Showing 36 of 342 projects
A flexible and scriptable Python-based password dictionary generator supporting brute-force, combination, and complex rule modes.
An improved exploit implementation for CVE-2016-6366 (EXTRABACON) targeting Cisco ASA devices with extended version support.
A comprehensive collection of 317 hashcat rule files for password cracking and security testing.
Dockerized hashcat with multiple backends (CUDA, OpenCL, POCL) for GPU-accelerated password recovery and hash cracking.
Parse NTLM challenge messages from HTTP, SMB, and MSSQL endpoints to extract server information for security testing.
A Python CLI framework for automotive security testing, exploiting known CAN Bus vulnerabilities and fun hacks.
An open-source platform for developing, running, and administering Capture the Flag (CTF) competitions on real IT infrastructure.
A pentest tool that checks Cloudflare-protected sites for origin IP leaks and misconfigurations.
A simple tool to convert IP addresses into various obfuscated formats like DWORD, hex, and octal representations.
A curated collection of tips, commands, and strategies for solving Capture the Flag (CTF) challenges and HackTheBox machines.
A curated collection of tips, commands, and strategies for solving Capture the Flag (CTF) challenges and HackTheBox machines.
Scans SPF and DMARC DNS records to identify vulnerabilities that could allow email spoofing attacks.
A fast GraphQL discovery and fingerprinting toolbox for security testing and reconnaissance.
A Cydia Substrate tool that makes all Android applications debuggable on rooted devices.
Detect hidden files and text in images
A Python wrapper for Hashcat that automates password cracking workflows with wordlist management and brute-force attacks.
A custom platform for hosting controlled, realistic Android mobile hacking challenges in CTF competitions.
A Rust tool that machine-learns efficient password mangling rules for John the Ripper or Hashcat from a dictionary and password list.
A pre-configured Ubuntu-based virtual machine for mobile application security testing and malware analysis.
A signature-based, multi-threaded honeypot detection tool written in Go that identifies emulated services via crafted requests.
A wordlist generator for security testing that creates permutations of known data to crack tokens.
A penetration testing tool for selectively downloading files from exposed .git repositories on web servers.
A standardized methodology for performing security assessments in robotics across physical, network, firmware, and application layers.
A collection of custom password cracking rules for Hashcat and John the Ripper to enhance brute-force attacks.
A repository containing Cure53's security audit reports, white papers, academic publications, and security tools.
A Python-based toolkit that automates Android penetration testing workflows by bundling and managing essential security tools.
Android security testing tool that bypasses signature and permission checks for inter-process communications.
A tool that generates vulnerable web applications for security testing and education, supporting multiple attack modules.
A Python tool that automates the provisioning of AWS p3 GPU instances via Terraform for high-speed password cracking with Hashcat.
A Zsh theme designed for penetration testers with VPN and network interface awareness.
An interactive SSH public-key brute force tool for penetration testing, enabling command execution on remote hosts.
Interactive remote PowerShell payload providing native-like CLI over TCP with unmanaged and reflective injection capabilities.
A collaborative serverless framework for orchestrating geographically distributed assets to simulate offensive cyberspace operations.
A collection of security tools, exploits, proof-of-concept code, shellcodes, and scripts for educational purposes.
An oh-my-zsh plugin providing aliases and functions for penetration testing and security auditing.
A vulnerable Android application demonstrating common security flaws for educational purposes.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.