> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

-Dungeo_ai-otudated-

OpenSource AI Dungeon Adventure is an interactive text adventure tool that leverages AI-generated storytelling for immersive role-playing experiences. It features optional AllTalk TTS narration support, allowing for vocal story output, and includes commands for saving and loading adventures, toggling content modes, and switching AI models. Designed for personal and educational use, the tool is built on Python and supports GPU acceleration for enhanced performance.

SillyTavern

SillyTavern is a frontend tool designed for power users to interact with large language models (LLMs). It provides an interface that enhances the user experience, making it easier to leverage LLM capabilities for various applications. Notable features include extensive documentation and community support through various platforms.

OpenArcana

OpenArcana is a web-based role-playing game (RPG) application built entirely in JavaScript using React and Vite, requiring no backend, and operating seamlessly in the browser or as a standalone Windows desktop application via Electron. It features real-time adventure mechanics powered by the Deepseek API, allowing users to create characters with customizable stats, engage in dynamic dialogues, and manage various game elements including inventory and world context through a user-friendly medieval-themed interface. Notable functionalities include multi-language support, automatic saving, and a system for integrating external files into gameplay.

KoboldAI

KoboldAI is a browser-based platform that facilitates AI-assisted writing through the integration of various local and remote AI models. Its primary use case encompasses three modes: a writing assistant optimized for novel writing, an interactive text adventure game, and a chatbot interface, allowing users to seamlessly switch between gameplay styles and leverage customizable AI settings. Notable features include memory functionality, the capability to import existing AI Dungeon adventures, and a user-friendly interface for altering prompts and character control, enhancing the overall storytelling experience.

exc

EXC Analyzer is a command-line tool designed for advanced intelligence gathering, security auditing, and content analysis of GitHub repositories. It enables users to assess repository security, audit GitHub Actions workflows, and locate sensitive information through dork scanning, with features such as user profiling and smart rate limiting for efficient API management. Notable for its professional-grade capabilities, it's aimed at security researchers and penetration testers looking to derive actionable insights from repository data.

system-programming-roadmap

The System Programming Roadmap is an educational framework designed to guide users through the fundamentals of compiler development, malware reverse engineering, and kernel development. It emphasizes a structured approach to mastering system programming languages such as C, Rust, and C++, while also covering essential concepts in computer architecture and assembly language. Notable features include a curated list of resources and prerequisites to enhance the learning experience and ensure a comprehensive understanding of low-level programming.

ghidra-lx-loader

The Ghidra LX Loader is an extension for Ghidra that facilitates the analysis of LX/LE executable formats, including OS/2 and various DOS styles, by providing comprehensive support for relocation, typed headers, and detailed fixup statistics. Notable features include the ability to manually override base addresses for debugging purposes, label management for fixups and memory pages, and customizable mapping options for image data. This tool is particularly useful for reverse engineers working with legacy executable formats needing robust analysis capabilities.

BerryProtocol

BerryProtocol is a TypeScript-based SDK designed for creating interactive messaging experiences on WhatsApp, enabling developers to build rich, client-facing applications with features like native lists, buttons, and real-time events. Its multi-session architecture allows for scalable connections, supporting independent authentication states and session recovery, making it suitable for SaaS platforms and chatbot integrations. The SDK emphasizes a developer-friendly experience with a clean API, robust typings, and seamless npm integration.

spyglass

Spyglass is a packet capture tool designed to run within the Minecraft: Bedrock client, providing visibility into every packet sent and received by the client, along with details on decoding failures. It facilitates debugging for server software and proxies by presenting a structured overlay that displays packet details, error information, and hex data, allowing users to filter, search, and analyze communication with ease. Notable features include an interactive packet list, detailed breakdowns of failed packets, various data export options, and customizable filtering capabilities.

keras

KeRaS is an open-source automation and scheduling tool that assists university students in managing their course planning (KRS) by acting as an integration layer between the student and the university's existing KRS systems. Developed through reverse engineering, it enables the retrieval of course data, maintains session contexts, and automates submission attempts, all without requiring a dedicated public API from the university's KRS system. Notable features include a unified scheduling interface and the ability to generate schedules based on user-defined constraints.

berbel-remote

The Berbel Remote is an ESP32-based emulator for the Berbel BFB 6bT remote control, designed to integrate seamlessly with Home Assistant through MQTT. It enables full emulation of the original remote features, including real-time status updates and supports over-the-air firmware updates, making it compatible with various Berbel kitchen hoods manufactured after November 2020. Key features include automatic entity creation via MQTT auto-discovery, efficient memory usage with the NimBLE stack, and flexible configuration options for different hood models.

ti-mindmap-hub-research

TI Mindmap HUB is a research platform leveraging Generative AI to enhance Cyber Threat Intelligence (CTI) workflows by automating the transformation of unstructured threat data into structured, actionable insights. Its notable features include automated ingestion of OSINT sources, AI-generated summaries and reports, integration with the MITRE ATT&CK framework, and STIX 2.1 export capabilities for seamless integration with security tools. Additionally, it offers a Model Context Protocol (MCP) server for AI assistant integration, facilitating interactive querying of threat intelligence.

Argus

Argus is an open-source tool designed for aggregating and visualizing over 229,000 traffic and CCTV camera feeds globally on a real-time interactive map. It features both 2D and 3D globe views, live feed playback, and a sophisticated data pipeline that scrapes metadata from various sources, allowing users to explore live streams and static images in an easy-to-navigate dashboard. Key functionalities include data synchronization, customizable filters, and a user-friendly interface built with React and TypeScript.

ThermalForge

ThermalForge is a free, open-source fan control application specifically designed for Apple Silicon Macs, offering both a menu bar app and a command-line interface. Key features include a smart adaptive fan curve, real-time temperature monitoring from multiple sensors, proactive cooling, thermal data logging, and a safety override mechanism that enforces fan speeds during critical temperature events. Unlike commercial alternatives, ThermalForge requires no subscriptions or telemetry, making it a robust solution for advanced fan management on compatible macOS systems.

MacFanControl

MacFanControl is a lightweight terminal-based tool that allows users to manage the fan speeds of their Mac computers directly through the System Management Controller (SMC) without additional dependencies. Its primary use case is to monitor and adjust fan RPMs and temperatures while ensuring that fans revert to automatic control upon exiting the application. Notable features include a live dashboard displaying RPM gauges, temperature metrics from multiple sensors, RPM history graphs, and the ability to control fans in linked or independent modes, making it especially effective for MacBook Pro users with M3 or M4 chips.

scanner

inspect-scanner is a command-line interface tool that audits public GitHub repositories or organizations, generating structured JSON and HTML reports focused on health, maintainability, quality, security, and dependency signals. It exclusively utilizes public GitHub API data and raw manifest files for analysis, ensuring no code is executed or cloned, and incorporates customizable scan configurations to enable or disable specific metrics or categories. Notably, it integrates with OpenSSF Scorecard for security assessment, emphasizing broad security practices over vendor-specific configurations.

awesome-privacy-tools

Awesome Privacy Tools is a curated repository that aggregates the best open-source privacy tools, covering categories such as encrypted messaging, anonymous email services, VPNs, and password managers. Its primary use case is to provide users with practical solutions for enhancing privacy across various digital activities. Notable features include a comprehensive list of tools sorted by use case, selection criteria for quality, and links to further resources on privacy-enhancing practices.

NextPGP

Next PGP is a Progressive Web App designed for intuitive PGP key management and secure messaging. It offers robust features such as multi-algorithm key generation, batch file encryption, and a user-friendly interface for seamless operation, while incorporating advanced security measures like end-to-end encryption and efficient cloud key management. The tool leverages modern technologies for a responsive experience, ensuring high performance through web worker multithreading, all while supporting secure local storage and cross-platform access.

web-reconstruction

The `web-reconstruction` tool is an evidence-driven solution for accurately reconstructing static websites, responsive pages, and complex UI elements utilizing WebGL/WebGPU/Canvas effects. It distinguishes between faithful replicas, visual approximations, and design transfers by using a structured approach to gather evidence, lock down routes, and verify outputs, ultimately facilitating multi-state verification and editable project creation. Key features include modular reconstruction paths for various target types, a progressive workflow that ensures accuracy, and no dependencies on third-party packages.

pulsar-mouse-linux

The pulsar-mouse-linux tool enables Linux users to configure various Pulsar gaming mice through a user-friendly interface, supporting models with distinct protocols. Key features include plugin architecture for different mouse drivers, customization options for performance and lighting, button remapping, and a system tray icon for easy access. This tool is reverse-engineered from USB HID captures and provides comprehensive support for both wired and wireless models.

patternsleuth

Patternsleuth is a testing suite designed to identify robust patterns for locating common functions and global variables within Unreal Engine games, specifically tailored for use with the UE4SS framework. Users can easily integrate game executables into the designated directory and run tests to analyze function recognition and isolation. Notable features include support for multiple game titles and a collection of established patterns that enhance the accuracy of symbol resolution.

Nds4j

Nds4j is a Java library designed for reading, modifying, and creating various file types utilized in Nintendo DS games, initially catering to the Pokémon DS hacking community. Currently, it supports several formats such as NDS ROM, NARC, and others with full editing capabilities for certain file types, while additional formats are planned for future support. Notable features include cross-platform compatibility, a focus on byte-for-byte round-tripping, and being written in pure Java, making it accessible for JVM-based applications.

dsp-w215-b1-openwrt-hacks

The D-Link DSP-W215 B1 OpenWrt Hacks repository provides comprehensive reverse engineering and control scripts specifically for the D-Link DSP-W215 B1 smart plug running OpenWrt. It offers detailed guidance on flashing OpenWrt, troubleshooting connectivity issues, and controlling the device's relay and power metering features via GPIO and serial communication with the PL8331 chip. Notable features include a step-by-step flashing procedure, solutions to common post-flash problems, and the ability to integrate with services like Home Assistant and MQTT for real-time monitoring.

xoreos-tools

xoreos-tools is a collection of utilities designed for the reverse-engineering of BioWare's Aurora engine games. Its primary use case includes converting various proprietary game file formats to XML and back, extracting and creating archives, and decompiling scripts, offering extensive support for BioWare and Nintendo file types. Notable features include support for multiple file conversions and the ability to repair or extract data from damaged or proprietary archives.