> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

kimiko

Kimiko is a pentesting configuration tool that enhances the Kimi Code CLI by providing a specialized framework for authorized offensive security, penetration testing, and mobile device security research. Key features include automated context loading for security workflows, customizable agent configurations, and robust capabilities for network offensives, malware generation, reverse engineering, and more, all under strict user authorization. Designed for lawful and ethical testing only, Kimiko facilitates a streamlined setup for various security research methodologies.

Java-Android-Magisk-Burp-Objection-Root-Emulator-Easy

JAMBOREE is a portable installer that rapidly sets up a comprehensive security and administrative toolkit for Android app testing without requiring local admin rights on Windows. It provisions a functional environment including Android AVD, Magisk, Frida, Objection, and Burp Suite in seconds with no bundled binaries, all driven by an open-source PowerShell script. Key features include built-in proxy configurations, an intuitive PowerShell UI for launching tools, and an optional collection of additional utilities for advanced security assessments.

hexgraph

HexGraph is a self-hosted tool designed for AI-assisted vulnerability research that operates entirely on local machines. It allows users to analyze binaries or firmware images by breaking down the targets into components, executing analysis tasks, and organizing findings within a structured, typed graph stored in SQLite. Notable features include a focus on local operations without telemetry, a hypothesis worklist for managing leads, and a secure environment ensuring that all interactions with potentially hostile targets occur in an isolated Docker container.

Hardware-Hacking-Tools

The Hardware Hacking Tools repository serves as a comprehensive catalog of various tools utilized for hardware hacking, focusing on areas such as firmware analysis, hardware debugging, and physical attack strategies. It includes specific tools for JTAG/SWD debugging, firmware dumping, reverse engineering, and side-channel attacks, making it invaluable for security researchers and penetration testers. Notable features include categorized tool listings by attack methods and links to both open-source and commercial hardware hacking tools.

hackinglife

HackingLife is a personal knowledge management tool designed to document and organize cybersecurity insights and notes for easy retrieval. Its primary use case is to support users in building a comprehensive personal repository of cybersecurity knowledge, while its notable feature is the informal and unstructured approach to note-taking, allowing for rapid updates and personal elaboration.

hackenv

hackenv is a command-line tool designed for managing hacking environments based on Kali Linux and Parrot Security, enabling users to quickly create, configure, and control short-lived virtual machines. Notable features include instant download of official live images, simple SSH access via public-key authentication, shared directories between host and guest, and unified keyboard layouts. This tool streamlines the setup of secure pentesting environments directly from the terminal, emphasizing efficiency and ease of use.

GraphQLer

GraphQLer is an advanced, dependency-aware testing tool specifically designed for GraphQL APIs, enabling dynamic testing that leverages an API's schema to automate request generation and vulnerability detection. Key features include support for fragments and unions, error correction for invalid requests, tracking of objects for reconnaissance, and automatic detection of insecure direct object reference vulnerabilities. With an interactive terminal UI, customizable configurations, and detailed output logs, GraphQLer streamlines the testing process for enhanced security assessment of GraphQL APIs.

gobuster

Gobuster is a high-performance brute-forcing tool written in Go, primarily used for web directory/file enumeration, DNS subdomain discovery, and virtual host detection. It features multi-threaded scanning, multiple operational modes including support for cloud storage enumeration, and extensibility with custom wordlists. Its design is tailored for security professionals, providing a reliable and efficient means to conduct penetration testing and security assessments.

ghost

ghost is a private desktop application designed for Windows that facilitates local file searching, the execution of AI agents, and integration with over 10,000 tools. Its notable features include the ability to operate entirely offline, ensuring user data remains secure and private, alongside advanced protocol support for seamless communication between tools and AI functionalities. This makes ghost particularly suitable for users prioritizing data privacy and local processing capabilities.

gallia

Gallia is an extendable penetration testing framework specifically designed for the automotive industry, facilitating comprehensive security assessments from individual electronic control units (ECUs) to entire vehicles. It primarily focuses on the Unified Diagnostic Services (UDS) interface, offering a generic interface that supports logging and reproducible testing, which aids in post-processing tasks. Its setup involves creating a configuration file to specify command line options, making it suitable for researchers and developers conducting security evaluations in automotive environments.

Flipper-Zero-IR-Signal-Generator

The Flipper Zero IR Signal Generator is a versatile tool designed to generate and emit various infrared signals for security assessments and hardware hacking. It features a user-friendly interface, customizable settings for different signal types, and secure operations to minimize risks, making it accessible even to users with limited technical experience. The tool is compatible with Windows, macOS, and Linux systems, requiring only a Flipper Zero device and a USB connection for operation.

FirmwareDroid

FirmwareDroid (FMD) is a research tool designed for automating the extraction and security analysis of pre-installed Android applications from firmware images. Primarily functioning through a backend API with a minimal React frontend, it integrates numerous third-party analysis tools, static analyzers, decompilers, and file extraction utilities to facilitate in-depth security research. Notable features include support for dynamic analysis (in progress), a comprehensive inventory system for extracted files, and compatibility with various APIs such as VirusTotal.

favirecon

favirecon is a reconnaissance tool that utilizes favicon.ico files to enhance the target information gathering phase. It allows users to quickly identify technologies, web application firewalls, exposed panels, and known services associated with a given domain or list of domains. Notable features include configurable output options, support for concurrency, and the ability to filter results based on favicon hashes.

ExploitHunter.app

ExploitHunter.app is an open-source offensive-security tool designed to enhance the cost-effectiveness of security research through intelligent orchestration of various AI models. It facilitates broad reconnaissance, inventory checks, and evidence gathering using budget-friendly or local models, while reserving expensive frontier models for deeper analysis and validation tasks. Key features include automated lab environments for running evaluations, local model capabilities without API costs, and a data explorer for tracking evaluation outcomes and expenses.

endpointhunter

EndpointHunter is a bug bounty tool that efficiently extracts various sensitive information, including API endpoints, LFI paths, secrets, and cloud storage URLs, from JavaScript, CSS, and HTML files. Its multi-threaded scanning capability enhances speed, while seamless integration with other recon tools and automated filtering of static assets optimize the reconnaissance process for security researchers. Notable features include smart recon for linked files, noise reduction, and support for output saving and batch processing of multiple URLs.

embark

EMBArk is a web-based platform designed for centralized firmware security analysis, utilizing the EMBA scanner as its backend. It offers features such as scanning, tracking, reporting, and presents results through an aggregated management dashboard to enhance accessibility and usability. Currently, it supports only Ubuntu LTS (version 24) and provides an intuitive setup and management interface for enterprise environments.

dirsearch

dirsearch is an advanced web path discovery tool designed for brute-forcing directories and files on web servers. Its primary use case is assisting cybersecurity professionals in identifying hidden resources within a web application, supporting features such as customizable wordlists, recursion, and a Python API for automation. The tool requires Python 3.11 or higher and offers various installation options, including native Rust backend support and pre-built binaries.

Digital-Forensics-Tools

Digital Forensics Tools is a comprehensive repository that curates essential utilities for digital investigations, including tools for disk forensics, memory analysis, malware detection, and network monitoring. Key features include disk imaging, file recovery, and memory acquisition tools, alongside advanced utilities like Volatility for memory analysis and Autopsy for user-friendly disk examination. This toolkit serves as a valuable resource for cybersecurity professionals conducting forensic investigations and data recovery tasks.

cve-mcp

CVE-MCP is a centralized vulnerability intelligence platform that unifies data from multiple sources, including NVD, EPSS, CISA KEV, and GitHub Advisory, to provide real-time intelligence tailored for AI agents. It streamlines the process of accessing critical vulnerability information on-demand, eliminating the need for cumbersome manual searches across disparate databases. Notable features include an extensive array of integrated tools, seamless API access, and compatibility with established frameworks like MITRE ATT&CK, significantly enhancing efficiency in vulnerability assessment and response.

Cascavel

Cascavel is an autonomous Continuous Threat Exposure Management (CTEM) engine designed to streamline Red Team operations and validate adversarial exposures. It automates the process of scoping and discovery, prioritizes vulnerabilities with real-time threat intelligence, and employs a robust validation engine to minimize false positives while generating actionable remediation recommendations. Notable features include dynamic mapping of infrastructure, integration with threat databases, and support for various output formats, all engineered to enhance operational efficiency in cybersecurity.

Bug-Bounty-Tampermonkey-Scripts

Bug-Bounty-Tampermonkey-Scripts is a collection of user scripts designed for use with the Tampermonkey browser extension, aimed specifically at enhancing the bug bounty hunting process. The primary use case includes automating the extraction of URLs, titles, domains, and specific URL counts from Google search results, facilitating more efficient data gathering for security researchers. Notable features include customizable script functions that streamline the workflow for gathering and analyzing relevant information during bounty hunting activities.

BOFA

BOFA is an open execution fabric designed for authorized security workflows, enabling the seamless movement of authorization from local environments to ephemeral cloud workers. Its primary use case revolves around enhancing security analysis by integrating memory retention, public intelligence, and local notes while facilitating a structured review process for findings. Notable features include built-in AI copilot support, a comprehensive bounty workspace setup, and robust authorization management, ensuring that evidence and artifacts are securely tied to each workflow.

blog

This repository provides a curated collection of detailed writeups on various cybersecurity challenges, including Bug Bounty, Hack The Box (HTB), TryHackMe, and Capture the Flags (CTFs). It serves as an educational resource for cybersecurity practitioners at all levels, featuring in-depth explanations of techniques for web exploitation, privilege escalation, and more, aimed at enhancing understanding of vulnerabilities and methodologies in cybersecurity.

AzureAttackKit

AzureAttackKit is a comprehensive suite of tools designed for penetration testing and assessments of Azure environments from a Windows machine or Azure Cloud Shell. Its primary use case is to streamline the collection of Azure resources, enabling automated queries and security checks across multiple subscriptions using tools like PowerZure, AzureHound, and AADInternals. Notable features include the ability to quickly pull subscription data, execute targeted scripts for information gathering, and employ regular expressions for searching sensitive information within Azure resource configurations.

awesome-cyber-ai-arsenal

Awesome Cyber AI Arsenal is a comprehensive collection of over 250 battle-tested offensive, defensive, and AI-powered security tools, organized into distinct categories for Red Team, Blue Team, and AI security applications. This repository facilitates quick access and deployment of security tools, emphasizing responsible usage for authorized testing and education purposes only. Notable features include extensive subcategories tailored for specific security functions, making it an invaluable resource for security professionals.