> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

pickledb

pickleDB is an in-memory Python key-value store designed for high performance and asynchronous operations, leveraging the `orjson` module. It provides a simple interface for storing and retrieving data, making it suitable for applications requiring fast access to key-value pairs. Notable features include its ease of use, lightweight design, and support for JSON file persistence.

Photon

Photon is a high-performance web crawler designed specifically for Open Source Intelligence (OSINT) purposes. It excels at extracting a variety of data types—including URLs, emails, social media accounts, files, and secret keys—while offering extensive customization options for crawls, such as timeout control and regex URL exclusions. Notable features include smart thread management, support for plugins, and a simple deployment via a lightweight Docker image.

PenTestScripts

PenTestScripts is a collection of automation scripts designed to assist penetration testers during assessment engagements. Its primary use case is to streamline various tasks typically involved in penetration testing, enhancing efficiency and effectiveness. Notable features include automation for reconnaissance, exploitation, and post-exploitation tasks tailored for security professionals.

PentestGPT

PentestGPT is an AI-powered autonomous penetration testing agent designed to streamline the penetration testing process through a multi-stage pipeline that encompasses reconnaissance, exploitation, and reporting. Notable features include session persistence for continued testing, real-time updates during operations, and support for multiple AI models, enhancing its capability for complex challenges across various categories such as web application security and CTF competitions. The tool is modular and extensible, allowing for future enhancements and integration with different AI systems.

pdfminer.six

pdfminer.six is a Python library designed for extracting and analyzing text from PDF documents, focusing on fidelity to the original formatting and layout. It offers features such as support for multiple font types, embedded images, and various compression techniques, along with capabilities for handling interactive forms and multi-language support, including CJK characters. The modular architecture allows users to create custom interpretations or rendering devices for diverse applications beyond text extraction.

OSSEM

Open Source Security Events Metadata (OSSEM) is a community-driven project that focuses on documenting and standardizing security event logs across multiple operating systems, such as Windows, Linux, and MacOS. Its primary use case is to define a common data model and provide detailed data dictionaries to facilitate the normalization and analysis of security events, enhancing the ability to detect and respond to adversarial techniques. Notable features include schema tables for aggregating data entities, and a detection model aimed at developing data analytics based on the relationships among security events.

osint

The OSINT tool is a Python package designed for building custom Open Source Intelligence applications and APIs. It features various reconnaissance modules, including DNS lookups, web scraping, and port scanning, and is capable of storing and visualizing results in a built-in database. Users can generate JSON outputs for seamless integration with other projects, facilitating efficient data analysis and insights.

openpilot

openpilot is an advanced driver assistance system designed to enhance the functionality of existing automotive systems in over 300 supported vehicles. This open-source robotics operating system provides a plug-and-play experience with compatible hardware like the comma four, allowing users to access features like lane keeping and adaptive cruise control. Notably, openpilot offers multiple branches for different levels of stability, from stable releases to cutting-edge development builds, catering to both everyday users and developers seeking to contribute.

openai-server

openai-server is a local implementation of the OpenAI API, providing functionality for the `/v1/engines/list` and `/v1/engines/{model_name}/completions` endpoints. It aims to replicate the OpenAI API's behavior, allowing users to generate text completions with provided models such as GPT-2. Key features include easy set-up for local testing, compatibility with existing OpenAI libraries, and the ability to fetch JSON responses from the implemented endpoints.

octosuite

Octosuite is a terminal-based toolkit designed for GitHub data analysis, enabling users to query and analyze information related to users, repositories, and organizations directly from the command line or through an interactive terminal interface. Notable features include a versatile data retrieval system with support for various data types, export functionality to JSON, CSV, or HTML formats, and integration capabilities for Python projects.

nmap-converter

The nmap-converter is a Python script designed to convert Nmap XML reports into XLSX format, streamlining the process of data analysis and reporting for network scans. Its primary use case is for cybersecurity professionals who need to generate easily accessible reports from Nmap scan results. Notable features include support for custom output file paths and a straightforward command-line interface for ease of use.

nexfil

NExfil is a Python-based OSINT tool designed for rapid retrieval of social media profiles associated with specific usernames across over 350 platforms in under 20 seconds. Notable features include batch processing for multiple usernames, results saving in text files, and planned support for JSON and CSV formats, as well as proxy and Tor integration.

newspaper

Newspaper3k is a Python library designed for article scraping and curation, allowing users to extract and analyze web content with ease. Its key features include automatic language detection, article metadata extraction (such as authorship and publication date), natural language processing capabilities to summarize content, and a user-friendly API for scraping articles from both individual URLs and whole publications.

netzob

Netzob is an open-source tool designed for the reverse engineering, modeling, and fuzzing of communication protocols, including network protocols, structured files, and inter-process communications. Its notable features include protocol modelization, grammar inference for both passive and active traffic analysis, and the ability to generate realistic communication traffic while also supporting fuzz testing for undocumented protocols. Additionally, Netzob can import communication traces from various formats and export protocol models compatible with tools like Wireshark and Scapy.

NetWorm

NetWorm is a Python-based network worm designed to spread across local networks and provide attackers control over compromised machines. It serves as a template for developing similar malware, featuring capabilities like SSH brute-forcing and propagation via USB devices. This tool is not fully functional but offers a starting point for educational use, emphasizing the need for conversion into executables for deployment on target machines.

n6

n6 (Network Security Incident eXchange) is a comprehensive system designed for the collection, management, and distribution of security information on a large scale. Its primary use case is to facilitate the sharing of threat and incident data among authorized users via a REST API and a web interface, enabling enhanced network security posture. Notable features include a user-friendly web interface and robust data delivery mechanisms to streamline information dissemination.

MyJunk

MyJunk is a repository that serves as a storage solution for various random files that the author has made accessible due to limitations with WordPress in handling Python files. Its primary use case is to provide easy access to these files for users who may need them for reference or use. Notably, it functions as a simple file repository rather than a specialized tool.

mwparserfromhell

mwparserfromhell is a Python package designed for parsing MediaWiki wikicode with a focus on ease of use and robust functionality, supporting Python 3.9 and higher. Its primary use case is to manipulate and analyze MediaWiki content, with notable features including a fast C tokenizer, support for nested templates, and a rich API for modifying parameters and filtering templates based on various criteria.

mwcfg-modules

The mwcfg-modules repository offers tools for extracting malware configurations using the Malduck framework, specifically designed for analyzing various malware types. Its primary use case is to facilitate the extraction of configuration data from known malware variants, including Azorult and Emotet, among others. Notable features include a command-line utility for seamless integration and support for multiple malware configurations, enhancing threat analysis capabilities.

munk

Munk is a Maltego transform pack designed to visually map and analyze Splunk deployments by allowing users to visualize components such as Indexers, Indexes, Sourcetypes, and Hosts with a single click. It facilitates streamlined interaction with Splunk architecture by enabling users to run searches on specific entities directly within Maltego, alongside configurable settings for authentication, proxy use, and time range for searches. Notably, Munk also supports iterative loading of large environments and offers comprehensive views of complex Splunk infrastructures.

MSongsDB

MSongsDB is a comprehensive dataset containing analysis and metadata for one million songs, primarily aimed at researchers to facilitate large-scale algorithm development in music analysis. Notable features include data sourced from The Echo Nest and a commitment to supporting commercial-scale research, alongside links to related datasets for cover songs and lyrics. The project is a collaboration between The Echo Nest and Columbia University's LabROSA, funded by the NSF.

mquery

Mquery is a web-based GUI tool designed for malware analysts to swiftly search through large volumes of malware samples using Yara queries. It leverages the UrsaDB for accelerated querying through n-grams, allowing rapid indexing and search functionalities for terabytes of data. Notable features include easy setup with Docker, a user-friendly interface for query execution, and efficient indexing capabilities to manage extensive sample collections.

Moriarty-Project

The Moriarty Project is a web-based phone number investigation tool that facilitates the identification of phone number owners, assesses spam risk, and gathers associated information from social media platforms. With features that allow users to search for comments and links related to the given number, it aims to assist in digital investigations without supporting any intrusive actions such as tracking or hacking. Notably, it offers a customizable feature set and focuses solely on investigative purposes rather than mobile compatibility.

mltk-algo-contrib

The mltk-algo-contrib repository provides custom algorithms designed for integration with the Splunk Machine Learning Toolkit, enabling users to extend its capabilities through the ML-SPL API. By leveraging existing machine learning libraries such as scikit-learn and statsmodels, this Splunk app allows for the development of unique algorithms while maintaining compatibility with the Splunk environment. Key features include the ability to incrementally fit models and apply them to search results contained in pandas DataFrames.

ml-compiler-opt

MLGO is a framework that integrates machine learning techniques into the LLVM compiler infrastructure, replacing traditional optimization heuristics with learned models. It currently supports optimizations for inlining-for-size and register-allocation-for-performance, utilizing Policy Gradient for training policies. Notable features include the ability to train custom models, support for pretrained models, and a high-performance local training setup.