Showing 36 of 129 projects
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of security testing wordlists and payloads for penetration testers and security researchers.
An interactive TLS-capable intercepting HTTP proxy for penetration testing and software development.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing framework for developing and executing exploit code against remote targets.
An open-source penetration testing tool that automates SQL injection detection and database takeover.
A fast, customizable vulnerability scanner with a YAML-based DSL, powered by a global security community.
A curated collection of penetration testing tools, resources, and educational materials for offensive cybersecurity professionals.
A Windows security tool for extracting credentials, hashes, and Kerberos tickets from memory and performing various post-exploitation techniques.
An automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis, and security assessment framework.
A modern, fast port scanner with a scripting engine and adaptive learning, capable of scanning all 65k ports in 3 seconds.
A modern, fast port scanner that finds all 65k ports in 3 seconds and features a scripting engine for extensibility.
A modern, fast port scanner with a scripting engine that can scan all 65k ports in 3 seconds.
A portable, extensible framework for network reconnaissance and MITM attacks on WiFi, BLE, HID, CAN-bus, IPv4, and IPv6 networks.
A curated collection of hacking tutorials, tools, and resources for security education and penetration testing.
A curated collection of hacking tutorials, tools, and resources for security professionals and enthusiasts.
A security auditing and hardening tool for UNIX-based systems, performing in-depth scans and compliance testing.
A comprehensive collection of hacking tools, resources, and references for learning and practicing ethical hacking and penetration testing.
A free, open-source web application security scanner for finding vulnerabilities during development and testing.
An advanced XSS detection suite that uses context analysis and intelligent payload generation to find vulnerabilities.
An open-source penetration testing framework for social engineering with custom attack vectors to create believable attacks quickly.
A rogue Access Point framework for conducting Wi-Fi security testing and phishing attacks during red team engagements.
A fast, passive subdomain enumeration tool for security researchers and penetration testers.
A Python CTF framework and exploit development library designed for rapid prototyping and security research.
A curated collection of web security resources, tools, and research materials for learning penetration techniques.
An open-source exploitation framework dedicated to embedded devices for penetration testing and vulnerability assessment.
An advanced offline password cracker supporting hundreds of hash and cipher types across multiple platforms.
A PowerShell post-exploitation framework for penetration testers, providing modules for code execution, persistence, reconnaissance, and credential theft.
A comprehensive manual for mobile app security testing and reverse engineering, aligned with OWASP MASVS and MASWE.
An incredibly fast web crawler designed for OSINT (Open Source Intelligence) data extraction.
A free and open-source network discovery and security auditing tool for mapping networks and identifying services.
A Python tool for fast subdomain enumeration using OSINT and bruteforce, designed for penetration testers and bug hunters.
A penetration testing framework that exploits web browsers as beachheads for client-side attacks.
A collection of webshell scripts in various languages for security testing and research purposes.
A suite of WiFi and Bluetooth offensive and defensive security tools for the ESP32 microcontroller.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.