Skip to main content
buildradar
Sign in
Topic · security-tools

security-tools

Tracked open-source repos tagged security-tools, sorted by stars.

331 repos
  • certificates@smallstep

    🛡️ A private certificate authority (X.509 & SSH) & ACME server for secure automated certificate management, so you can use TLS everywhere & SSO for SSH.

    8,800+0Star change over the last 7 days
  • bandit@PyCQA

    Bandit is a tool designed to find common security issues in Python code.

    8,249+0Star change over the last 7 days
  • reconftw@six2dez

    reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

    8,053+0Star change over the last 7 days
  • cve@trickest

    Gather and update all available and newest CVEs with their PoC.

    8,043+0Star change over the last 7 days
  • 🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩‍💻

    7,695+0Star change over the last 7 days
  • brakeman@presidentbeef

    A static analysis security vulnerability scanner for Ruby on Rails applications

    7,266+0Star change over the last 7 days
  • traitor@liamg

    :arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock

    7,162+0Star change over the last 7 days
  • monkey@guardicore

    Infection Monkey - An open-source adversary emulation platform

    7,083+0Star change over the last 7 days
  • spicedb@authzed

    Open Source, Google Zanzibar-inspired database for scalably storing and querying fine-grained authorization data

    7,012+0Star change over the last 7 days
  • WhatWeb@urbanadventurer

    Next generation web scanner

    6,809+0Star change over the last 7 days
  • Linux privilege escalation auditing tool

    6,601+0Star change over the last 7 days
  • A collection of awesome security hardening guides, tools and other resources

    6,540+0Star change over the last 7 days
  • osmedeus@j3ssie

    A Modern Orchestration Engine for Security

    6,540+0Star change over the last 7 days
  • zizmor@zizmorcore

    Static analysis for GitHub Actions

    6,434+0Star change over the last 7 days
  • syzkaller@google

    syzkaller is an unsupervised coverage-guided kernel fuzzer

    6,314+0Star change over the last 7 days
  • Bjorn@infinition

    Bjorn is a powerful network scanning and offensive security tool for the Raspberry Pi with a 2.13-inch e-Paper HAT. It discovers network targets, identifies open ports, exposed services, and potential vulnerabilities. Bjorn can perform brute force attacks, file stealing, host zombification, and supports custom attack scripts.

    6,259+0Star change over the last 7 days
  • A curated list of various bug bounty tools

    6,230+0Star change over the last 7 days
  • scan4all@GhostTroops

    Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

    6,169+0Star change over the last 7 days
  • AI-Infra-Guard@Tencent

    A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

    6,117+0Star change over the last 7 days
  • privacy.sexy@undergroundwires

    Open-source tool to enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy

    5,997+0Star change over the last 7 days
  • The Official USB Rubber Ducky Payload Repository

    5,972+0Star change over the last 7 days
  • NetExec@Pennyw0rth

    The Network Execution Tool

    5,830+0Star change over the last 7 days
  • dotenvx@dotenvx

    a secure dotenv–from the creator of `dotenv`

    5,720+0Star change over the last 7 days
  • 1earn@ffffffff0x

    ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup

    5,708+0Star change over the last 7 days
  • Cheatsheet-God@OlivierLaflamme

    Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

    5,628+0Star change over the last 7 days
  • Nettacker@OWASP

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    5,548+0Star change over the last 7 days
  • Modlishka@drk1wi

    Modlishka. Reverse Proxy.

    5,408+0Star change over the last 7 days
  • Ladon@k8gege

    Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange

    5,322+0Star change over the last 7 days
  • ThreatMapper@deepfence

    Open Source Cloud Native Application Protection Platform (CNAPP)

    5,320+0Star change over the last 7 days
  • cameradar@Ullaakut

    Cameradar hacks its way into RTSP videosurveillance cameras

    5,175+0Star change over the last 7 days
← Back to topics