Security Tools & Software

Security tools, password managers, VPNs, auth services.

aquatone

github

A Tool for Domain Flyovers

Go
★ 5,930

Cosmos-Server

github

☁️ The Most Secure and Easy Selfhosted Home Server. Take control of your data and privacy without sacrificing security and stability (Authentication, anti-DDOS, anti-bot)

JavaScript
★ 5,890

passbolt_api

github

Passbolt Community Edition (CE) API. The JSON API for the open source password manager for teams!

PHP
★ 5,882

1earn

github

ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup

C++
★ 5,672

awesome-infosec

github

A curated list of awesome infosec courses and training resources.

★ 5,651

can-i-take-over-xyz

github

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Python
★ 5,644

clusterfuzz

github

Scalable fuzzing infrastructure.

Python
★ 5,560

privacy.sexy

github

Open-source tool to enforce privacy & security best-practices on Windows, macOS and Linux, because privacy is sexy

TypeScript
★ 5,532

Cheatsheet-God

github

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

★ 5,529

NetExec

github

The Network Execution Tool

Python
★ 5,494

Ladon

github

Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange

C#
★ 5,282

awesome-cybersecurity-blueteam

github

:computer:🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.

★ 5,273

AutoSploit

github

Automated Mass Exploiter

Python
★ 5,238

Learn-Web-Hacking

github

Study Notes For Web Hacking / Web安全学习笔记

Python
★ 5,212

pacu

github

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Python
★ 5,170

Nettacker

github

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Python
★ 5,144

openfga

github

A high performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar

Go
★ 5,125

bleachbit

github

BleachBit system cleaner for Windows and Linux

Python
★ 5,068

wireguard-docs

github

📖 Unofficial WireGuard Documentation: Setup, Usage, Configuration, and full example setups for VPNs supporting both servers & roaming clients.

Shell
★ 5,020

cameradar

github

Cameradar hacks its way into RTSP videosurveillance cameras

Go
★ 5,017

ossec-hids

github

OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.

C
★ 5,005

dalfox

github

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Go
★ 4,961

google-ctf

github

Google CTF

Python
★ 4,941

gau

github

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Go
★ 4,917