Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Infosec

Infosec

52 projects

Showing 36 of 52 projects

wazuh
wazuhC++

An open-source unified XDR and SIEM platform for threat prevention, detection, and response across endpoints and cloud workloads.

#container-security#siem#malware-detection
Stars16.2k
Forks2.4k
Last commit1 day ago
Hacker Roadmap
Hacker Roadmap

A comprehensive collection of hacking tools, resources, and references for learning and practicing ethical hacking and penetration testing.

#frameworks#vulnerability-assessment#pentest
Stars15.5k
Forks1.7k
Last commit2 years ago
Routersploit
RoutersploitPython

An open-source exploitation framework dedicated to embedded devices for penetration testing and vulnerability assessment.

#vulnerability-assessment#routersploit#router-exploitation-framework
Stars13.2k
Forks2.4k
Last commit
Nishang
NishangPowerShell

A PowerShell framework for offensive security, penetration testing, and red teaming with scripts for all phases.

#lateral-movement#redteam#antivirus-bypass
Stars10.0k
Forks2.5k
Last commit2 years ago
Awesome Shodan Search Queries
Awesome Shodan Search Queries

A curated collection of interesting, funny, and concerning search queries for Shodan.io to find exposed devices and services.

#iot#vulnerability-discovery#search-queries
Stars7.6k
Forks1.0k
Last commit2 years ago
Awesome bug bounty resources by EdOverflow
Awesome bug bounty resources by EdOverflow

A community-curated collection of payloads, tools, and techniques for bug bounty hunters and security researchers.

#web-security#vulnerability-testing#infosec
Stars6.5k
Forks1.6k
Last commit2 years ago
Awesome Security Hardening
Awesome Security Hardening

A curated collection of security hardening guides, best practices, checklists, benchmarks, and tools for various systems and services.

#infrastructure-security#windows-hardening#infosec
Stars6.5k
Forks676
Last commit2 months ago
Infosec_Reference
Infosec_ReferenceCSS

A comprehensive, free information security reference covering techniques, tools, tactics, and resources for learning and professional development.

#security-training#reference-guide#osint
Stars6.0k
Forks1.2k
Last commit9 months ago
Infosec
Infosec

A curated list of awesome information security courses, training resources, and hands-on labs for cybersecurity professionals and students.

#security-training#pentest#web-security
Stars5.7k
Forks748
Last commit8 months ago
Cybersecurity Blue Team
Cybersecurity Blue Team

A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.

#open-source#honeypots#security-automation
Stars5.5k
Forks828
Last commit2 years ago
Cameradar
CameradarGo

A penetration testing tool that discovers and accesses RTSP video surveillance cameras through network scanning and dictionary attacks.

#video-surveillance#network-scanner#dictionary-attack
Stars5.1k
Forks626
Last commit6 days ago
LinkFinder
LinkFinderPython

A Python script that discovers endpoints and their parameters in JavaScript files for penetration testing and bug hunting.

#endpoints#web-security#javascript-analysis
Stars4.4k
Forks658
Last commit2 years ago
Awesome Security Talks & Videos
Awesome Security Talks & Videos

A curated collection of security conference talks and videos from events like DEF CON, Black Hat, and BSides.

#security-talks#owasp#video-library
Stars4.2k
Forks492
Last commit5 months ago
Dumb Password Rules
Dumb Password RulesNunjucks

A crowdsourced collection of websites with frustrating and counterproductive password requirements.

#hacktoberfest#passwords#password-policies
Stars3.0k
Forks308
Last commit7 days ago
Roave Security Advisories
Roave Security Advisories

A Composer package that blocks installation of PHP dependencies with known security vulnerabilities.

#supply-chain-security#composer#devops
Stars2.9k
Forks111
Last commit4 days ago
brutespray
brutesprayGo

A fast, multi-protocol credential brute-forcer that parses Nmap, Nessus, and Nexpose output to test credentials across 30+ services.

#nmap#infosec#penetration-testing
Stars2.5k
Forks434
Last commit1 day ago
Malcolm
MalcolmPython

A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.

#suricata#pcap#opensearch-dashboards
Stars2.5k
Forks430
Last commit1 month ago
cicd-goat
cicd-goatPython

A deliberately vulnerable CI/CD environment with 11 challenges to learn and practice CI/CD security.

#security-training#jenkins#devops
Stars2.3k
Forks415
Last commit2 years ago
YETI
YETIPython

A forensics intelligence platform that bridges CTI and DFIR by storing threat intelligence and enabling bulk observable searches and threat-focused analysis.

#digital-forensics#enrichment#dfir-automation
Stars2.0k
Forks319
Last commit3 days ago
malice.io
malice.ioGo

An open-source malware analysis framework that functions as a self-hosted alternative to VirusTotal.

#virustotal#infosec#malice
Stars1.9k
Forks283
Last commit3 years ago
APT Notes
APT Notes

A repository of publicly-available reports and blogs on APT (Advanced Persistent Threat) campaigns, activity, and software, organized by year.

#security-reports#data-repository#apt-research
Stars1.8k
Forks292
Last commit1 year ago
Android Reports and Resources
Android Reports and Resources

A curated collection of disclosed Android security reports from HackerOne and educational resources for vulnerability research.

#exploit-development#mobile-pentesting#android-resource
Stars1.7k
Forks329
Last commit10 months ago
Name That Hash
Name That HashPython

A modern hash identification tool that names MD5, SHA256, and 300+ other hash types with popularity ratings and summaries.

#cyber#hacktoberfest#json-api
Stars1.7k
Forks110
Last commit7 months ago
Executable Packing
Executable Packing

A curated list of awesome resources for executable packing, unpacking, and detection, covering packers, tools, and literature.

#malware-packers#portable-executable#unpacking-tools
Stars1.6k
Forks137
Last commit1 month ago
Awesome Security Newsletters
Awesome Security Newsletters

A curated collection of periodic cybersecurity newsletters covering news, research, tools, vulnerabilities, and threat analysis.

#digital-forensics#vulnerability-management#newsletter
Stars1.3k
Forks96
Last commit15 days ago
PlumHound
PlumHoundPython

A BloodHoundAD report engine that transforms Neo4J graph queries into actionable security reports for blue and purple teams.

#bloodhoundad#security-reporting#directory
Stars1.3k
Forks129
Last commit8 months ago
Malcom
MalcomPython

A malware communication analyzer that visualizes network traffic and cross-references it with known malware sources.

#p2p-networks#dns-analysis#network-traffic
Stars1.2k
Forks217
Last commit8 years ago
Metta
MettaPython

An information security preparedness tool for adversarial simulation using Redis/Celery, Python, and Vagrant.

#yaml#redis#network
Stars1.1k
Forks157
Last commit7 years ago
DumpsterFire
DumpsterFirePython

A modular, menu-driven tool for building time-delayed, distributed security event chains for Red, Blue, and Purple Team exercises.

#security-training#pentest#pentest-tool
Stars1.0k
Forks152
Last commit6 years ago
Password Cracking
Password Cracking

A curated collection of tools, research, and resources for password cracking and security auditing.

#wordlist-generator#research-papers#wordlist
Stars1.0k
Forks84
Last commit4 months ago
Counteractive Playbooks
Counteractive PlaybooksMakefile

A concise, directive, specific, flexible, and free template for creating an incident response plan organizations will actually use.

#security-planning#playbooks#disaster-recovery
Stars793
Forks244
Last commit
Ronin
RoninRuby

A free and open-source Ruby toolkit for security research and development, featuring CLI commands and libraries for encoding, networking, exploits, and more.

#exploit-development#orm#database
Stars753
Forks62
Last commit6 months ago
bXSS
bXSSJavaScript

A utility for bug hunters and organizations to identify Blind Cross-Site Scripting vulnerabilities via customizable payloads and notifications.

#web-security#xss#cross-site-scripting
Stars577
Forks64
Last commit3 years ago
Python-Honeypot
Python-HoneypotPython

An open-source Python framework for creating honeypots and honeynets to detect and analyze cyber attacks.

#honeypot#owasp#informationsecurity
Stars482
Forks149
Last commit1 year ago
Malcolm
MalcolmPython

A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.

#suricata#opensearch-dashboards#infosec
Stars474
Forks76
Last commit1 month ago
Gorilla
GorillaRust

A versatile Rust tool for generating and mutating wordlists using patterns, web scraping, and password formats.

#cracking#hash#infosec
Stars390
Forks22
Last commit5 months ago
Page 1 of 2Next

Related Tags

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
2 months ago
2 years ago
#Security27
#Cybersecurity26
#Penetration Testing18
#Hacking12
#Python12
#Docker9
#Pentesting8
#Security Tools8
#Network Security8
#Malware Analysis7
#Incident Response7
#Ctf6