Showing 20 of 20 projects
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of hacking tools, resources, and references for learning and practicing ethical hacking and penetration testing.
A runtime mobile exploration toolkit powered by Frida for security assessment of iOS and Android apps without jailbreak.
A fast, simple, recursive content discovery tool written in Rust for forced browsing attacks.
A curated list of awesome information security courses, training resources, and hands-on labs for cybersecurity professionals and students.
A curated collection of cheat sheets and resources for penetration testing and security assessments.
A multi-threaded Python brute-forcing tool with a modular design for reliable and flexible password guessing attacks.
Find origin servers of websites behind CloudFlare or CloudFront using Censys internet-wide scan data.
A web-based toolkit for XSS (Cross-Site Scripting) testing, encoding/decoding, and payload generation.
A collection of notes, scripts, and techniques for exploiting vulnerabilities and attacking Jenkins servers.
A Python RDP man-in-the-middle tool and library for intercepting, monitoring, and analyzing Remote Desktop Protocol connections.
Automated deployment of red team infrastructure using Docker with a web interface for managing offensive security tools.
A modular, menu-driven tool for building time-delayed, distributed security event chains for Red, Blue, and Purple Team exercises.
A command-line tool for managing webshells on compromised web servers via terminal.
A Rust CLI tool to automate validation and invalidation workflows for API keys and secrets across 30+ providers.
An open-source Java proxy for penetration testing, enabling traffic analysis and modification of TCP/UDP application protocols.
A security toolkit for attacking dynamic routing and first-hop redundancy protocols using weaponized virtual routers.
A web interface for sharing a hashcat password cracking box among multiple users with user-friendly attack automation.
A pentest tool that checks Cloudflare-protected sites for origin IP leaks and misconfigurations.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.