Showing 36 of 342 projects
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of security testing wordlists and payloads for penetration testers and security researchers.
An interactive TLS-capable intercepting HTTP proxy for penetration testing and software development.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing tool that automates SQL injection detection and database takeover.
A fast, customizable vulnerability scanner with a YAML-based DSL, powered by a global security community.
A curated collection of penetration testing tools, resources, and educational materials for offensive cybersecurity professionals.
A Windows security tool for extracting credentials, hashes, and Kerberos tickets from memory and performing various post-exploitation techniques.
An automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis, and security assessment framework.
A modern, fast port scanner with a scripting engine and adaptive learning, capable of scanning all 65k ports in 3 seconds.
A modern, fast port scanner that finds all 65k ports in 3 seconds and features a scripting engine for extensibility.
A modern, fast port scanner with a scripting engine that can scan all 65k ports in 3 seconds.
A portable, extensible framework for network reconnaissance and MITM attacks on WiFi, BLE, HID, CAN-bus, IPv4, and IPv6 networks.
A curated collection of hacking tutorials, tools, and resources for security professionals and enthusiasts.
A curated collection of hacking tutorials, tools, and resources for security education and penetration testing.
A security auditing and hardening tool for UNIX-based systems, performing in-depth scans and compliance testing.
A comprehensive collection of hacking tools, resources, and references for learning and practicing ethical hacking and penetration testing.
A free, open-source web application security scanner for finding vulnerabilities during development and testing.
An open-source penetration testing framework for social engineering with custom attack vectors to create believable attacks quickly.
An advanced XSS detection suite that uses context analysis and intelligent payload generation to find vulnerabilities.
A rogue Access Point framework for conducting Wi-Fi security testing and phishing attacks during red team engagements.
A fast, passive subdomain enumeration tool for security researchers and penetration testers.
A curated collection of web security resources, tools, and research materials for learning penetration techniques.
A Python CTF framework and exploit development library designed for rapid prototyping and security research.
An advanced offline password cracker supporting hundreds of hash and cipher types across multiple platforms.
A free and open-source network discovery and security auditing tool for mapping networks and identifying services.
An open-source exploitation framework dedicated to embedded devices for penetration testing and vulnerability assessment.
A PowerShell post-exploitation framework for penetration testers, providing modules for code execution, persistence, reconnaissance, and credential theft.
A comprehensive manual for mobile app security testing and reverse engineering, aligned with OWASP MASVS and MASWE.
An incredibly fast web crawler designed for OSINT (Open Source Intelligence) data extraction.
A suite of WiFi and Bluetooth offensive and defensive security tools for the ESP32 microcontroller.
A Python tool for fast subdomain enumeration using OSINT and bruteforce, designed for penetration testers and bug hunters.
A penetration testing framework that exploits web browsers as beachheads for client-side attacks.
A collection of webshell scripts in various languages for security testing and research purposes.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.