Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Security Research

Security Research

142 projects

Showing 36 of 142 projects

H5SC
H5SCJavaScript

A comprehensive collection of HTML5-related XSS attack vectors and testing resources for web security professionals.

#web-security#xss#vulnerability-database
Stars2.9k
Forks416
Last commit4 years ago
uncaptcha
uncaptchaPython

A proof-of-concept system that defeats Google's audio reCaptcha with 85% accuracy using speech recognition and browser automation.

#web-security#selenium#captcha-bypass
Stars2.8k
Forks327
Last commit8 years ago
PANDA
PANDAC

An open-source platform for architecture-neutral dynamic analysis built on QEMU, enabling whole-system record/replay and deep analysis.

#whole-system-emulation#pandare#llvm-ir
Stars2.8k
Forks500
Last commit3 days ago
Some-PoC-oR-ExP
Some-PoC-oR-ExPPython

A collection of proof-of-concept (PoC) and exploit (Exp) scripts for various security vulnerabilities.

#exploit-development#vulnerability-analysis#penetration-testing
Stars2.5k
Forks966
Last commit11 months ago
weggli
weggliRust

A fast semantic search tool for C/C++ codebases that uses AST pattern matching to help security researchers find interesting functionality.

#vulnerability-discovery#c#pattern-matching
Stars2.5k
Forks142
Last commit1 year ago
Diamorphine
DiamorphineC

A Linux Kernel Module (LKM) rootkit for hiding processes, granting root privileges, and making files invisible.

#loadable-kernel-module#kernel-module#file-hiding
Stars2.4k
Forks482
Last commit1 month ago
one_gadget
one_gadgetRuby

A command-line tool that finds one-gadget RCE (execve('/bin/sh')) offsets in libc binaries for CTF pwn challenges.

#libc#glibc#exploit
Stars2.3k
Forks149
Last commit5 days ago
BAP
BAPOCaml

A suite of utilities and libraries for analyzing binary programs, supporting multiple architectures and offering symbolic execution.

#taint-analysis#multi-architecture#program-verification
Stars2.2k
Forks283
Last commit
The Hacker's Hardware Toolkit: The best collection of hardware gadgets for Red Team hackers, Pentesters and security researchers
The Hacker's Hardware Toolkit: The best collection of hardware gadgets for Red Team hackers, Pentesters and security researchers

A curated catalog of hardware gadgets for red team pentesters and security researchers, organized into eight categories.

#hardware-hacking#hardware-gadgets#pentesting-tools
Stars2.2k
Forks274
Last commit
Industrial Control System Security
Industrial Control System SecurityPython

A curated collection of tools, data, literature, and resources for Industrial Control System (ICS) and SCADA security.

#industrial-automation#hacktoberfest#vulnerability-assessment
Stars2.0k
Forks475
Last commit
fn2yara
fn2yaraC++

A static binary analysis framework for automated reverse engineering and security analysis of compiled executables.

#disassembly#yara-signatures#api-analysis
Stars1.7k
Forks210
Last commit12 days ago
Quark-Engine
Quark-EnginePython

An obfuscation-neglect Android malware scoring system that analyzes APKs for malicious behavior patterns.

#python-tool#malware-scoring#apk-analysis
Stars1.7k
Forks204
Last commit4 days ago
ctftool
ctftoolC

An interactive command-line tool for exploring and exploiting the CTF protocol on Windows systems.

#windows-security#command-line-tool#exploit-tool
Stars1.7k
Forks263
Last commit4 years ago
Malware Archive
Malware ArchiveHTML

A collection of real-world malware samples, analysis exercises, and training resources for cybersecurity education and research.

#maldoc-templates#lokibot#malware-samples
Stars1.6k
Forks239
Last commit2 years ago
Viper
ViperPython

A binary analysis and management framework for organizing malware samples, exploits, and research scripts.

#exploit-management#cli-tool#python
Stars1.6k
Forks345
Last commit3 years ago
ESP8266 Beacon Spam
ESP8266 Beacon SpamC++

An Arduino sketch for ESP8266 that advertises hundreds of custom WiFi SSIDs via beacon frames as a fun hacking project.

#hardware-hacking#esp8266#spam
Stars1.3k
Forks229
Last commit1 year ago
Awesome Security Newsletters
Awesome Security Newsletters

A curated collection of periodic cybersecurity newsletters covering news, research, tools, vulnerabilities, and threat analysis.

#digital-forensics#vulnerability-management#newsletter
Stars1.3k
Forks88
Last commit2 months ago
notes
notes

A collection of technical security notes and vulnerability disclosures about Node.js, npm, Yarn, and related ecosystems.

#travis-ci#npm#gitlab
Stars1.3k
Forks76
Last commit7 years ago
DRAKVUF
DRAKVUFC++

A virtualization-based agentless black-box binary analysis system for stealthy execution tracing.

#execution-tracing#system-introspection#intel-vt-x
Stars1.2k
Forks265
Last commit15 days ago
Awesome Censys Queries
Awesome Censys QueriesPython

A curated collection of fascinating and bizarre Censys Search queries for discovering exposed devices and services.

#search#iot#censys
Stars1.2k
Forks133
Last commit3 months ago
PETools
PETools

A Windows toolkit for analyzing, editing, and manipulating Portable Executable (PE) files and processes.

#pefile#portable-executable#process-dumper
Stars1.2k
Forks143
Last commit7 months ago
Ember
EmberJupyter Notebook

An open dataset and toolkit for training static PE malware machine learning models, featuring extracted features from millions of Windows executable files.

#malware-detection#reproducible-research#lightgbm
Stars1.2k
Forks311
Last commit1 year ago
Annual Security Reports
Annual Security Reports

A curated, vendor-neutral collection of free annual cybersecurity analysis and survey reports from trusted sources.

#reporting#security-reports#awesome-list
Stars1.1k
Forks134
Last commit1 day ago
Kaonashi
Kaonashi

A collection of sorted wordlists, hashcat masks, and advanced rules for password cracking based on analysis of billions of real passwords.

#rules#wordlist#dictionary-attack
Stars1.1k
Forks116
Last commit4 years ago
RockYou2021
RockYou2021

A massive 82 billion entry wordlist compiled from multiple password dictionaries for security testing.

#rockyou2021#wordlist-collection#rockyou
Stars1.0k
Forks127
Last commit2 years ago
Android-Exploits
Android-ExploitsHTML

A curated collection of Android exploits, hacking tools, and resources for security research and penetration testing.

#exploit-development#vulnerability-assessment#exploit
Stars989
Forks151
Last commit6 years ago
Penglab
PenglabJupyter Notebook

A Google Colab notebook setup for high-performance hash cracking and penetration testing tools.

#google-colab#ctf-tools#gpu-acceleration
Stars969
Forks143
Last commit2 years ago
PANIX
PANIXShell

A modular Linux persistence framework for security research, detection engineering, and penetration testing.

#persistence-framework#self-contained-tool#red-teaming
Stars865
Forks100
Last commit3 months ago
ebpfkit
ebpfkitC

A rootkit that leverages eBPF to implement offensive security techniques like container breakouts, network scanning, and RASP bypass.

#container-security#runtime-security#obfuscation
Stars847
Forks96
Last commit3 years ago
DECAF (Dynamic Executable Code Analysis Framework)
DECAF (Dynamic Executable Code Analysis Framework)C

A dynamic binary analysis framework based on QEMU for whole-system taint analysis and security research.

#taint-analysis#malware-analysis#intrusion-detection
Stars838
Forks167
Last commit
Winbindex
WinbindexPython

An index of Windows binaries with download links for executables like exe, dll, and sys files from Microsoft's symbol server.

#dll-files#executable-index#windows-development
Stars832
Forks84
Last commit1 day ago
HAL – The Hardware Analyzer
HAL – The Hardware AnalyzerC++

A comprehensive netlist reverse engineering and manipulation framework for hardware analysis, akin to IDA or Ghidra for hardware.

#fpga#fpga-analysis#embedded-security
Stars799
Forks93
Last commit4 days ago
OSX Security Awesome
OSX Security Awesome

A curated collection of macOS and iOS security resources including tools, research, malware analysis, and hardening guides.

#system-hardening#digital-forensics#hacking-mac
Stars781
Forks113
Last commit2 months ago
Internal Blue
Internal BluePython

A Bluetooth experimentation framework for Broadcom and Cypress chips that enables firmware patching and packet injection.

#ios#android#bluetooth
Stars775
Forks106
Last commit1 year ago
demovfuscator
demovfuscatorC++

A deobfuscator that recovers control flow from binaries compiled with the M/o/Vfuscator one-instruction compiler.

#taint-analysis#ctf-tools#control-flow-recovery
Stars762
Forks59
Last commit1 year ago
Javascript Mallware Collection
Javascript Mallware CollectionJavaScript

A collection of nearly 40,000 JavaScript malware samples for security research and analysis.

#malware-dataset#web-security#malware-samples
Stars760
Forks243
Last commit
PreviousPage 2 of 4

Related Tags

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
1 month ago
5 years ago
8 months ago
1 year ago
1 year ago
Next
#Reverse Engineering47
#Malware Analysis45
#Penetration Testing34
#Cybersecurity26
#Security21
#Binary Analysis21
#Threat Intelligence17
#Static Analysis15
#Python14
#Awesome List13
#Dynamic Analysis12
#Awesome12