> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

iaito

This project has been moved to:

I-See-You

ISeeYou is a Bash and Javascript tool to find the exact location of the users during social engineering or phishing engagements. Using exact location coordinates an attacker can perform preliminary reconnaissance which will help them in performing further targeted attacks.

HyperDbg

State-of-the-art native debugging tools

htshells

Self contained htaccess shells and attacks

htrace.sh

My simple Swiss Army knife for http/https troubleshooting and profiling.

hrtng

IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformations

houdini

Hundreds of Offensive and Useful Docker Images for Network Intrusion. The name says it all.

HostHunter

HostHunter a recon tool for discovering hostnames using OSINT techniques.

HookCase

Tool for reverse engineering macOS/OS X

honeypots

30 different honeypots in one package! (dhcp, dns, elastic, ftp, http proxy, https proxy, http, https, imap, ipp, irc, ldap, memcache, mssql, mysql, ntp, oracle, pjl, pop3, postgres, rdp, redis, sip, smb, smtp, snmp, socks5, ssh, telnet, vnc)

HolyTips

A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.

hollows_hunter

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).

hidden

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

HexWalk

Hex Viewer/Editor/Analyzer compatible with Linux/Windows/MacOS

hexstrike-ai

HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.

herpaderping

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.

hermes-dec

A reverse engineering tool for decompiling and disassembling the React Native Hermes bytecode

heap-viewer

IDA Pro plugin to examine the glibc heap, focused on exploit development

harpoon

CLI tool for open source and threat intelligence

hal

HAL – The Hardware Analyzer

HackVault

A container repository for my public web hacks!

HackTools

The all-in-one browser extension for offensive security professionals 🛠

Hacking-Windows

A FREE Windows C development course where we will learn the Win32API and reverse engineer each step utilizing IDA Free in both an x86 and x64 environment.