07 Aug 2026
TypeScript
★ 24
rever-browser is an Electron application designed for API reverse engineering, enabling users to interact with targeted websites in an embedded Chromium tab while capturing and analyzing network requests. Its notable features include live traffic capture, AI-assisted code agent interactions, browser automation capabilities, and advanced JavaScript bundle analysis, facilitating the reproduction of API calls within a seamless interface.
07 Aug 2026
C++
★ 36
reSL is a reverse-engineered version of the DOS game ShortLine v1.1, adapted for modern mobile and touch-controlled devices. Its primary use case is to provide an accessible way to play a classic game in a browser while maintaining the original experience, featuring improvements such as enhanced UI for touch interaction, fixed bugs from the original game, and cross-platform compatibility. Notable features include mouse/touch controls for menus, error handling enhancements, and visual updates, all aimed at recreating the game closely to its original form while ensuring a smoother gameplay experience.
07 Aug 2026
Assembly
★ 141
Pokémon Pinball: Ruby & Sapphire is a disassembly project that facilitates the building of the ROM for the Pokémon Pinball: Ruby & Sapphire game. This tool is primarily used for archival and development purposes, allowing users to analyze and modify the game code. Notable features include the provision of a specific ROM SHA-1 hash for validation and detailed setup instructions in the INSTALL.md file.
07 Aug 2026
JavaScript
★ 18
The pin-it tool enables users to pin any tweet to their X (formerly Twitter) profile through a UserScript or executable bookmark. Although it was designed for ease of use via Tampermonkey or Greasemonkey, it currently faces functionality issues due to changes in the X API, with no planned fixes. Notable features include the ability to run as a UserScript or bookmarklet, though usability may be hindered by Content Security Policies.
07 Aug 2026
Python
★ 17
PeAR is a versatile binary instrumentation tool leveraging the GTIRB framework, designed to add AFL++ or WinAFL instrumentation to x64 Linux and x86/x64 Windows binaries, as well as coverage tracing for x64/ARM64 Linux binaries. Key features include multiplatform support, preservation of original binary properties, the ability to import Ghidra function names into stripped binaries, and advanced fuzzing options such as persistent and shared memory modes. PeAR is particularly effective for real-world binaries, even those that are stripped, enabling practical application in binary fuzzing and tracing.
07 Aug 2026
Swift
★ 132
OpenAlpha is a Swift package designed for retrieving images from compatible Sony digital cameras via Wi-Fi. Its primary use case involves connecting to the camera's hotspot to access and download various image sizes, including thumbnails and high-resolution originals. Notable features include support for QR code integration to configure hotspots, as well as specific asset management for efficient media retrieval, tailored to manage potential battery implications during operation.
07 Aug 2026
Shell
★ 38
The lineageos-echo-show-camera repository facilitates the functionality of the front camera on the Amazon Echo Show 5 (2nd gen) by integrating a complete camera stack into the unofficial LineageOS 18.1 environment. Key features include image capture at 1600x1200 resolution, live preview with accurate color representation, and advanced image processing capabilities such as exposure adjustment and lens shading correction. This tool is essential for users seeking to enhance their device's multimedia capabilities within a custom Android framework.
07 Aug 2026
★ 252
Greenfield is a tool designed to reverse engineer clean behavioral specifications from any codebase, producing outputs such as behavioral specs, test vectors, and acceptance criteria while maintaining a full provenance trail. It integrates into the Claude Code environment and employs a multi-layered analysis pipeline that synthesizes specification data from various sources, enabling implementation teams to develop against clear and sanitized specifications without exposure to the original code's structure. Notable features include versatility in analyzing diverse code structures, the ability to re-sanitize existing workspaces, and a comprehensive output organization for ease of access to generated specifications and audit trails.
07 Aug 2026
JavaScript
★ 43
Gravit Designer - Self-Hosted Edition is a locally hosted vector design tool that allows users to utilize all Pro features without needing a cloud account. Notable features include full offline capability, a reverse-engineered module system, native desktop applications for Windows and Linux, and built-in documentation provided through a local server. This tool is ideal for users seeking a fully functional graphic design application that operates independently of internet connectivity.
07 Aug 2026
Python
★ 22
ERPLibre is a versatile CRM/ERP platform designed for managing Odoo modules, supporting multiple Odoo versions (12.0 to 18.0) within a single workspace using independent Python environments. Key features include a guided interactive CLI for module management, automated module code generation, Selenium-driven web testing, and production-ready Docker deployment options, ensuring ease of installation and robust functionality in a local environment. The integration of pre-trained Generative Transformers enhances data management and automation capabilities.
07 Aug 2026
Python
★ 149
The Cookidoo API is an unofficial Python package designed to facilitate access to the Cookidoo platform. It utilizes the `aiohttp` library for asynchronous requests, requiring OAuth2 login through stored credentials, and handles various exceptions related to API interactions. Notable features include support for cross-domain cookies and detailed usage documentation with example scripts.
07 Aug 2026
★ 319
The Quarkslab repository serves as a comprehensive archive of presentations delivered at various conferences and seminars, focusing on topics related to cybersecurity, reverse engineering, and hardware challenges. It features notable material such as workshop slides and papers on advanced techniques in Bluetooth hacking, binary instrumentation, and exploiting software vulnerabilities. This resource is primarily used for sharing knowledge and promoting discussions within the cybersecurity community through detailed lecture content and insights from industry experts.
07 Aug 2026
Rust
★ 330
Vesper is a high-performance OSINT username scanner designed to investigate user profiles across over 2000 social networks and websites. Built in Rust, it offers features such as asynchronous scanning, Tor proxy support for privacy, automated screenshots of found profiles, and comprehensive reporting options including JSON and CSV formats. Its professional CLI provides real-time progress tracking, allowing users to efficiently gather and analyze online presence information.
07 Aug 2026
Python
★ 263
OwlTrack is a multifaceted tracking tool designed for investigation purposes, capable of gathering detailed information about phone numbers, email addresses, and IP addresses using various scanning methods. Key features include phone number identification with location data, email validation and finding capabilities, and a DDoS attack option for stress testing websites. Built with Python, Bash, and JavaScript, it operates on platforms including Android and Linux, catering to diverse cybersecurity needs.
07 Aug 2026
TypeScript
★ 39
Omnichron is a TypeScript-based tool that provides a unified interface for querying various web archive services, including the Wayback Machine and Common Crawl, through a consistent API. Its notable features include support for multiple providers, built-in caching, dynamic imports for tree-shaking, parallel query execution with retry and timeout settings, and comprehensive TypeScript definitions for type safety. Users can easily configure provider settings and handle errors effectively when retrieving archived snapshots.
07 Aug 2026
JavaScript
★ 468
Malware Research Hub is a comprehensive local platform designed for malware intelligence, featuring a curated forensic catalog with 2,699 live specimens and a proprietary search engine. Its primary use case is to provide researchers and cybersecurity professionals with an extensive, accessible repository of real malware samples indexed by family and type, while ensuring safety through encrypted storage and a containment-focused design. Notable features include a detailed forensic catalog, an automatic specimen downloader, and a bilingual interface for enhanced usability.
07 Aug 2026
CSS
★ 36
Exploratores is a modular OSINT toolkit designed for investigative workflows, providing curated search tools for people, domains, images, and social platforms, as well as utilities like a browser-side PII Redactor and an embedded CyberChef for data analysis. Its notable features include a fully responsive layout, privacy-conscious mechanisms that ensure no data leaves the user's machine, and support for multi-country IBAN verification. The toolkit operates entirely in modern web browsers without backend dependencies, allowing for versatile, secure, and efficient open-source intelligence gathering.
07 Aug 2026
Python
★ 10
FTPBuster is a command-line brute-forcing tool engineered for testing the security of FTP, SFTP, and explicit FTPS servers through dictionary-based attacks. Its notable features include support for single username/password and wordlist attacks, real-time progress tracking, multithreading capabilities with a maximum of 50 threads, and automatic handling of UTF-8 encoded wordlists, making it suitable for penetration testing and ethical hacking scenarios.
06 Aug 2026
OPTIMATCH is a tool designed to learn and quantify vulnerability patterns to effectively locate statement-level vulnerabilities in code. Its primary use case involves leveraging machine learning techniques for the identification and reproduction of vulnerabilities, facilitating a deeper understanding of code flaws. Notable features include an environment setup for reproducibility, the ability to train and retrain models for different phases, and options for testing various baseline approaches.
06 Aug 2026
Shell
★ 88
Portscan Protection is a tool designed to enhance the security of Linux systems by detecting and blocking IP addresses that perform rapid port scanning, which could lead to unauthorized access attempts. Its notable features include support for both iptables and nftables, systemd and cron operation modes, custom SSH port functionality, and the ability to manage whitelists and blacklists for IP addresses. The tool is easy to install and comes with automatic updates, ensuring continuous protection against port scan attacks.
06 Aug 2026
Python
★ 29
Dirracuda is a graphical user interface (GUI) tool designed for discovering and categorizing open directory listings across various protocols, facilitating audits on accessible resources. Key features include a user-friendly dashboard for launching scans, integration with the Shodan API for candidate discovery, and support for file viewing and malware scanning post-download. It emphasizes security measures for scanning unknown hosts, recommending the use of VPNs and virtual machines.
06 Aug 2026
Go
★ 546
Witness is a dynamic CLI tool designed to create an audit trail for software throughout the entire software development lifecycle (SDLC) by adhering to the in-toto specification. It integrates with popular platforms such as GitHub, GitLab, AWS, and GCP to ensure that software production steps are verified, tampering is detected, and policies can be enforced using an embedded OPA Rego engine. Notable features include keyless signing support via Sigstore, timestamp authority integration, and compatibility with both containerized and non-containerized environments without requiring elevated privileges.
06 Aug 2026
Go
★ 102
url.vet is an open-source phishing detection engine that evaluates URLs and domains in real-time, providing a trust score, verdict, and comprehensive security report with live page previews. Notable features include 18 concurrent analyzers, 33 signals analyzed for trustworthiness, detailed explanations for each verdict, and integration capabilities with a REST API and Chrome extension. This tool serves as a self-hostable alternative to established platforms like VirusTotal, offering detailed insights without relying on opaque machine learning processes.
06 Aug 2026
Python
★ 15
The NPM Supply Chain Security Scanner is a robust tool designed to identify vulnerabilities in NPM and PyPI dependencies, specifically targeting known compromised packages associated with significant supply chain attacks from 2025 to 2026. Key features include comprehensive detection of transitive dependencies, integration with multiple programming ecosystems, and careful analysis of installation scripts and entangled dependencies for malicious patterns, alongside automated script options for continuous security monitoring and reporting.
06 Aug 2026
Go
★ 199
gonids is a Go library designed to parse and create Intrusion Detection System (IDS) rules for engines like Snort and Suricata. Its primary use case involves assisting security professionals in managing and optimizing IDS rules, featuring capabilities to parse rules, create DNS rules, and optimize HTTP rules for cross-platform compatibility. Notable features include error handling during rule parsing, support for flexible rule creation, and an optimization function for adapting rules between IDS engines.