> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

awesome-ai-pentesting

Awesome AI Pentesting is a curated repository of AI-powered tools, frameworks, and resources designed for penetration testing, bug bounty hunting, and cybersecurity operations. It features a wide range of autonomous agents capable of executing end-to-end security assessments, leveraging large language models and machine learning to identify and exploit vulnerabilities in various environments. Notable tools include fully autonomous agents with high success rates, integrated AI tools for real-time testing, and robust frameworks for orchestrating comprehensive security evaluations.

AutoAR

AutoAR is an automated security reconnaissance and vulnerability hunting platform designed for bug bounty hunters and penetration testers, built in Go. It facilitates the entire recon-to-report pipeline by offering features such as subdomain enumeration, DNS takeover detection, automated vulnerability scanning with Nuclei templates, and multi-platform mobile app analysis. Notable functionalities include automatic result uploads to Cloudflare R2 storage, comprehensive monitoring for subdomain and URL changes, as well as integrated AI capabilities for enhanced searching and vulnerability detection.

articulos

The R3LI4NT/articulos repository serves as a comprehensive resource for cybersecurity and hacking-related articles, focusing on topics such as vulnerability exploitation, security techniques, and network auditing. Notable features include detailed guides on various pentesting methodologies, firewall configurations for GNU/Linux, and resources on social engineering attacks, providing practical insights and tools for both novice and experienced security professionals. Users can access the content through an integrated blog link for easier navigation and learning.

Argos

Argos is a passive Wi-Fi tracking tool designed to capture probe request frames from Wi-Fi enabled devices, allowing users to extract SSID information and acquire geographic data through Wigle, subsequently visualizing this on a Google Maps interface. The tool features a web interface, dynamic data filtering options, and parameters for controlling the scanning environment, while emphasizing strict ethical usage guidelines to prevent privacy violations. Notable functionalities include the ability to limit signal strength, support for multiple network interfaces, and compatibility with various Wi-Fi adapters for optimal performance.

Alien

Alien is a modular webshell client designed for cybersecurity research and education, providing a flexible post-exploitation framework that integrates with various web technologies through reusable modules. Key features include arbitrary code execution, a file manager, database interaction, SOCKS5 proxying, HTTP traffic obfuscation, and the ability to pivot through webshells for enhanced communication security. The architecture enables advanced capabilities while keeping the core webshell lightweight, making it suitable for authorized penetration testing scenarios.

AL-ANQA-FIRMWARE

AL-ANQA-FIRMWARE is an offensive security firmware designed for the LilyGo T-Deck, transforming it into a portable pentesting terminal equipped with over 60 integrated WiFi, Bluetooth, network, and radio tools. Key features include on-device WiFi attack capabilities, a comprehensive Bluetooth LE security audit suite, an interactive SSH client, and tools for wardriving and device monitoring—all operational without the need for additional PCs or GUIs, ensuring a self-contained and efficient testing environment.

AgentHound

AgentHound is an open-source offensive security framework designed for AI agent infrastructures, capable of conducting comprehensive reconnaissance, asset fingerprinting, credential harvesting, model inventorying, and active exploitation. It integrates findings into a Neo4j graph to visualize attack paths, addressing every layer of the agentic stack, including model gateways and inference servers. Notable features include credential inventorying, model inversion capabilities, and the ability to perform active exploitation through tool and instruction poisoning.

ad-autopwn

AD AutoPwn is a fully automated penetration testing tool that facilitates the compromise of Active Directory environments by chaining over 25 attack techniques, allowing security professionals to conduct authorized assessments effectively. Its notable features include zero-credential attacks for username enumeration and credential harvesting, advanced exploitation methods for privilege escalation, and integration with BloodHound for graph-driven attack chains and actionable insights. The tool leverages techniques such as Kerberoasting, NTLM relay, and various vulnerability exploits to streamline the process of acquiring domain admin access.

0xmrsecurity.github.io

Chirpy Starter is a Jekyll theme starter repository designed to facilitate the setup and deployment of websites using the Chirpy theme. It streamlines the process by providing essential files and configurations extracted from the theme’s gem, enabling users to quickly deploy feature-rich Jekyll sites while retaining customization options. Notable features include an automated update mechanism for new releases and a focus on user-friendly setup.

Zen-Ai-Pentest

Zen-AI-Pentest is an AI-powered penetration testing framework designed for security professionals and red teams, leveraging advanced language models alongside over 72 integrated security tools. Its notable features include a user-friendly dashboard, REST API, and modular agent system for tasks like reconnaissance, exploitation, and reporting, as well as compliance mapping and risk scoring functionalities for thorough assessments.

wstg

The OWASP Web Security Testing Guide (WSTG) is a comprehensive framework designed for assessing the security of web applications and services through standardized testing methodologies. It provides structured scenarios with unique identifiers to facilitate consistent reporting and tracking of vulnerabilities, making it an essential resource for penetration testers and organizations worldwide. Notable features include detailed documentation of testing best practices and versioning for scenario identifiers to ensure clarity and consistency across updates.

vulnrepo

VULNRΞPO is a client-side vulnerability report manager designed for security professionals, enabling users to generate, store, and manage vulnerability reports locally with a focus on privacy. The tool features client-side encryption, customizable issue templates for various security frameworks, and supports imports from multiple scanners, along with diverse export formats such as PDF and DOCX. Notable capabilities include integrated methodology tools, automated versioning, and optional backend storage via API for enhanced reporting functionalities.

vscodium-rust

VSCodium-Rust is a high-performance, agentic integrated development environment (IDE) tailored for AI engineers, enabling local machine learning model training and software development with enhanced data sovereignty. Key features include a multi-agent orchestration architecture for simultaneous task management, a native PyTorch ML studio for streamlined machine learning workflows, and robust Git integration, all while ensuring that user data remains secure and private. The IDE is built upon a lightweight Rust, Tauri, and TypeScript stack, promoting efficiency and autonomy in development processes.

toolbox-pentest-web

The toolbox-pentest-web repository provides a lightweight Docker image designed for the assessment of web-based applications, including websites and APIs. It offers an up-to-date collection of offensive and defensive tools and scripts, optimized for size and usability, with recent expansions into mobile assessment. Key features include a non-root operating environment, continuous updates via GitHub Actions, and a comprehensive index of available scripts and resources.

toolbox

go-appsec/toolbox is a collaborative security testing tool designed for application security assessments through the Model Context Protocol (MCP). It enables users to interact with web applications via a proxy while an agent analyzes and manipulates the traffic, facilitating complex testing scenarios and more thorough identification of vulnerabilities. Notable features include built-in HTTP proxy capabilities, support for wire-fidelity and various protocols, and the ability to seamlessly integrate with existing tools like Burp Suite for enhanced testing workflows.

Specter-FlipperZero

Specter transforms the Flipper Zero into a sophisticated counter-surveillance tool designed for detecting active 13.56 MHz NFC readers. This tool passively listens for RF emissions from hidden skimmers or covert readers, providing real-time feedback on the presence and type of detected devices, as well as the cleanliness of the environment. Notable features include an analog EMF gauge for proximity detection, a fingerprinting capability to classify the type of NFC reader, and the ability to log and monitor over time, enhancing situational awareness for security professionals.

Sniper

Sniper is an open-source web security proxy designed for macOS that allows penetration testers, bug bounty hunters, and developers to intercept, inspect, and modify HTTP/HTTPS traffic. Built in Rust, it offers a lightweight and efficient alternative to traditional proxy tools, featuring capabilities such as HTTP forwarding, passive vulnerability scanning, request replay, and an integrated command-line interface for automation. Notable for its rapid startup time and low memory usage, Sniper provides a user-friendly experience without the overhead of Java-based platforms.

shiftgrid

ShiftGrid is an open-source prompt engine designed for agentic penetration testing while maintaining human oversight. It facilitates the management of testing workflows through structured checklists and detailed observations, ensuring transparency and traceability of actions performed by agents. Notable features include an easily modifiable workflow system, real-time monitoring of agent activities, and the ability to switch between agents or manual testing seamlessly, all while maintaining independence from the specific models and workflows used.

sherlock

Hunt down social media accounts by username across social networks

SecTools

SecTools is a comprehensive repository of curated open-source and public tools designed for various cybersecurity applications, including OSINT, vulnerability analysis, and application security testing (SAST/DAST). It offers a user-friendly table that categorizes tools with their descriptions, licenses, and activity indicators, facilitating streamlined access to resources for security workflows. Notable features include a focus on UNIX compatibility and an organized structure that enhances usability across multiple security domains.

scoop-security

Scoop Security is a Scoop bucket specifically designed for penetration testing and cybersecurity tools, enabling users to easily install and manage various security applications via PowerShell commands. Key features include a curated list of tools such as vulnerability scanners, webshell management clients, and advanced web scanning utilities, providing a comprehensive resource for security professionals. The setup process is streamlined through straightforward installation commands, facilitating quick access to essential cybersecurity tools.

s3dns

S3DNS is a specialized DNS server designed for identifying exposed cloud storage buckets across various platforms such as AWS S3, Google Cloud Storage, and Azure Blob. Key features include recursive CNAME resolution, detection of potential subdomain takeovers, caching and rate limiting capabilities, and support for IPv6 checks against known cloud IP ranges. This tool is particularly beneficial for penetration testers and cloud security analysts engaged in reconnaissance activities.

rosemary

Rosemary is a cross-platform tool for transparent network pivoting and tunneling over QUIC, enabling seamless traffic interception on remote hosts without the need for proxies or special configurations. Its key features include kernel-level interception of TCP, UDP, ICMP, and DNS traffic, a comprehensive web dashboard for real-time monitoring, and support for multi-hop connections through multiple agents. This tool is designed for scenarios where secure and efficient access to remote networks is required without altering client configurations.

RF-Swift

RF Swift is a versatile tool designed to quickly set up a comprehensive hardware and RF security lab using containerized applications, allowing security professionals to utilize over 200 tools without altering their primary operating system. It supports multiple platforms, including Linux, Windows, and macOS, across various architectures while offering the ability to run specialized images for different engagement types. Notable features include rapid deployment, host OS preservation, and the ability to run on x86_64, ARM64, and RISC-V64 systems.

red-flake-nix

Red-Flake Nix is a customized NixOS flake designed for penetration testing, red teaming, and CTFs, providing a pre-configured environment with essential tools and themes. Notable features include support for encrypted root on ZFS, a non-persistent root on tmpfs, systemd-boot with EFI, and integration of databases like PostgreSQL and Neo4j for Enhanced Metasploit and BloodHound capabilities. The setup is tailored with a customized KDE desktop and a variety of standalone tools, exploits, and wordlists for comprehensive cybersecurity operations.