Showing 36 of 288 projects
Dockerized hashcat with multiple backends (CUDA, OpenCL, POCL) for GPU-accelerated password recovery and hash cracking.
A comprehensive collection of 317 hashcat rule files for password cracking and security testing.
Parse NTLM challenge messages from HTTP, SMB, and MSSQL endpoints to extract server information for security testing.
A Python CLI framework for automotive security testing, exploiting known CAN Bus vulnerabilities and fun hacks.
An open-source platform for developing, running, and administering Capture the Flag (CTF) competitions on real IT infrastructure.
A simple tool to convert IP addresses into various obfuscated formats like DWORD, hex, and octal representations.
A pentest tool that checks Cloudflare-protected sites for origin IP leaks and misconfigurations.
Scans SPF and DMARC DNS records to identify vulnerabilities that could allow email spoofing attacks.
A curated collection of tips, commands, and strategies for solving Capture the Flag (CTF) challenges and HackTheBox machines.
A curated collection of tips, commands, and strategies for solving Capture the Flag (CTF) challenges and HackTheBox machines.
A Cydia Substrate tool that makes all Android applications debuggable on rooted devices.
A fast GraphQL discovery and fingerprinting toolbox for security testing and reconnaissance.
A Python wrapper for Hashcat that automates password cracking workflows with wordlist management and brute-force attacks.
A custom platform for hosting controlled, realistic Android mobile hacking challenges in CTF competitions.
A pre-configured Ubuntu-based virtual machine for mobile application security testing and malware analysis.
A Rust tool that machine-learns efficient password mangling rules for John the Ripper or Hashcat from a dictionary and password list.
A signature-based, multi-threaded honeypot detection tool written in Go that identifies emulated services via crafted requests.
A wordlist generator for security testing that creates permutations of known data to crack tokens.
A penetration testing tool for selectively downloading files from exposed .git repositories on web servers.
A standardized methodology for performing security assessments in robotics across physical, network, firmware, and application layers.
A collection of custom password cracking rules for Hashcat and John the Ripper to enhance brute-force attacks.
Android security testing tool that bypasses signature and permission checks for inter-process communications.
A repository containing Cure53's security audit reports, white papers, academic publications, and security tools.
A Python tool that automates the provisioning of AWS p3 GPU instances via Terraform for high-speed password cracking with Hashcat.
A tool that generates vulnerable web applications for security testing and education, supporting multiple attack modules.
A Zsh theme designed for penetration testers with VPN and network interface awareness.
An interactive SSH public-key brute force tool for penetration testing, enabling command execution on remote hosts.
Interactive remote PowerShell payload providing native-like CLI over TCP with unmanaged and reflective injection capabilities.
A collaborative serverless framework for orchestrating geographically distributed assets to simulate offensive cyberspace operations.
A Python-based toolkit that automates Android penetration testing workflows by bundling and managing essential security tools.
A collection of security tools, exploits, proof-of-concept code, shellcodes, and scripts for educational purposes.
An oh-my-zsh plugin providing aliases and functions for penetration testing and security auditing.
A vulnerable Android application demonstrating common security flaws for educational purposes.
A modular, script-friendly multithreaded bruteforce framework for penetration testing and security auditing.
A collection of Go tools for performing exploitation and post-exploitation tasks over Tor with embedded Tor instances.
A tool for taking screenshots of websites, gathering server headers, and identifying default credentials.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.