Showing 36 of 91 projects
A Go command-line tool for LSB steganography that hides any file within images with full transparency.
A command-line utility for performing hash length extension attacks against vulnerable cryptographic hash functions.
A command-line forensics tool for tracking USB device connection history on GNU/Linux systems.
An automated, modular cryptanalysis tool for identifying and exploiting weak cryptosystems.
A high-performance open-source secret scanner with live validation, blast radius mapping, and 700+ detection rules for code, Git, CI, cloud, and SaaS platforms.
A high-performance HTTP honeypot that punishes unruly bots by serving them an infinite stream of deceptive content.
A Python tool that generates targeted wordlists for security testing by combining personal info, leet transforms, and song lyrics.
An open-source blue team tool that protects Linux and Windows systems via honeypots, monitoring, and alerting.
An OSINT tool to investigate GitHub profiles, tracking usernames, emails, identities, and repositories.
A Windows tool that intercepts and kills ransomware processes attempting to delete shadow copies via vssadmin and other system utilities.
An open-source GPU-accelerated password cracking tool for BitLocker-encrypted storage devices using dictionary attacks.
A hunt and incident response tool for gathering forensic data from Microsoft Entra ID, Azure, M365, and Defender environments.
A Python REST API and web GUI for managing Hashcat password cracking jobs in a queuing system.
A Python utility for checking file hashes against multiple malware analysis services like VirusTotal, Hybrid Analysis, and MISP.
A LinkedIn information gathering tool for penetration testers to collect employee data from organizations.
A scalable, modular object scanner and intrusion detection system that extracts, flags, and enriches files with metadata.
A security tool that identifies DTDs in filesystem snapshots and generates XXE payloads using those local DTDs.
A steganography brute-force utility that uncovers hidden data inside files by trying passwords from a wordlist.
A fast scanning and attack toolkit for identifying and exploiting GitHub Actions vulnerabilities at scale.
A high-performance word generator for password cracking with per-position configurable character sets.
Extracts password-protected 7-Zip archive data into hashcat-compatible hashes for password cracking.
A command-line tool for managing webshells on compromised web servers via terminal.
A versatile Rust tool for generating and mutating wordlists using patterns, web scraping, and password formats.
A GitHub scanning tool that identifies hardcoded credentials and filters false positives using machine learning models.
A tool for extracting secrets from CI/CD environments by deploying malicious pipelines, supporting Azure DevOps, GitHub, and GitLab.
A security tool that scans for Windows accessibility tools backdoors via automated RDP sessions.
A multi-platform distributed brute-force password cracking system for parallelizing dictionary and word generator attacks.
An automated Hashcat wrapper that speeds up hash cracking during security engagements with pre-configured wordlists and rules.
A trustworthy ReDoS (Regular Expression Denial of Service) checker for identifying vulnerable regex patterns.
A proof-of-concept tool that spreads deceptive breadcrumbs and honeytokens across systems to lure attackers toward honeypots.
A Ruby script that fingerprints remote applications and third-party scripts to identify their versions for security assessment.
A penetration testing tool that bypasses wired 802.1x network protection to gain access to target networks.
A Perl tool that extracts and reassembles application sessions and files from network packet captures for analysis and replay.
A tool that extracts all GraphQL endpoints from a given domain using subdomain enumeration, script analysis, and brute force.
An open-source Java proxy for penetration testing, enabling traffic analysis and modification of TCP/UDP application protocols.
A lightweight rules-based malware scanner for USB drives, local files, and folders with a privacy-friendly approach.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.