Showing 36 of 386 projects
A static application security testing (SAST) tool for PHP that detects vulnerabilities like XSS through taint analysis.
A packer for Windows x86 executable files that transforms and encrypts PE files to obstruct reverse engineering.
A curated list of tools, add-ons, articles, and exploits that use the Scapy packet manipulation library.
A curated list of tools, add-ons, articles, and exploits built with the Scapy packet manipulation library.
Visualizes network topologies and communication flows from pcap files across device, IP, and TCP/UDP layers.
A high-performance passive DNS monitoring framework that captures, indexes, and analyzes DNS traffic for security and network insights.
Automatically sync OpenPGP public keys across an organization to simplify GPG key management.
A multi-platform distributed brute-force password cracking system for parallelizing dictionary and word generator attacks.
A web interface for Hashcat that enables distributed password cracking sessions across multiple servers with real-time results.
A curated collection of CVEs, research, tools, and resources for WebSocket security testing and vulnerability research.
A customizable single-binary agent for collecting forensic artifacts from Windows, macOS, and Linux systems.
A curated list of tools and resources for understanding, detecting, and removing malware persistence techniques across operating systems.
A PowerShell module for live incident response that enumerates Windows autorun artifacts to detect persistence mechanisms used by malware and legitimate programs.
Visualizes AWS IAM and Organizations as a graph using Neo4j to identify security anomalies and privilege escalation paths.
A modular, recursive file scanning framework that extends Yara signatures to extract and analyze file objects for malware analysis and intelligence.
Idiomatic Rust bindings for the IDA SDK, enabling development of standalone binary analysis tools.
A C++ Windows malware analysis tool that uses memory and code hooks to detect and extract hidden code from packers.
A pub-sub broker for threat intelligence data that connects open-source security tools like OpenCTI, MISP, Zeek, and VAST.
A Ruby script that fingerprints remote applications and third-party scripts to identify their versions for security assessment.
A curated list of resources, tools, and guidelines for understanding and implementing the General Data Protection Regulation (GDPR).
A curated list of awesome tools, libraries, dashboards, and resources for the Suricata intrusion detection/prevention system.
A Python tool for offline detection of Windows persistence mechanisms in forensic collections like KAPE dumps or mounted disk images.
Collecting & Hunting for IOCs with gusto and style
A Windows malware unpacker using Intel PIN for dynamic binary instrumentation and Scylla for import reconstruction.
A static and symbolic analysis tool for finding memory safety bugs in browser code and other software.
A Rust CLI tool that finds and clears sensitive data from shell history to enhance command-line security.
An open-source SIEM system built with Python Django for log management, risk assessment, and asset tracking.
An open-source memory forensics tool built on Volatility for differential analysis and data reduction in malware investigations.
A research project providing tools and detection rules for analyzing and simulating Quantum Insert network attacks.
A peer-to-peer SIP honeypot and fraud detection tool that collects and shares malicious IP addresses and phone numbers.
Roslyn analyzers for detecting security vulnerabilities in .NET applications during development.
A Rust library for multi-protocol passive network fingerprinting, combining p0f-style TCP/HTTP analysis with JA4-style TLS client analysis.
A Go library for parsing and manipulating Snort and Suricata IDS/IPS rules with Suricata compatibility focus.
A Python script that uses Volatility to analyze malware memory footprints by comparing Windows memory images before and after infection.
A word generator using per-position Markov chains for password cracking and dictionary generation.
A multi-threading tool to sniff TCP flow statistics and extract HTTP headers from live traffic or PCAP files.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.