18 Aug 2026
Python
★ 1815
Getsploit is a tool designed for searching and downloading public exploits from the Vulners database, facilitating both online searches and fully offline operations via a local SQLite index. Its notable features include a comprehensive query capability across multiple exploit collections, local query support without internet connectivity, and robust JSON and tab-separated output formats, all while maintaining data privacy and integrity. The tool is compatible with Python 3.11 and above, ensuring reliable performance across various platforms.
18 Aug 2026
JavaScript
★ 11
ExecEndpoints is a dual-component toolkit designed for authorized web security testing and bug bounty efforts, featuring a Chrome extension for real-time API request monitoring and a Python server for extracting hidden endpoints from JavaScript. The tool captures detailed HTTP requests, including methods, parameters, and per-host authentication details, while enabling deep static analysis to uncover dynamic API endpoints missed by traditional scanning methods. Notable features include a rich dashboard for endpoint management, a typed secret scanner, and a safe design that operates locally without external dependencies.
17 Aug 2026
The MIDI MCP Server is a Model Context Protocol (MCP) server designed for AI-driven MIDI composition, enabling the generation of MIDI files from structured JSON data including sophisticated chord name support. Its notable features include an interactive piano-roll preview UI, a comprehensive chord library with over 25 chord types, and multiple deployment options such as local stdio, HTTP, or Cloudflare Workers. The tool also incorporates music theory resources and supports various pitch input formats, making it a versatile choice for music composition and analysis.
17 Aug 2026
Docling is a document processing tool that efficiently handles a wide variety of formats, including advanced PDF understanding, and integrates seamlessly with the generative AI ecosystem. Its key features include comprehensive parsing capabilities, a unified document representation format, support for multiple export formats, integration with applications like LangChain, and extensive OCR and ASR support for processing scanned documents and audio. Additionally, it offers local execution for sensitive data handling and is designed for easy integration into various AI workflows.
17 Aug 2026
The Google Antigravity SDK is a Python library designed for building AI agents leveraging Antigravity and Gemini technologies. Its primary use case is to provide a secure and scalable infrastructure for developing agent-based applications, enabling developers to focus on agent functionality rather than system complexity. Notable features include real-time output streaming, lifecycle management through the `Agent` class, and seamless integration with Gemini Enterprise Agent Platform for enhanced capabilities.
17 Aug 2026
Go
★ 84
MORF is a Mobile Reconnaissance Framework designed for offensive security, specifically engineered to discover hardcoded secrets within compiled mobile application artifacts (Android `.apk` and iOS `.ipa`). Unlike traditional source code scanners, MORF operates on the final shipped binaries, utilizing a robust detection engine to verify the presence and activity of secrets, while also generating Software Bills of Materials (SBOM) and Common Vulnerability and Exposure (CVE) reports. Key features include a scalable service architecture, continuous integration (CI) compatibility, and compatibility with leading security standards such as SARIF and OWASP MASVS.
17 Aug 2026
TypeScript
★ 1168
Reversense (Dexcalibur 2) is a comprehensive binary intelligence platform tailored for reverse engineering of mobile and embedded applications. It automates the analysis process through integrated static and dynamic methodologies within a unified framework, facilitating collaboration among multiple analysts. Notable features include automated scanning capabilities, device-farm compatibility, and LLM integration, enhancing user experience and operational efficiency in assessing application behavior and vulnerabilities.
17 Aug 2026
Kotlin
★ 33
ZeroDroid is a comprehensive Android hardware security toolkit designed to transform smartphones into portable RF labs, network analyzers, and security auditing tools, featuring 29 specialized utilities. Its primary use case includes analyzing various radio frequencies and sensors, as well as conducting detailed network assessments. Notable features include the ability to access WiFi, Bluetooth, NFC, GPS, and other device sensors, all presented through a terminal-hacker user interface.
17 Aug 2026
TypeScript
★ 47
Lockstep is a personal security checklist platform designed to assist users in tracking their security habits and checklist progress through a streamlined web interface. Its notable features include profile-based progress tracking, dual-language support (Turkish), and customizable checklist categorization with priority levels and filters, all backed by Docker-ready deployment for persistent data management.
17 Aug 2026
HTML
★ 181
BomberCat is an advanced security tool designed for auditing banking terminals and NFC technology, integrating both NFC and magnetic stripe functionalities for comprehensive access control and identification analysis. It supports features such as card emulation, read/write capabilities, and MagSpoof for magnetic stripe interactions, all while being compatible with popular programming frameworks like Arduino and CircuitPython. Additionally, it is equipped with WiFi connectivity for remote testing and supports a wide range of RF protocols, making it a versatile solution for security professionals.
17 Aug 2026
Python
★ 26
`xaidr` is a runtime security tool designed for AI agents that operates in-process with zero dependencies. It inspects agent interactions—input, tool calls, output, and inter-agent communications—to detect and prevent various security threats like prompt injection and unauthorized actions in real-time. The tool features a monitoring mode for assessment, a blocking mode for enforcement, and can emit structured telemetry to existing systems without requiring a network connection.
17 Aug 2026
HTML
★ 93
OWASP Threat Dragon is a tool designed for simplifying the threat modeling process, enabling users to identify and mitigate potential security risks in their applications. It is recognized as an OWASP Production project and adheres to established threat modeling principles. The project offers comprehensive documentation and community support, facilitating its integration into cybersecurity workflows.
17 Aug 2026
C#
★ 582
TrickDump is a tool designed for stealthily dumping the lsass process without generating a Minidump file, instead creating three JSON files and one ZIP file containing memory region dumps. Its primary use case is for bypassing conventional monitoring by executing three separate programs—Lock, Shock, and Barrel—that leverage NTAPIs for memory access, while offering various execution methods including different programming languages and techniques for API hook evasion. Notably, TrickDump allows for targeted execution without exposing process handles, enhancing its stealth capabilities against common antivirus and endpoint detection solutions.
17 Aug 2026
C#
★ 746
NativeDump is a specialized tool designed for dumping the lsass process using native NT APIs to create a minimal Minidump file compatible with analysis tools like Mimikatz or Pypykatz. Key features include the use of functions from Ntdll.dll for stealth and bypassing API hooking, the capability to transfer dump data without writing to disk, and several implementations across various programming languages, enhancing portability and flexibility in deployment. It has been tested against modern Windows environments while offering optional enhancements for remote exfiltration and advanced obfuscation techniques.
17 Aug 2026
Go
★ 52
Drop is a productivity-focused sandboxing tool for Linux that enables users to create isolated environments for executing programs and LLM agents while maintaining access to their existing work environment. Notable features include the use of Linux mount namespaces for an independent root filesystem, selective read-only access to user configuration files, and customizable TOML configuration files that specify which directories and files are mounted into the sandbox. This setup allows for secure, disposable workspaces that restrict processes and network access to enhance security and contain potential threats.
17 Aug 2026
Python
★ 65
CodeScanAI is a security analysis tool that leverages AI models to scan codebases for vulnerabilities and offers actionable remediation suggestions. It supports multiple AI providers, including OpenAI and Google Gemini, and integrates seamlessly into CI/CD pipelines, allowing for full directory scans, targeted scans on changed files, and inline PR review comments. Notable features include diff-aware analysis for pull requests and flexible scanning options to enhance security throughout the development process.
17 Aug 2026
Python
★ 10
Certi is a Python-based tool designed for monitoring SSL Transparency logs, aiding users in tracking their issued certificates across multiple domains. Its primary features include domain monitoring with alert notifications through various channels (enabled by Apprise), and a REST API for managing domains, thus enhancing the security and oversight of SSL certificates. Utilizing frameworks like FastAPI and Loguru, Certi provides a structured approach to certificate log analysis for both organizations and individuals.
17 Aug 2026
Mustache
★ 89
Aqua Helm is a tool for deploying Aqua Security's enterprise solutions within a Kubernetes cluster using Helm charts. It provides a range of deployment options for individual components such as the Console, Enforcer, Scanner, and KubeEnforcer, allowing for flexible and secure management of containerized applications. Key features include a quick-start deployment for testing and comprehensive charts for various service components, facilitating robust security measures in a cloud-native environment.
17 Aug 2026
Rust
★ 38
web-re-toolkit is a reverse engineering toolkit designed to solve Akamai Bot Manager and Kasada Bot Defence protections without using a browser, leveraging a V8 sandbox. It features the capability to handle V2 and V3 sensors, along with various interrogation processes, while maintaining compatibility with real device profiles and allowing for cross-language integration across Node, Python, Go, and Rust. Notably, it utilizes the vendor's original scripts for payload calculation, ensuring robust operation against evolving web security measures.
17 Aug 2026
TypeScript
★ 141
KotOR.js is a TypeScript-based reimplementation of the Odyssey Game Engine, originally used in Star Wars: Knights of the Old Republic I & II. This project aims to fully support and replicate the original engine's features, while also offering an early modding suite called KotOR Forge. It utilizes technologies like THREE.js for rendering, Electron for desktop application packaging, and provides web compatibility for enhanced accessibility in modern browsers.
17 Aug 2026
JavaScript
★ 37
Frida-libcurlUnpinning is a tool designed to bypass SSL-Pinning protections in Android applications that utilize the libcurl library. Utilizing Frida, it allows users to spawn or attach to an application, enabling the dynamic hooking of `curl_easy_setopt` to disable SSL-Pinning mechanisms. Notable features include support for both spawn and attach modes for adaptability in various use cases.
17 Aug 2026
Swift
★ 18
The "Apple Wi-Fi Password Sharing" tool provides a reverse-engineered implementation of Apple's Wi-Fi Password Sharing protocol for macOS, enabling cross-device sharing of Wi-Fi passwords via Bluetooth Low Energy (BLE). It includes functionalities for both grantor and requestor roles, allowing a device to share or request a Wi-Fi password, although it requires specific security settings and additional setups for the requestor role due to macOS restrictions. Notably, the project serves primarily educational purposes and remains experimental, with an emphasis on its untested nature and the need for additional configuration when operating on macOS.
17 Aug 2026
Rust
★ 26
Recurse is a reverse engineering desktop application leveraging radare2 for binary analysis, disassembly, and optional decompilation through r2ghidra integration. Notable features include a Cursor-style workspace for efficient navigation, a live analysis session capability, and an LLM agent that enhances the reverse engineering process via interactive queries driven by an OpenAI-compatible backend. Accessible through a dark-first UI, it aims to streamline the reverse engineering experience for security professionals and researchers.
17 Aug 2026
Python
★ 27
HikVision QR Export is a tool designed to decode and renew QR code data associated with Hik-Connect applications, specifically for extracting metadata and stored device information from QR codes generated for HikVision cameras. Its notable features include the ability to read QR code images directly from the macOS clipboard and the option to recover forgotten export passwords without the need for a static encryption key. This utility is valuable for users seeking access to their camera configurations after password loss.
17 Aug 2026
Python
★ 72
The Galaxy-Book4-Edge-linux repository focuses on reverse-engineering and providing Linux support for the Samsung Galaxy Book4 Edge, particularly enhancing features such as battery reporting and thermal management through the ENE KB9058 embedded controller. Notable features include the development of a custom battery driver and tools for fan control, alongside pre-built ISOs for easier setup and manual driver installations for existing Linux users. The project offers comprehensive documentation on the reverse-engineering process, making it a valuable resource for developers working with this ARM64 platform.