Showing 36 of 386 projects
A Python toolset for malware analysis using function-level fuzzy hashing to catalog and compare malicious binaries.
A community-driven web and service fingerprint identification tool written in Rust, supporting version detection and vulnerability validation.
A Python tool that queries Google's SSL transparency report to discover subdomains and identify expired certificates.
A Vim plugin that highlights visually similar Unicode characters to prevent trolls from corrupting your code.
A Python-based multithreaded threat intelligence gathering tool that collects, stores, and serves indicators of compromise from various sources.
A curated collection of threat modeling resources, including methodologies, tools, books, and conference talks.
A Python-based GUI tool for analyzing Android applications locally, including decompilation, logcat monitoring, and security testing.
A web interface for sharing a hashcat password cracking box among multiple users with user-friendly attack automation.
A framework for analyzing and defending against supply chain attacks targeting Software Development Lifecycle infrastructure.
A Windows utility for visualizing process memory maps, analyzing hooks, and disassembling code with advanced debugging features.
A tool for securely backing up and versioning production secrets and shared passwords using GPG encryption.
An ESLint plugin that detects potential secrets and credentials in code and JSON files using entropy analysis and pattern matching.
A fast, minimalistic ARP scanner CLI written in Rust for discovering hosts on local networks.
A machine learning tool for quantitative risk analysis of Android apps by analyzing declared and actual permission usage.
Content Disarm and Reconstruction software that sanitizes Office files by removing malicious dynamic content.
Parse NTLM challenge messages from HTTP, SMB, and MSSQL endpoints to extract server information for security testing.
A unified console for digital forensics and incident response built on the Viper Framework.
A unified console for digital forensics and incident response (DFIR) built on the Viper Framework.
A PowerShell-based live response and forensic collection tool for targeted incident response on Windows systems.
Python implementation of PEiD for detecting packers in Windows PE files using signature databases.
A tool that uses known-plaintext attacks to decrypt XOR-encoded files by deducing the original keystream.
A Python library and CLI for creating interactive visualizations of security and system logs like Cuckoo JSON and ProcMon CSV.
A simple tool to convert IP addresses into various obfuscated formats like DWORD, hex, and octal representations.
Outlook add-in that enables users to report suspicious emails to security teams with one click.
Randomly modifies Win32/64 PE files to change their hashes for safer uploading to malware analysis sites.
A Python wrapper for Hashcat that automates password cracking workflows with wordlist management and brute-force attacks.
A PowerShell script that monitors and logs newly created WMI consumers and processes to the Windows Application event log.
A WinAppDbg script that automates malware unpacking by detecting unpacking behaviors and dumping decrypted memory.
Extracts data from iTunes backup Manifest.plist files to generate hashes compatible with hashcat cracking modes 14700 and 14800.
Deterministic password generator using PBKDF2 with domain-specific salts for secure, memorable passwords.
An ELF/PE binary packer written in pure C for obfuscation and reverse engineering protection.
A Rust tool that machine-learns efficient password mangling rules for John the Ripper or Hashcat from a dictionary and password list.
A command-line tool for digital forensics that checks file MD5 hashes against the NSRL Reference Data Set to identify known software files.
A pre-configured Ubuntu-based virtual machine for mobile application security testing and malware analysis.
A Python script that implements security testing attacks against AWS Cognito, including account oracle and privilege escalation.
A modular malware and IOC ingestion framework that collects, enriches, and exports threat intelligence from multiple feeds.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.