pentest
Tracked open-source repos tagged pentest, sorted by stars.
Related topics
Topics that frequently appear alongside pentest on the same repo.
Recent risers
Repos created in the last 90 days, tagged pentest.
- #1
PentestCode - Multi-agent AI penetration testing system with persistent engagement state, strategic coordination, and parallel autonomous operations.
★ 680 - #2
面向 DeepSeek Harness(dsh)的渗透测试模式 @CloverSecLabs
★ 199
- #1
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
★ 80,589+105Star change over the last 7 days - #2
API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites
★ 23,926+44Star change over the last 7 days - #3★ 12,222+7Star change over the last 7 days
- #4
A list of resources for those interested in getting started in bug bounties
★ 12,218+12Star change over the last 7 days - #5
Program for determining types of files for Windows, Linux and MacOS.
★ 11,472+27Star change over the last 7 days - #6
Tools and Techniques for Red Team / Penetration Testing
★ 9,680+8Star change over the last 7 days - #7★ 9,358+7Star change over the last 7 days
- #8★ 8,269+22Star change over the last 7 days
- #9
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
★ 8,053+21Star change over the last 7 days - #10
A fast, simple, recursive content discovery tool written in Rust.
★ 8,050+9Star change over the last 7 days - #11★ 7,714+6Star change over the last 7 days
- #12★ 6,809+6Star change over the last 7 days
- #13
One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️
★ 6,729+3Star change over the last 7 days - #14
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
★ 6,208+1Star change over the last 7 days - #15★ 6,013+0Star change over the last 7 days
- #16★ 5,830+10Star change over the last 7 days
- #17
A curated list of awesome infosec courses and training resources.
★ 5,735+7Star change over the last 7 days - #18★ 5,708+0Star change over the last 7 days
- #19
The ultimate WinRM shell for hacking/pentesting
★ 5,459+6Star change over the last 7 days - #20
Autonomous Hacking Agent for Red Team
★ 5,428+72Star change over the last 7 days - #21
Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange
★ 5,322+2Star change over the last 7 days - #22
Phishing Tool & Information Collector
★ 4,852+0Star change over the last 7 days - #23
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).
★ 4,442+1Star change over the last 7 days - #24
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
★ 4,395+2Star change over the last 7 days - #25★ 4,376+4Star change over the last 7 days
- #26
📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering, reverse search, red team, trust & safety, AI.
★ 4,344+23Star change over the last 7 days - #27★ 4,015+4Star change over the last 7 days
- #28
Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
★ 3,928+1Star change over the last 7 days - #29★ 3,613+4Star change over the last 7 days
- #30
An ArchLinux based distribution for penetration testers and security researchers.
★ 3,481+6Star change over the last 7 days