoring tool designed for Linux, macOS, and various BSD systems, providing users with an effective interface to track system resource usage, including CPU, memory, and processes. It features an aesthetically pleasing graphical display, extensive configurability, and supports themes for personalized appearance. Noteworthy functionalities include real-time updates, GPU compatibility checks, and continuous build support for multiple platforms.

blocky

Blocky is a DNS proxy and ad-blocker for local networks, designed to enhance privacy, security, and performance. Key features include flexible blocking of DNS queries based on customizable allow/deny lists, advanced DNS resolution configurations for different client groups, and support for modern DNS protocols such as DoH and DoH3. Additionally, Blocky offers integration with monitoring tools like Prometheus and Grafana, along with a simple YAML-based configuration for easy management and backups.

bloaty

Bloaty is a size profiler designed for binaries, providing a detailed size analysis to identify contributors to binary bloat. It supports various file formats, custom data source configurations, and enables hierarchical profiles, making it ideal for optimizing binary size during development and continuous integration workflows. Notable features include the ability to generate size diffs, filter data with regex, and support for separate debug files, enhancing usability for developers managing complex builds.

binspector

Binspector is a command-line tool designed for analyzing, verifying, and fuzzing binary file formats through the use of a specialized description language to create Binary File Format Templates (BFFTs). Its primary use case is to enable users to validate binary files against specific format requirements, extract and interpret data, and generate malformed files for security testing purposes. Notable features include the ability to intelligently fuzz binary files at weak points and provide various output methods for easier analysis.

binee

Binee is a binary emulation environment designed for the introspection of IO operations in executables, particularly Windows PE files. Its primary use case is the analysis of a binary's side effects on the system, facilitated by a realistic loading mechanism, a flexible hooking framework for custom data capture, and configurable OS mocks. Notable features include the ability to dump PE files' imports and exports, a mock file system, and a command-line interface that supports verbose logging and configuration file usage.