> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

kaboom

Kaboom is an automated penetration testing tool focused on information gathering and vulnerability assessment. It integrates multiple utilities such as Nmap, Dirb, Nikto, and Hydra to conduct comprehensive scans and assessments, with results organized in an easily navigable directory. Notable features include support for both interactive and non-interactive modes, extensive customization options, multi-target scanning, and automatic identification of relevant Metasploit modules for vulnerabilities found.

jwtcat

`jwtcat` is a Python-based tool designed for detecting and exploiting vulnerabilities in JSON Web Tokens (JWTs), particularly the signature bypass flaw associated with the `alg=none` algorithm and guessing attacks against HS256 private keys. It supports brute-force and wordlist attacks, allowing users to efficiently test JWTs for security weaknesses. The tool is fully implemented in Python 3 and features options for detailed attack parameters and reporting.

Impost3r

Impost3r is a C language-based tool designed for stealing various types of passwords on Linux systems, specifically targeting sudo, su, and ssh credentials. It operates by manipulating user environment files to intercept password entries without alerting the user, automatically erasing traces post-use, and can transmit the captured data via DNS protocol. Noteworthy features include stealth operation, automated cleanup of traces, and adaptable configurations for local storage or network transmission of stolen credentials.

Hydrangea-C2-Payloads

Hydrangea-C2 Payloads is a command and control (C2) payload generator designed for creating and managing agents within a client-server communication framework. Its primary use case lies in facilitating the control of remote agents for task execution, file manipulation, and process management, with capabilities for advanced operations like DLL injection and keylogging. Notable features include a versatile command interface for both Windows and Linux systems, as well as support for various agent commands encapsulated in a structured communication protocol.

Hun2race

Hun2race is an automated report generation tool designed for bug hunters and penetration testers, leveraging AI technologies such as Google Bard and ChatGPT to facilitate quick report creation. It excels in generating polished PDF reports through LaTeX templates, streamlining the documentation process for security assessments. The tool remains in beta, emphasizing the need for user discretion while harnessing its capabilities.

gubble

gubble is a security auditing tool specifically designed to analyze Google Workspace group settings, identifying potential risks associated with group configurations such as membership permissions, visibility, and messaging capabilities. Its primary use case is to facilitate penetration tests by automating the detection of misconfigurations that could lead to privilege escalation or data exposure. Notable features include the ability to assess various permission settings, including who can join groups, post messages, and view membership, enabling security assessments of Google Groups effectively.

GoLinkFinder

GoLinkFinder is a minimalistic JavaScript endpoint extractor designed for security professionals such as bug hunters and red teamers. It efficiently extracts endpoints from both HTML sources and embedded JavaScript files by processing a specified domain, and outputs the results to a file or standard output. Notable features include seamless integration with command-line tools like grep, enhancing its utility in automated security assessments.

fileless-xec

`fileless-xec` is a penetration testing tool that enables stealthy execution of remote binary files directly in memory, avoiding disk write operations. It utilizes the `memfd_create` and `fexecve` system calls for secure execution, supports customizable program names, and can bypass network restrictions through ICMP and HTTP3. Notable features include self-removal after execution and the capability to execute binaries without prior installation dependencies on the target system.

ETW-Bypass-Rust

The ETW-Bypass-Rust tool provides a method for bypassing the Event Tracing for Windows (ETW) framework, primarily aimed at evading Endpoint Detection and Response (EDR) systems. It modifies the `NtTraceEvent` function in `ntdll.dll` to prevent logging of actions that may trigger security alerts, utilizing dynamic function address resolution. This tool serves as an educational resource for cybersecurity professionals to understand and develop defensive strategies against potential detection mechanisms.

enumdb

Enumdb is a brute force and post-exploitation tool designed for MySQL and MSSQL databases, enabling users to test credentials and search for sensitive data fields within database tables. Its notable features include automated credential discovery, multi-threaded enumeration for efficiency, the ability to execute SQL queries and spawn a simulated shell, as well as options for reporting extracted information in .csv or .xlsx formats.

emailfinder

Emailfinder is an open-source OSINT tool designed to extract email addresses from various search engines and platforms, including Google, DuckDuckGo, Bing, Yahoo, Yandex, and GitHub. It operates via a command-line interface, supporting batch processing of domains and offering flexibility through its command structure, allowing users to customize their searches for specific engines and exact matches. Notable features include the ability to fetch results from multiple sources and provide an autocompletion script for enhanced usability.

DomXssFinder

DomXssFinder is a tool designed to identify potential sources and sinks within JavaScript code that can lead to DOM-based cross-site scripting (XSS) vulnerabilities. It features two primary commands, `fsource` for locating user-controlled data inputs and `fsink` for spotting dangerous JavaScript functions or DOM objects, aiding developers in securing their web applications against XSS attacks. Notably, it provides context enhancement for findings and integrates with JSextractor for comprehensive JavaScript code retrieval from URLs.

dnsmap

dnsmap is a tool designed for scanning domains to identify subdomains through brute-forcing techniques, utilizing a built-in wordlist of approximately 1000 English and Spanish terms. It is primarily used by penetration testers during the information gathering phase of security assessments to uncover hidden servers and resources that may not be easily discoverable through standard enumeration methods. Notable features include the ability to save results in CSV and human-readable formats, and it operates without requiring root privileges to enhance security.

DIY_ESP32_Marauder

The DIY ESP32 Marauder is a cost-effective PCB design for building an ESP32-based Marauder device, primarily used for wireless network analysis and security assessments. It supports a TFT LCD display for user interaction and encompasses the requisite components for easy DIY assembly, including detailed flashing instructions for firmware installation. Notable features of the Cheapskate version include a simplified assembly process, compatibility with widely available hardware, and optional battery support for portability.

Dishost

DisHost is a command-line IP range scanner that performs configurable health checks, including ICMP, TCP, and HTTP/HTTPS tests. Its notable features include multiple ways to specify IP ranges, comprehensive health check configurations, multi-threaded performance for efficiency, and diverse output options such as JSON and CSV formats. This tool is designed for network administrators and cybersecurity professionals to assess the availability and responsiveness of hosts within specified IP ranges.

Digispark-scripts

This repository contains a collection of scripts designed for the Digispark Attiny85, enabling various pranks and system manipulation tasks on Windows systems. Notable features include the ability to execute fake updates, system crashes, information gathering, and reverse shells through Metasploit and Netcat. The scripts serve educational purposes and require specific dependencies for operation.

DarkSide

DarkSide is a versatile cybersecurity tool designed for information gathering, social engineering, and exploit research, featuring an intuitive user interface. It offers capabilities such as bypassing Cloudflare, performing port scans, and accessing hacking tutorials, alongside integration for system information retrieval via malicious links. This tool supports multiple platforms including Linux and Windows, making it accessible for a broad user base.

cybersecurity-penetration-testing

The "cybersecurity-penetration-testing" repository serves as a comprehensive collection of resources focused on penetration testing techniques, tools, and best practices in cybersecurity. It includes categorized links to software, libraries, frameworks, technical guidelines, and educational materials, aiming to assist security professionals in identifying and mitigating vulnerabilities in various environments. Notable features include extensive categories covering everything from anonymity tools to network vulnerability scanners, ensuring a broad spectrum of resources for ethical hacking endeavors.

cosmos-servapps

The Tinyactive Cosmos Marketplace is a software application designed for managing and accessing a variety of applications within the Cosmos ecosystem. Its primary use case is to facilitate the integration and deployment of apps such as 2FAuth and Activepieces, enhancing automation and security processes. Notable features include a streamlined interface for adding software sources and an extensive catalog of supported applications, promoting efficiency in application management.

Content-Bruteforcing-Wordlist

The Content Bruteforcing Wordlist is a comprehensive wordlist designed for directory content discovery when utilizing the Burp Suite extension Turbo Intruder. It features over 211 million entries to enhance the efficiency of brute-forcing web directories, making it a valuable tool for penetration testers and security researchers focused on web application security assessments. Notably, it includes easy-to-follow usage instructions and examples for seamless integration with Turbo Intruder.

CloudFlair

CloudFlair is a cybersecurity tool designed to identify the origin servers of websites that utilize CloudFlare or CloudFront while exposing them publicly. Its primary use case involves leveraging Censys's internet-wide scan data to locate IPv4 hosts that present SSL certificates linked to the specified domain, thereby highlighting potential misconfigurations. Notable features include API integration with Censys, a user-friendly command-line interface for domain scanning, and the capability to differentiate between CloudFlare and CloudFront services.

BurpSuite-Xkeys

Xkeys is a Burp Suite extension designed as a passive scanner to identify and extract sensitive strings such as keys, secrets, and tokens from web pages, listing them as informational issues. It requires Jython for setup and facilitates the automation of asset identification through passive scanning, enhancing the security assessment process by providing valuable insights on potential vulnerabilities. Notable features include various pattern matching for value extraction and seamless integration with Burp Suite’s interface.

bhhb

Burp HTTP History Browser (BHHB) is a tool designed to enable users of Burp Suite Community Edition to view and manage their HTTP history after a session ends, addressing the lack of disk-based project support. It allows users to export their HTTP history in XML format, which can then be parsed and displayed in a well-structured interface. Notable features include its functionality as a Progressive Web App (PWA) that can operate offline in any Chromium-based browser.

beescan

BeeScan is a modular IT infrastructure security auditing platform that facilitates comprehensive penetration testing and infrastructure assessments through the integration of external tools as plugins. Its notable features include automated result collection and multi-format report generation (TERMINAL, HTML, PDF), PostgreSQL database support for centralized result management, and Docker isolation for environment containerization, making it suitable for DevSecOps workflows and large-scale security audits.

BatSploit

BatSploit is an open-source penetration testing tool designed to generate Full Undetectable (FUD) payloads and includes a listener handler. Its primary use case is for security professionals conducting tests to assess vulnerabilities in systems. Notable features include ease of installation through a simple Python setup and the capability to create stealthy payloads for effective exploitation.