Showing 36 of 355 projects
A Python RESTful API framework for querying multiple online malware analysis and threat intelligence services.
A curated list of tools, add-ons, articles, and exploits built with the Scapy packet manipulation library.
Visualizes network topologies and communication flows from pcap files across device, IP, and TCP/UDP layers.
A low-level mutator for Windows PE files that obfuscates headers and metadata to break static analysis signatures without breaking execution.
A framework for parsing configuration information from malware, extracting items like addresses, passwords, and filenames.
A modular OSINT honeypot that monitors adversary reconnaissance attempts and generates early-warning intelligence for blue teams.
A forensic artifact parsing tool that quickly analyzes disk images and extracted artifacts from Windows, Linux, macOS, and Android devices.
Import 28+ threat intelligence feeds into CrowdSec with automatic deduplication, normalization, and real-time sync.
An automated security testing toolkit for GraphQL endpoints that discovers, analyzes, and scores vulnerabilities.
A collection of French and English wordlists specifically curated for cracking French passwords.
A deprecated open-source platform for hosting Capture The Flag (CTF) competitions, originally used for picoCTF 2019.
A curated list of tools and resources for understanding, detecting, and removing malware persistence techniques across operating systems.
A framework to analyze, dissect, and decompile complex code-reuse attacks like ROP chains from memory dumps.
A modern SMTP honeypot that simulates a vulnerable mail server to capture and log email-based attacks with database integration.
An open-source, lightweight TCP/UDP tunneling solution with connection pooling and multi-protocol support for bypassing network restrictions.
A modular Python tool that collects threat intelligence for hosts (IPs, domains, FQDNs) from multiple sources and outputs CSV data.
A heavily modified version of Cuckoo Sandbox with enhanced malware analysis capabilities, 64-bit support, and anti-evasion techniques.
A pub-sub broker for threat intelligence data that connects open-source security tools like OpenCTI, MISP, Zeek, and VAST.
A daily updated summary of the most frequent security advisories from multiple global CERTs and threat intelligence sources.
A collection of writeups documenting solutions and lessons learned from Capture The Flag hacking competitions.
A framework for automating offensive security testing by scripting security tool APIs like Empire and Metasploit.
A lightweight incident response tool for rapid suspicious file discovery during threat hunting and forensic triage.
A web-based interface for the Volatility memory forensics framework, enabling browser-based analysis of RAM dumps.
A Splunk-based platform for deploying honeypots and analyzing attacker sessions with intelligence dashboards and threat feeds.
A cyber security incident response management system and knowledge base designed to coordinate team efforts and capture team knowledge.
A Python library for creating adversarial attacks against Windows malware detectors to evaluate their robustness.
A Python tool for offline detection of Windows persistence mechanisms in forensic collections like KAPE dumps or mounted disk images.
A terminal-based manager for handling multiple reverse shell sessions and clients during penetration testing.
An open-source archive for robot vulnerabilities and bugs, using a robot-specific scoring system.
A remote data analysis and classification service that evaluates HTTP requests and emulates vulnerabilities for honeypot systems.
A deprecated threat intelligence platform for collecting, processing, and sharing security indicators.
A command-line tool for macOS persistence mechanism emulation and testing, designed for threat hunters.
A terminal UI tool that displays detailed socket statistics with explanations, replacing basic ss command usage.
An open-source platform for creating and managing fake phishing campaigns to train users and improve reporting.
Python library for creating, editing, and managing OpenIOC objects for threat intelligence indicators.
A modular botnet command & control monitor for tracking and researching malware networks via IRC, HTTP, and XMPP.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.