Showing 36 of 286 projects
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of security testing wordlists and payloads for penetration testers and security researchers.
An interactive TLS-capable intercepting HTTP proxy for penetration testing and software development.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing tool that automates SQL injection detection and database takeover.
A fast, customizable vulnerability scanner with a YAML-based DSL, powered by a global security community.
A curated collection of penetration testing tools, resources, and educational materials for offensive cybersecurity professionals.
A Windows security tool for extracting credentials, hashes, and Kerberos tickets from memory and performing various post-exploitation techniques.
An automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis, and security assessment framework.
A modern, fast port scanner with a scripting engine and adaptive learning, capable of scanning all 65k ports in 3 seconds.
A modern, fast port scanner with a scripting engine that can scan all 65k ports in 3 seconds.
A modern, fast port scanner that finds all 65k ports in 3 seconds and features a scripting engine for extensibility.
A portable, extensible framework for network reconnaissance and MITM attacks on WiFi, BLE, HID, CAN-bus, IPv4, and IPv6 networks.
A curated collection of hacking tutorials, tools, and resources for security education and penetration testing.
A curated collection of hacking tutorials, tools, and resources for security professionals and enthusiasts.
A security auditing and hardening tool for UNIX-based systems, performing in-depth scans and compliance testing.
A comprehensive collection of hacking tools, resources, and references for learning and practicing ethical hacking and penetration testing.
A free, open-source web application security scanner for finding vulnerabilities during development and testing.
An advanced XSS detection suite that uses context analysis and intelligent payload generation to find vulnerabilities.
An open-source penetration testing framework for social engineering with custom attack vectors to create believable attacks quickly.
A rogue Access Point framework for conducting Wi-Fi security testing and phishing attacks during red team engagements.
A fast, passive subdomain enumeration tool for security researchers and penetration testers.
A Python CTF framework and exploit development library designed for rapid prototyping and security research.
A curated collection of web security resources, tools, and research materials for learning penetration techniques.
An advanced offline password cracker supporting hundreds of hash and cipher types across multiple platforms.
An open-source exploitation framework dedicated to embedded devices for penetration testing and vulnerability assessment.
A free and open-source network discovery and security auditing tool for mapping networks and identifying services.
A PowerShell post-exploitation framework for penetration testers, providing modules for code execution, persistence, reconnaissance, and credential theft.
A comprehensive manual for mobile app security testing and reverse engineering, aligned with OWASP MASVS and MASWE.
An incredibly fast web crawler designed for OSINT (Open Source Intelligence) data extraction.
A suite of WiFi and Bluetooth offensive and defensive security tools for the ESP32 microcontroller.
A Python tool for fast subdomain enumeration using OSINT and bruteforce, designed for penetration testers and bug hunters.
A penetration testing framework that exploits web browsers as beachheads for client-side attacks.
A collection of webshell scripts in various languages for security testing and research purposes.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.