security-tools
Tracked open-source repos tagged security-tools, sorted by stars.
- #31
🛡️ A private certificate authority (X.509 & SSH) & ACME server for secure automated certificate management, so you can use TLS everywhere & SSO for SSH.
★ 8,800+0Star change over the last 7 days - #32★ 8,249+0Star change over the last 7 days
- #33
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
★ 8,053+0Star change over the last 7 days - #34★ 8,043+0Star change over the last 7 days
- #35
🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻
★ 7,695+0Star change over the last 7 days - #36
A static analysis security vulnerability scanner for Ruby on Rails applications
★ 7,266+0Star change over the last 7 days - #37
:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock
★ 7,162+0Star change over the last 7 days - #38★ 7,083+0Star change over the last 7 days
- #39
Open Source, Google Zanzibar-inspired database for scalably storing and querying fine-grained authorization data
★ 7,012+0Star change over the last 7 days - #40★ 6,809+0Star change over the last 7 days
- #41
Linux privilege escalation auditing tool
★ 6,601+0Star change over the last 7 days - #42
A collection of awesome security hardening guides, tools and other resources
★ 6,540+0Star change over the last 7 days - #43★ 6,540+0Star change over the last 7 days
- #44★ 6,434+0Star change over the last 7 days
- #45★ 6,314+0Star change over the last 7 days
- #46
Bjorn is a powerful network scanning and offensive security tool for the Raspberry Pi with a 2.13-inch e-Paper HAT. It discovers network targets, identifies open ports, exposed services, and potential vulnerabilities. Bjorn can perform brute force attacks, file stealing, host zombification, and supports custom attack scripts.
★ 6,259+0Star change over the last 7 days - #47
A curated list of various bug bounty tools
★ 6,230+0Star change over the last 7 days - #48
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
★ 6,169+0Star change over the last 7 days - #49
A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.
★ 6,117+0Star change over the last 7 days - #50
Open-source tool to enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy
★ 5,997+0Star change over the last 7 days - #51
The Official USB Rubber Ducky Payload Repository
★ 5,972+0Star change over the last 7 days - #52★ 5,830+0Star change over the last 7 days
- #53★ 5,720+0Star change over the last 7 days
- #54★ 5,708+0Star change over the last 7 days
- #55
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
★ 5,628+0Star change over the last 7 days - #56
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
★ 5,548+0Star change over the last 7 days - #57★ 5,408+0Star change over the last 7 days
- #58
Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange
★ 5,322+0Star change over the last 7 days - #59
Open Source Cloud Native Application Protection Platform (CNAPP)
★ 5,320+0Star change over the last 7 days - #60★ 5,175+0Star change over the last 7 days