Showing 36 of 342 projects
An advanced Cross-Site Request Forgery (CSRF) audit and exploitation toolkit for security testing.
Automated deployment of red team infrastructure using Docker with a web interface for managing offensive security tools.
A curated collection of fascinating and bizarre Censys Search queries for discovering exposed devices and services.
An efficient Android vulnerability scanner that finds security issues and missing best practices in APK files.
A collection of Python scripts for AWS penetration testing, reconnaissance, exploitation, and persistence.
A command-line utility for performing hash length extension attacks against vulnerable cryptographic hash functions.
A tool to create multiple TOR instances with load-balancing for increased anonymity and distributed traffic.
A virtual machine for Android application security assessment, reverse engineering, and malware analysis.
An intentionally insecure Android app designed to teach secure coding and penetration testing through hands-on vulnerability challenges.
A real-time capture the flag (CTF) scoring engine and game manager for cybersecurity wargames.
A Python tool that generates targeted wordlists for security testing by combining personal info, leet transforms, and song lyrics.
A Python-based exploitation framework for industrial control systems, similar to Metasploit.
A VoIP security testing toolset for auditing SIP-based systems through scanning, enumeration, and password cracking.
A curated list of awesome tools, research, papers, and projects related to password cracking and security.
A curated collection of tools, research, and resources for password cracking and security auditing.
Legion is a semi-automated network penetration testing framework for discovery, reconnaissance, and exploitation.
A professional-grade web security scanner for penetration testing with intelligent, context-aware scanning and proof-based vulnerability detection.
A curated list of tools and resources for anti-forensic activities, including data hiding, encryption, steganography, and evidence removal.
A curated collection of Android exploits, hacking tools, and resources for security research and penetration testing.
A massive 82 billion entry wordlist compiled from multiple password dictionaries for security testing.
Hacking Toolkit
Hacking Toolkit
A Google Colab notebook setup for high-performance hash cracking and penetration testing tools.
An intelligent wordlist generator for password profiling using permutations and statistics based on target information.
A Python REST API and web GUI for managing Hashcat password cracking jobs in a queuing system.
A modular Python framework for auditing and penetration testing of IoT devices, supporting WiFi, NFC, and BLE technologies.
A Python-based tool for exploiting and managing Android devices via ADB with capabilities like screen recording, data extraction, and remote control.
A comprehensive checklist for designing, testing, and releasing secure Android applications based on OWASP standards.
A modular Linux persistence framework for security research, detection engineering, and penetration testing.
A framework for performing and analyzing layer 2 network protocol attacks, including STP and CDP.
A rootkit that leverages eBPF to implement offensive security techniques like container breakouts, network scanning, and RASP bypass.
A Python framework and toolkit for security testing and auditing of ZigBee and IEEE 802.15.4 networks.
A LinkedIn information gathering tool for penetration testers to collect employee data from organizations.
Framework for creating environmental keyed payloads that only execute on specific target systems.
A vulnerable Android app aggregating known security vulnerabilities for testing and educational purposes.
A free and open-source Ruby toolkit for security research and development, featuring CLI commands and libraries for encoding, networking, exploits, and more.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.