Showing 18 of 18 projects
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive collection of payloads and bypass techniques for web application security testing and penetration testing.
A comprehensive security scanner that finds vulnerabilities, misconfigurations, secrets, and SBOMs in containers, Kubernetes, code, and clouds.
A vulnerability scanner for container images, filesystems, and SBOMs to detect known security issues.
A vulnerability scanner for container images, filesystems, and SBOMs to detect known security issues.
An Nmap NSE script that transforms nmap into a vulnerability scanner using offline vulnerability databases.
A collection of potentially dangerous file names and paths for security testing and fuzzing.
A curated database of JavaScript engine CVEs with proof-of-concept exploits for security research.
A service that provides easy-to-remember reverse shell payloads for Unix-like systems, automatically detecting available software on the target.
A curated database of Universal Cross-Site Scripting (UXSS) vulnerabilities and browser security research resources.
A Python tool for automated scanning and detection of SSL/TLS vulnerabilities like Heartbleed, POODLE, and FREAK.
A static analysis tool for Android applications that detects security vulnerabilities through inter-procedure and intra-procedure analysis.
A trustworthy ReDoS (Regular Expression Denial of Service) checker for identifying vulnerable regex patterns.
A daily updated summary of the most frequent security advisories from multiple global CERTs and threat intelligence sources.
An open-source archive for robot vulnerabilities and bugs, using a robot-specific scoring system.
A database of Magento 1 and 2 extensions with known security vulnerabilities, enabling automated detection of insecure third-party modules.
A Chromium-based web browser with built-in XSS detection and taint tracking capabilities for security testing.
A collection of Splunk SPL queries for detecting vulnerability exploits, malware, and MITRE ATT&CK TTPs in security logs.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.