Stars
Collection of online security resources
Free, libre, effective, and data-driven wordlists for all!
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Python wrapper for tshark, allowing python packet parsing using wireshark dissectors
grep rough audit - source code auditing tool
The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for open source developers.
TheSpeedX / TorrGrab
Forked from PradumnUpadhyay/TorrGrabA Torrent Magnet Link Scrapper
A Python package to interact with the Mitre ATT&CK Framework
A simple scavenger hunt to learn about pentesting a website or web application.
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
DevSecOps, ASPM, Vulnerability Management. All on one platform.
Security Knowledge Framework (SKF) Python Flask / Angular project
Web and mobile application security training platform
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
Finds internet-exposed resources in an AWS account
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
An advanced Twitter scraping & OSINT tool written in Python that doesn't use Twitter's API, allowing you to scrape a user's followers, following, Tweets and more while evading most API limitations.
Terragrunt is a flexible orchestration tool that allows Infrastructure as Code written in OpenTofu/Terraform to scale.
Maryam: Open-source Intelligence(OSINT) Framework
In-depth attack surface mapping and asset discovery