Showing 34 of 106 projects
A lightweight rules-based malware scanner for USB drives, local files, and folders with a privacy-friendly approach.
A Windows artifact collection and parsing tool for targeted digital forensics and incident response investigations.
A Python tool for advanced analysis of Windows AppCompat/AmCache forensic artifacts, enabling threat hunting beyond basic grep techniques.
A minimal command-line utility for connecting to and exploiting exposed CEF/Electron debuggers during security assessments.
A fast, minimalistic ARP scanner CLI written in Rust for discovering hosts on local networks.
A fast GraphQL discovery and fingerprinting toolbox for security testing and reconnaissance.
A simple ELF crypter that encrypts ELF binary sections using RC4 encryption for on-disk protection.
A signature-based, multi-threaded honeypot detection tool written in Go that identifies emulated services via crafted requests.
A penetration testing tool for selectively downloading files from exposed .git repositories on web servers.
An open-source honeypot framework for NoSQL databases that simulates servers to detect and log attacks.
A honeypot that emulates USB storage devices to detect and capture malware that spreads via USB propagation.
A security proxy that protects Docker daemon sockets by filtering API endpoint calls with configurable rules.
An interactive SSH public-key brute force tool for penetration testing, enabling command execution on remote hosts.
A tool for fast detection of repackaged Android applications by comparing resource file digests from APK signatures.
A tool to find code caves (empty space) in PE files (exe, dll) for x86/x64 Windows, useful for shellcode placement.
Extracts the most common substrings from text files, specifically designed to generate wordlists for password cracking attacks.
A Python tool using Markov chains to generate linguistically-correct password candidates for efficient passphrase cracking.
A proof-of-concept tool to externally detect Kippo SSH honeypot instances.
A tool to detect and mitigate Dependency Confusion supply chain security risks in npm projects.
A web application and server wrapper that provides a full-featured UI for the hashcat password recovery tool.
A proof-of-concept tool demonstrating and exploiting TOCTOU vulnerabilities in GitHub Actions approval workflows.
A forensic tool for remote acquisition, triage, and analysis of block devices via iSCSI protocol.
A Windows incident response tool that generates comprehensive system reports without requiring admin permissions.
A Crystal-based utility that detects Web Application Firewalls (WAFs) through passive analysis and active probing.
A honeypot that mimics a vulnerable file upload endpoint to detect and collect malicious uploads.
A native Python implementation of p0f3 with extra packet analysis features, including OS fingerprinting and service identification from PCAP files.
A Python DNS crawler that finds identical domain names across different TLDs by querying authoritative SOA records.
A Python tool that extracts local data storage from Android applications with a single command.
A plugin-based tool for performing GraphQL endpoint vulnerability assessment and security testing.
Converts Rubeus kerberoasting output into a format compatible with Hashcat for password cracking.
A security tool for enumerating and exploiting pipeline vulnerabilities in GitHub Actions workflows and self-hosted runners.
An in-memory packer for macOS Mach-O bundles that applies reversible transformations for obfuscation.
A fast standalone word generator using mask templates and bruteforce constraints, with full Unicode support.
A free URL security scanner that performs 8 comprehensive checks and AI analysis to detect red flags before connecting to apps.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.