> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

gosqli

gosqli is a specialized tool designed for the rapid and accurate detection of blind SQL injection vulnerabilities using time-based techniques. It can scan both URLs and HTTP request files with user-defined payloads, ensuring zero false positives through sequential testing and real-time verification of results. Notable features include automatic exploitation integration with tools like sqlmap, configurable output options, and support for proxy routing, making it suitable for comprehensive security assessments.

gitar

Gitar is a sophisticated Python-based HTTP server designed for simple and efficient file exchange during penetration tests and capture the flag (CTF) competitions. It enables users to quickly upload and download files and directories to and from a target machine without requiring installation, while also offering features such as HTTP webhook logging and secure container deployment options. Notable functionalities include minimal command shortcuts for file transfers and additional modes for logging and secure sending.

GhostBuilder

GhostBuilder is a multifunctional payload generation tool that enables the creation of payloads for various platforms, including Android, Windows, Linux, macOS, and iOS, utilizing Metasploit. It features capabilities such as injecting payloads into existing APK files, automatic signing, zipaligning for APKs, and a simple menu-driven interface for ease of use. Designed for ethical hacking and penetration testing, it incorporates automatic handling of dependencies and bad characters, making it suitable for security research and authorized security work.

Gamal

Gamal is a lightweight Flask application designed for red teamers and pentesters, facilitating mass data exfiltration and various attacks such as SSRF, XXE, and XSS. It features file delivery capabilities, where users can upload and categorize payloads for exploitation, and includes a helper script that automates the download of common penetration testing tools. The tool supports features like customizable logging, SSL configuration, and can handle uploads while associating files with user and host identifiers for better tracking.

FastDork

FastDork is a Chrome extension designed to enhance the efficiency of dork research and result scraping by allowing users to run multiple dork queries in batches, scrape results, and manage data through reusable lists. Notable features include custom site configurations using CSS selectors, automatic result importation, and support for generating searches across multiple tabs, significantly streamlining the workflow for security researchers and pentesters.

ExploitHawk

ExploitHawk is a terminal-based exploit search tool tailored for ethical hacking and red team operations on Linux distributions. It offers features such as fast multi-threaded searches through local databases, customizable name and version querying, a user-friendly ncurses interface, and clipboard integration for easy result management. The tool is primarily designed to enhance safe testing for users with permissions on systems while requiring a local copy of Exploit-DB for functionality.

exchange-penetration-testing

The "exchange-penetration-testing" tool provides a comprehensive framework for performing penetration tests on Microsoft Exchange servers. It facilitates reconnaissance, brute-force attacks, and exploitation of vulnerabilities such as ProxyLogon and ProxyShell, alongside automated enumeration of the Global Address List (GAL). Notable features include the ability to conduct password spraying and provide access to critical vulnerabilities, enabling security professionals to assess and strengthen Exchange server defenses effectively.

EntraFalcon

EntraFalcon is a PowerShell-based assessment tool that helps pentesters, security analysts, and system administrators evaluate the security posture of Microsoft Entra ID environments. It performs over 80 automated checks to identify weak configurations and risky assignments, such as excess permissions on privileged accounts and improper Conditional Access policies, and presents findings in interactive HTML reports for detailed analysis. The tool is easy to use across platforms, requiring no additional modules and offering built-in authentication to streamline deployment.

emailextractor

emailextractor is a high-speed email scraping tool developed in Go that enables concurrent crawling of websites to extract email addresses for purposes such as reconnaissance and sales intelligence. Key features include fast concurrent processing, fallback to headless Chrome for JavaScript-rendered content, smart URL normalization, and optional JSON output for easy integration.

EgnakeRAT

EgnakeRAT is an advanced remote administration tool (RAT) designed for authorized penetration testing and red team operations on Android devices. It features a fully asynchronous command and control (C2) server utilizing AES-256-CBC encryption for secure communications, along with a real-time web dashboard for device management and various tactical modules such as remote shell access and keylogging. Its use of a length-prefixed JSON protocol and automatic reconnection handling enhances its performance and user experience, making it a robust solution for security researchers.

DirRunner

DirRunner is a Go-based command-line tool designed for DNS enumeration, directory discovery, virtual host identification, FUZZ payload testing, and basic HTTP fingerprinting. With features such as worker pools for concurrent processing, streaming result output, and customizable HTTP requests via command-line flags, it is optimized for performance and flexibility without relying on third-party dependencies. The tool supports multiple modules for specific tasks and offers options for JSON output, deterministic exports, and the ability to route traffic through Tor for added anonymity.

dark-nexus

Dark Nexus is a modular and multi-threaded C++17 framework designed for comprehensive network reconnaissance and infrastructure analysis. It consolidates various tools into a single executable, offering powerful features including subdomain scanning, OSINT gathering, and advanced asset mapping through a user-friendly hybrid CLI. Its aggressive multi-threading capabilities and intuitive architecture ensure efficient operations across 12 distinct modules, catering to a wide range of reconnaissance needs without the burden of complex setups.

CVE-2021-3129

This tool exploits the Remote Code Execution vulnerability (CVE-2021-3129) found in specific Laravel versions, enabling users to execute commands on vulnerable instances with "APP_DEBUG" set to true. Key features include the ability to write and execute commands remotely, as well as several patch options to secure the application against the exploit. The tool is intended for educational and research purposes, emphasizing the importance of responsible usage.

crawley

Crawley is a web crawling tool that efficiently parses HTML pages to discover and print links, including resources like images, audio, and video. It features a fast SAX-parser, customizable scan depth, compliance with `robots.txt`, support for subdomain crawling, and options for ignoring certain URLs or scanning specific tags. Additionally, Crawley allows for the use of user-defined cookies and headers, making it adaptable for various crawling scenarios.

communitytools

Transilience AI Community Tools offers an AI-driven penetration testing suite comprised of 26 skills and 3 tool integrations, facilitating a comprehensive approach to security testing from reconnaissance to reporting. Notable features include full OWASP coverage, intelligent automation through Claude for workflow coordination, and the ability to generate professional, detailed reports leveraging common standards like CVSS and MITRE ATT&CK. The toolset is designed for both commercial and personal use as an open-source solution, enhancing the efficacy of security assessments.

COM-Hunter

COM-Hunter is a COM hijacking persistence tool designed for both educational purposes and red teaming applications, offering functionality in .NET and as a Cobalt Strike compatible BOF variant. Its notable features include multiple modes for establishing or removing COM hijacking persistence mechanisms, such as searching for CLSIDs, executing classic persistence, and utilizing Task Scheduler. This versatile tool assists security professionals in simulating advanced persistence techniques within Windows environments.

cokmap

Cokmap is a high-speed network scanner developed in Go that detects services and products on open ports using probes formatted according to the nmap-service-probes schema. Notable features include rapid product detection through a plugin architecture, support for flexible configuration, and the ability to generate detailed statistics. It is compatible with both Linux and macOS systems and offers a straightforward command-line interface for input and output handling.

CertCrunchy

CertCrunchy is a reconnaissance tool designed to leverage SSL certificate data from online sources to identify potential hostnames. It allows users to retrieve SSL data for specific domains or an IP range, with notable features including multi-threading for faster queries, output customization in CSV or JSON format, and integration with various APIs, such as Censys and VirusTotal.

CamHawk

CamHawk is an advanced camera phishing tool designed for security research and penetration testing that simulates an attack by tricking users into granting webcam access. Once access is obtained, it captures images in real-time and sends them to the attacker's machine, offering features like automated dependency installation, multiple tunneling options, and a customizable phishing page. This tool serves as a valuable resource for developers and cybersecurity professionals to understand and mitigate risks associated with webcam exploitation.

BurpRecon

BurpRecon is a cybersecurity tool designed for bug bounty hunters, facilitating the extraction and analysis of attack surface intelligence from Burp Suite XML exports. It automates identification of high-value vulnerability candidates such as IDORs, Host Header Injections, and Privilege Escalation vectors through a multi-phase analysis, while also performing technology fingerprinting and CVE lookups—all through a single interactive command-line interface. Notable features include detailed scoring for various vulnerabilities, ready-to-run proof-of-concept generation, and support for passive subdomain enumeration.

Bug-Bounty-Arsenal-v.3

BugBounty Arsenal is a comprehensive, full-stack security scanning platform designed for bug bounty hunters and security researchers. It features over 50 detectors for various vulnerabilities across multiple categories, continuous monitoring with scheduled scans, findings triage to manage results over time, and CI/CD integration to automate security checks in development pipelines. Unique capabilities include attack surface management, tailored AI-driven remediation advice, and extensive reporting options, all from a centralized dashboard.

BeaconatorC2

BeaconatorC2 is a modular communication and management application designed to facilitate the deployment and operation of beacons in restrictive programming environments, particularly for EDR evasion tactics. The tool supports various beacon implementations and allows users to quickly configure receivers, execute commands, and integrate with Metasploit for enhanced capabilities. Notable features include a user-friendly GUI, support for multiple communication protocols, and extensibility through custom beacon schemas.

awesome-skills-security

The "Awesome Security Skills" repository offers a curated collection of security testing resources in the form of agent skills for use with various AI agents. Its primary use case is to provide security professionals with immediate access to essential tools such as wordlists, payloads, and patterns for tasks like penetration testing, bug bounty research, and educational demonstrations. Notable features include integration with over 60 supported agents, organized categories for diverse security tasks, and comprehensive LLM security testing methodologies.

Awesome-Offensive-AI-Agentic-Landscape

The Offensive AI Agentic Landscape project is a comprehensive catalog of resources focused on AI-driven penetration testing and autonomous red-team agents. It offers an extensive compilation of open-source projects, specialized models, skills, MCP servers, academic papers, benchmarks, and commercial solutions, providing researchers and security professionals with a holistic view of the offensive AI domain. Key features include a curated list of popular agents and tools, with a focus on leveraging AI for offensive security operations.

Yggdrasil

Yggdrasil is a cybersecurity tool designed to automate the installation of missing tools and streamline the configuration of Kali Linux following a fresh setup. Its primary use case is enhancing setup efficiency for cybersecurity professionals by providing automation scripts for various cybersecurity tools, alongside features like systemd service monitoring and deployment category additions. Notable features include customizable installation paths, hardening options, and support for multiple programming environments, making it a versatile resource for security practitioners.