Showing 36 of 355 projects
A Python RESTful API framework for querying multiple online malware analysis and threat intelligence services.
A curated list of tools, add-ons, articles, and exploits built with the Scapy packet manipulation library.
Visualizes network topologies and communication flows from pcap files across device, IP, and TCP/UDP layers.
A framework for parsing configuration information from malware, extracting items like addresses, passwords, and filenames.
A low-level mutator for Windows PE files that obfuscates headers and metadata to break static analysis signatures without breaking execution.
A modular OSINT honeypot that monitors adversary reconnaissance attempts and generates early-warning intelligence for blue teams.
A forensic artifact parsing tool that quickly analyzes disk images and extracted artifacts from Windows, Linux, macOS, and Android devices.
An automated security testing toolkit for GraphQL endpoints that discovers, analyzes, and scores vulnerabilities.
A collection of French and English wordlists specifically curated for cracking French passwords.
A deprecated open-source platform for hosting Capture The Flag (CTF) competitions, originally used for picoCTF 2019.
Import 28+ threat intelligence feeds into CrowdSec with automatic deduplication, normalization, and real-time sync.
A curated list of tools and resources for understanding, detecting, and removing malware persistence techniques across operating systems.
A framework to analyze, dissect, and decompile complex code-reuse attacks like ROP chains from memory dumps.
A modern SMTP honeypot that simulates a vulnerable mail server to capture and log email-based attacks with database integration.
A modular Python tool that collects threat intelligence for hosts (IPs, domains, FQDNs) from multiple sources and outputs CSV data.
A heavily modified version of Cuckoo Sandbox with enhanced malware analysis capabilities, 64-bit support, and anti-evasion techniques.
A pub-sub broker for threat intelligence data that connects open-source security tools like OpenCTI, MISP, Zeek, and VAST.
An open-source, lightweight TCP/UDP tunneling solution with connection pooling and multi-protocol support for bypassing network restrictions.
A framework for automating offensive security testing by scripting security tool APIs like Empire and Metasploit.
A collection of writeups documenting solutions and lessons learned from Capture The Flag hacking competitions.
A daily updated summary of the most frequent security advisories from multiple global CERTs and threat intelligence sources.
A web-based interface for the Volatility memory forensics framework, enabling browser-based analysis of RAM dumps.
A lightweight incident response tool for rapid suspicious file discovery during threat hunting and forensic triage.
A Splunk-based platform for deploying honeypots and analyzing attacker sessions with intelligence dashboards and threat feeds.
A cyber security incident response management system and knowledge base designed to coordinate team efforts and capture team knowledge.
A Python library for creating adversarial attacks against Windows malware detectors to evaluate their robustness.
A terminal-based manager for handling multiple reverse shell sessions and clients during penetration testing.
A Python tool for offline detection of Windows persistence mechanisms in forensic collections like KAPE dumps or mounted disk images.
An open-source archive for robot vulnerabilities and bugs, using a robot-specific scoring system.
A remote data analysis and classification service that evaluates HTTP requests and emulates vulnerabilities for honeypot systems.
A deprecated threat intelligence platform for collecting, processing, and sharing security indicators.
A command-line tool for macOS persistence mechanism emulation and testing, designed for threat hunters.
A terminal UI tool that displays detailed socket statistics with explanations, replacing basic ss command usage.
An open-source platform for creating and managing fake phishing campaigns to train users and improve reporting.
Python library for creating, editing, and managing OpenIOC objects for threat intelligence indicators.
A modular botnet command & control monitor for tracking and researching malware networks via IRC, HTTP, and XMPP.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.