> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

cet-spoofing-detection

The CET Spoofing Detection tool is a proof of concept designed to identify stack spoofing vulnerabilities in CET (Control-flow Enforcement Technology) processes by comparing the shadow stack to the user stack to detect missing frames. Its primary use case is for security professionals assessing the integrity of CET implementations, and it features a straightforward terminal interface for running vulnerability checks on specific processes. However, users should note that the tool may produce false positives, particularly when analyzing .NET applications.

cervantes

Cervantes is an open-source, collaborative platform tailored for penetration testers and red teams, serving as a comprehensive management tool for organizing projects, vulnerabilities, and reports in a centralized location. It enhances operational efficiency by providing features such as team collaboration, OWASP compliance reports, built-in dashboards, and one-click report generation. Designed to be multiplatform and multilanguage, Cervantes streamlines penetration testing activities, significantly reducing coordination time and effort.

capsaicin

Capsaicin is a next-generation web directory and asset discovery engine designed for red teamers, bug bounty hunters, and DevSecOps. It employs advanced evasion techniques, including TLS fingerprint spoofing and human-like delay simulations, to bypass modern web application firewalls and effectively uncover hidden paths, secrets, and misconfigurations. Notable features include smart auto-calibration to eliminate false positives, stateful fuzzing for misconfigured APIs, and the ability to detect over 16 different WAFs.

bulwark

Bulwark is an organizational asset and vulnerability management tool that integrates with Jira for generating application security reports. Its notable features include multi-client vulnerability management, security report generation, team-based roles authorization, and API key management. Designed for early-stage development, it offers a user-friendly interface for managing security tasks and facilitating team collaboration.

bls-bible

The BLS Bible is a web application designed for cybersecurity professionals to manage and organize their assessment-related data and documentation, utilizing a configurable server structure for diverse operational environments. Its primary use case allows users to update, customize, and categorize data through specific folders while maintaining a user-friendly interface for content retrieval. Notable features include support for custom data folders, Docker deployment, and distinct server types tailored for varying operational needs.

benchjack

BenchJack is a vulnerability scanner designed to assess whether AI benchmarks can be manipulated, highlighting weaknesses before adversarial agents can exploit them. It employs a multi-phase audit process that combines static analysis tools with AI-driven deep inspection, categorizing vulnerabilities into eight distinct classes and providing real-time results via a web dashboard. Notable features include proof-of-concept exploit code generation and future integration of Docker sandboxing for enhanced security during analysis.

basilisk

Basilisk is an open-source AI red teaming framework designed for automated adversarial prompt testing against various large language models (LLMs) such as Claude and GPT-family models. It features evolutionary prompt search, structured attack modules, and a real-time scan dashboard, enabling security researchers and penetration testers to conduct repeatable and comprehensive security assessments of LLM applications. Notable capabilities include differential mode comparisons across multiple model providers, guardrail posture scanning, and the ability to export test results in various formats.

AwesomeNmap

Awesomenmap is a comprehensive knowledge base dedicated to Nmap, providing a centralized repository for essential Nmap NSE scripts, CVE search tools, and automated reconnaissance pipelines. It streamlines access for security analysts, pentesters, and blue teams, featuring organized references and integration of third-party scripts to ensure they are current. Notable features include post-scan reporting capabilities and visualizations for enhanced security assessments.

awesome-offensive-mcp

Awesome Offensive MCP is a curated collection of Model Context Protocol servers designed for Red Teaming, Pentesting, and Vulnerability Research, enabling users to seamlessly integrate Agentic AI into their offensive security workflows. The tool supports various tasks such as running Nmap scans, analyzing Ghidra decompilations, and querying Shodan—all through natural language commands within a unified conversation context. It emphasizes safety and compliance, encouraging users to audit the code of the MCP servers before deployment.

awesome-cybersecurity-tools

The "Awesome Cybersecurity Tools" repository serves as a comprehensive catalog of security tools aimed at students, red/blue teams, and cybersecurity professionals. It categorizes a wide range of tools across various domains, including reconnaissance, web application testing, cloud security, and digital forensics, ensuring that users have access to well-maintained and widely utilized software for security testing and defensive research. Notable features include a structured navigation system for efficient lookups and a strong emphasis on responsible and authorized usage of listed tools.

awesome-adversarial-machine-learning

The "Awesome Adversarial Machine Learning" repository provides a comprehensive collection of resources and references related to the security challenges associated with machine learning models. Its primary use case is to facilitate knowledge sharing and improve understanding of adversarial attacks, threat modeling, and defensive strategies in machine learning applications. Notable features include categorized resources on attacks by domain and strategy, case studies, and links to relevant frameworks, enhancing the tool's utility for researchers and practitioners in cybersecurity.

atomicgen.io

atomicgen.io is a web-based tool that simplifies the creation of Atomic Red Team tests by providing a user-friendly interface and automated YAML formatting. Its primary use case is to streamline security testing processes without the need for installation, allowing users to generate and manage tests directly through their browser. Notable features include customizable options and seamless integration with Docker for easy deployment.

async-rust-rat

Async Rust RAT is an open-source Remote Administration Tool (RAT) designed for Windows, developed in Rust primarily for legitimate system administration, research, and educational purposes. Notable features include system information retrieval, remote desktop capabilities, webcam capture, file management, and various control functionalities such as shutdown and restart, along with a client builder for customization. The tool emphasizes responsible use, necessitating explicit permission for system management tasks.

Arsenal

Arsenal is a versatile cybersecurity tool designed for vulnerability discovery and web application security testing. It automates the process of scanning and identifying common web vulnerabilities such as SQL injection, XSS, and open redirects, while also generating targeted wordlists for various web applications. Notable features include integration with multiple data sources for reconnaissance and the ability to automate tests for local file inclusion and sensitive file exposure.

ai-redteam-recursive-self-improvement

The AI Red-Team Recursive Self-Improvement Framework is a governance tool designed for managing recursive self-improvement loops in AI-assisted projects. It enforces a structured protocol that separates proposal creation and acceptance, incorporating rigorous independent checks, documentation, and promotion decision-making to ensure reliability and accountability. Key features include a domain-neutral approach, preservation of failure outputs, and explicit evidence requirements before promoting changes, making it suitable for various applications, including code maintenance and agent orchestration.

agentseal

AgentSeal is a comprehensive security toolkit designed for AI agents, providing robust capabilities such as detection of malicious configurations, tracing toxic data flows, and scanning for potential supply chain vulnerabilities across various agents. It features an extensive pipeline for local scanning, real-time monitoring, and auditing of machine configurations without the need for API keys, alongside the ability to test against 225+ adversarial prompts. Notable functionalities include the `guard` command for scanning and assessing the security of agent configurations and the option to create organization-specific policies through custom rule sets.

AES-Encoder

AES-Encoder is a PowerShell-based tool designed for crypting and obfuscating PowerShell scripts, primarily to evade modern antivirus detection. It features advanced capabilities such as variable name randomization, compression, and encryption, as well as support for recursive layering and AMSI bypassing for enhanced security. The tool is open-source, allowing users to easily modify and create their own variants for educational purposes.

ADPhantom

ADPhantom is an interactive Bash wrapper for NetExec, facilitating credential gathering and network enumeration during penetration testing and red team activities. It offers extensive features, including authentication tests, SMB and LDAP enumeration, credential dumping, and password spraying, while automatically generating session logs and reports for efficient documentation. Additionally, it provides advanced functionalities such as a per-step skip system, a Ctrl+C handler for command interruption, and the ability to query deleted Active Directory objects via tombstone controls.

abogado-del-diablo

Abogado del Diablo is a Claude Code skill designed to provide critical, no-nonsense feedback on ideas, plans, or projects by acting as a hostile devil's advocate. It systematically critiques submissions by examining eight key angles, such as market viability and competition, delivering a blunt verdict along with prioritized issues to address, ensuring that potential flaws are identified before they can lead to failure. Notably, it can analyze full projects by reading files and utilizing parallel subagents for in-depth assessments, making it an invaluable tool for preemptive strategic planning.

zscan

Zscan is a fast and customizable service detection tool designed to identify services, APIs, and network configurations within infrastructure using a flexible fingerprint system. Key features include high-performance concurrent port scanning, intelligent service detection capabilities (such as MAC vendor identification and OS fingerprinting), precise proof of concept (POC) targeting, and versatile output formats including JSON and human-readable options. This tool enhances scanning accuracy and speed compared to traditional methods, making it valuable for network security assessments.

WordListsForHacking

WordListsForHacking (WFH) is a comprehensive wordlist generation toolkit designed for penetration testing and red team operations, featuring 44 subcommands encapsulated within a single command-line interface. It supports tasks such as charset and mask generation, web scraping, personal and corporate profiling, and advanced techniques including machine learning-based ranking and acrostic generation. The tool is geared towards enhancing the efficiency and effectiveness of security assessments through diverse and robust functionalities.

winprivesc

WinPrivEsc is a Windows enumeration and privilege escalation discovery toolkit designed for authorized testing. It offers two script variants—one using cmd for stealth on monitored hosts and another using PowerShell for more comprehensive analysis, allowing users to assess escalation vectors while maintaining a read-only operation. Notable features include customizable noise levels for the script output and extensive reporting on system configurations, user accounts, and permissions, ensuring flexibility and adaptability to various security environments.

tengu

Tengu is a multi-command platform (MCP) server that functions as an AI-assisted penetration testing copilot, integrating with various security tools such as Nmap and Metasploit. It automates reconnaissance and scanning processes while allowing users to maintain control over exploit actions, featuring advanced safety controls like allowlisting and audit logging. Notable features include its orchestration of 80 tools, automated report generation, and pre-built workflows for diverse pentesting scenarios.

sopa

Sopa is a Golang-based client for the Active Directory Web Services (ADWS) protocol, facilitating comprehensive directory management operations. It supports object search and retrieval, lifecycle management, attribute editing, account management, and custom actions while leveraging WS-Enumeration, WS-Transfer, and other protocols. Notable features include the ability to create, delete, and modify objects, as well as manage account passwords and group memberships.

slack-watchman

Slack Watchman is a cybersecurity tool that utilizes the Slack API to monitor Slack workspaces for exposed sensitive data and enumeration of user and conversation details. Its primary use case is aiding red, blue, and purple teams in identifying potential security risks, including various types of keys, personal data, and files through customizable, time-based searches. Notable features include an unauthenticated probe mode for gathering workspace information, automated updates of signature definitions for detecting secrets, and flexible logging options for output formatting.