Showing 34 of 106 projects
A lightweight rules-based malware scanner for USB drives, local files, and folders with a privacy-friendly approach.
A Windows artifact collection and parsing tool for targeted digital forensics and incident response investigations.
A Python tool for advanced analysis of Windows AppCompat/AmCache forensic artifacts, enabling threat hunting beyond basic grep techniques.
A minimal command-line utility for connecting to and exploiting exposed CEF/Electron debuggers during security assessments.
A fast, minimalistic ARP scanner CLI written in Rust for discovering hosts on local networks.
A fast GraphQL discovery and fingerprinting toolbox for security testing and reconnaissance.
A simple ELF crypter that encrypts ELF binary sections using RC4 encryption for on-disk protection.
A signature-based, multi-threaded honeypot detection tool written in Go that identifies emulated services via crafted requests.
A penetration testing tool for selectively downloading files from exposed .git repositories on web servers.
An open-source honeypot framework for NoSQL databases that simulates servers to detect and log attacks.
A honeypot that emulates USB storage devices to detect and capture malware that spreads via USB propagation.
A security proxy that protects Docker daemon sockets by filtering API endpoint calls with configurable rules.
An interactive SSH public-key brute force tool for penetration testing, enabling command execution on remote hosts.
A tool to find code caves (empty space) in PE files (exe, dll) for x86/x64 Windows, useful for shellcode placement.
A tool for fast detection of repackaged Android applications by comparing resource file digests from APK signatures.
Extracts the most common substrings from text files, specifically designed to generate wordlists for password cracking attacks.
A Python tool using Markov chains to generate linguistically-correct password candidates for efficient passphrase cracking.
A proof-of-concept tool to externally detect Kippo SSH honeypot instances.
A tool to detect and mitigate Dependency Confusion supply chain security risks in npm projects.
A web application and server wrapper that provides a full-featured UI for the hashcat password recovery tool.
A proof-of-concept tool demonstrating and exploiting TOCTOU vulnerabilities in GitHub Actions approval workflows.
A forensic tool for remote acquisition, triage, and analysis of block devices via iSCSI protocol.
A Windows incident response tool that generates comprehensive system reports without requiring admin permissions.
A Crystal-based utility that detects Web Application Firewalls (WAFs) through passive analysis and active probing.
A honeypot that mimics a vulnerable file upload endpoint to detect and collect malicious uploads.
A native Python implementation of p0f3 with extra packet analysis features, including OS fingerprinting and service identification from PCAP files.
A Python DNS crawler that finds identical domain names across different TLDs by querying authoritative SOA records.
A Python tool that extracts local data storage from Android applications with a single command.
A plugin-based tool for performing GraphQL endpoint vulnerability assessment and security testing.
Converts Rubeus kerberoasting output into a format compatible with Hashcat for password cracking.
A security tool for enumerating and exploiting pipeline vulnerabilities in GitHub Actions workflows and self-hosted runners.
An in-memory packer for macOS Mach-O bundles that applies reversible transformations for obfuscation.
A fast standalone word generator using mask templates and bruteforce constraints, with full Unicode support.
A free URL security scanner that performs 8 comprehensive checks and AI analysis to detect red flags before connecting to apps.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.