An open API service indexing awesome lists of open source software.

Cybersecurity

Cybersecurity involves protecting systems, networks, and data from cyber threats. This field encompasses a wide range of practices and technologies designed to safeguard information from unauthorized access, attacks, damage, or theft. Cybersecurity includes preventive measures such as firewalls, encryption, and secure coding practices, as well as detection and response strategies like intrusion detection systems and incident response plans. This topic covers the principles, best practices, and latest trends in cybersecurity, including emerging threats and the evolving landscape of cyber defense.

https://github.com/A3sal0n/CyberThreatHunting

A collection of resources for Threat Hunters

cybersecurity dfir incident-response threat-hunting threat-intelligence

Last synced: 24 Mar 2025

https://github.com/a3sal0n/cyberthreathunting

A collection of resources for Threat Hunters

cybersecurity dfir incident-response threat-hunting threat-intelligence

Last synced: 13 May 2025

https://github.com/drew-alleman/datasurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 04 Apr 2025

https://github.com/Idov31/Sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

backdoor csharp cybersecurity infosec python red-team red-team-tools redteam windows

Last synced: 21 Jul 2025

https://github.com/idov31/sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

backdoor csharp cybersecurity infosec python red-team red-team-tools redteam windows

Last synced: 04 Apr 2025

https://github.com/yashab-cyber/hackgpt

HackGPT Enterprise is a production-ready, cloud-native AI-powered penetration testing platform designed for enterprise security teams. It combines advanced AI, machine learning, microservices architecture, and comprehensive security frameworks to deliver professional-grade cybersecurity assessments.

ai cybersecurity ethical-hacking pentest-tool pentesting research

Last synced: 04 Apr 2026

https://github.com/Drew-Alleman/DataSurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 16 Jul 2025

https://github.com/devxprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 08 Apr 2025

https://github.com/thesp0nge/dawnscanner

Dawn is a static analysis security scanner for ruby written web applications. It supports Sinatra, Padrino and Ruby on Rails frameworks.

codereview cybersecurity hanami padrino rails ruby security security-audit sinatra vulnerabilities

Last synced: 15 May 2025

https://github.com/rosesecurity/anti-virus-evading-payloads

During the exploitation phase of a pen test or ethical hacking engagement, you will ultimately need to try to cause code to run on target system computers. Here is a simple way to evade anti-virus software when creating backdoors!

cybersecurity hacking redteam

Last synced: 26 Jan 2026

https://github.com/werkamsus/lilith

Lilith - Foundational reverse engineering resource for cybersecurity entrepreneurs in C++

administration cplusplus cybersecurity entrepreneurship native security windows

Last synced: 04 Apr 2025

https://github.com/werkamsus/Lilith

Lilith - Foundational reverse engineering resource for cybersecurity entrepreneurs in C++

administration cplusplus cybersecurity entrepreneurship native security windows

Last synced: 15 Mar 2025

https://github.com/cyb3r-monk/threat-hunting-and-detection

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

cybersecurity defender-for-endpoint detection-engineering dfir kql kusto-language microsoft-sentinel threat-detection threat-hunting

Last synced: 15 May 2025

https://github.com/wuba/antenna

Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。

antenna cybersecurity django dns-rebinding dnslog ftp http jndi jsonp ldap mysql oast python rmi vulnerability-scanners xss

Last synced: 29 Apr 2025

https://github.com/wuba/Antenna

Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。

antenna cybersecurity django dns-rebinding dnslog ftp http jndi jsonp ldap mysql oast python rmi vulnerability-scanners xss

Last synced: 11 Jul 2025

https://github.com/GossiTheDog/HiveNightmare

Exploit allowing you to read registry hives as non-admin on Windows 10 and 11

cybersecurity exploits security

Last synced: 20 Mar 2025

https://github.com/DerekBabb/CyberSecurity

A curriculum for a high school cyber security course.

curriculum cybersecurity highschool

Last synced: 29 Apr 2025

https://github.com/cifertech/nrfbox

All-in-One Gadget for Dominating BLE and 2.4GHz Networks | BLE Jammer - BLE Spoofer - Scanner

arduino ble-jammer ble-spoof ble-spoofer cybersecurity esp32 hack hacktoberfest jammer nrf-scanner nrf24l01 sour-apple

Last synced: 05 Apr 2025

https://derekbabb.github.io/CyberSecurity/

A curriculum for a high school cyber security course.

curriculum cybersecurity highschool

Last synced: 29 Mar 2025

https://github.com/idov31/functionstomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

attack cpp cyber cybersecurity injection methodology rust shellcode shellcode-injection windows

Last synced: 04 Apr 2025

https://github.com/Idov31/FunctionStomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

attack cpp cyber cybersecurity injection methodology rust shellcode shellcode-injection windows

Last synced: 02 Apr 2025

https://github.com/d00movenok/bounceback

↕️🤫 Stealth redirector for your red team operation security

c2 cobalt-strike cybersecurity infrastructure opsec pentest pentesting phishing proxy redirector redteam security

Last synced: 02 Mar 2026

https://github.com/satan1a/TheRoadOfSO

学习安全运营的记录 | The knowledge base of security operation

cybersecurity knowledge-base security-analysis security-operation security-operations soc threat-analysis wiki

Last synced: 15 May 2025

https://github.com/devXprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 16 Apr 2025

https://github.com/always-further/nono

Secure, kernel-enforced sandbox CLI and SDKs for AI agents. Capability-based isolation with secure key management, atomic rollback, cryptographic immutable audit chain of provenance. Run your agents in a zero-trust environment.

agent agentic-ai ai-agent-security ai-agents ai-security code-execution cybersecurity isolation linux-security llm mcp open-source prompt-injection runtime-security sandbox security sigstore supply-chain-security zero-trust

Last synced: 09 May 2026

https://github.com/cyberark/PipeViewer

A tool that shows detailed information about named pipes in Windows

blueteam cybersecurity namedpipe namedpipes redteam redteam-tools research-tool windows

Last synced: 11 Jan 2026

https://github.com/counteractive/incident-response-plan-template

A concise, directive, specific, flexible, and free incident response plan template

cybersecurity incident incident-management incident-response information-security infosec

Last synced: 02 Apr 2025

https://github.com/OpenBAS-Platform/openbas

Open Breach and Attack Simulation Platform

attack-simulation breach-simulator cybersecurity purple-team

Last synced: 05 Aug 2025

https://github.com/mergebase/log4j-detector

A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC

cve-2021-44228 cve-2021-45046 cve-2021-45105 cybersecurity detector log4j log4shell pentest sca scanner vulnerability-scanner

Last synced: 10 Jul 2025

https://github.com/the-xentropy/samlists

Free, libre, effective, and data-driven wordlists for all!

bugbounty cybersecurity hacking hacking-tools

Last synced: 18 Feb 2026

https://github.com/cybersecurityup/neurosploit

NeuroSploitv2 is an advanced, AI-powered penetration testing framework designed to automate and augment various aspects of offensive security operations. Leveraging the capabilities of large language models (LLMs).

ai-agents cybersecurity framework hacking llm pentesting

Last synced: 17 Jan 2026

https://github.com/cyberark/pipeviewer

A tool that shows detailed information about named pipes in Windows

blueteam cybersecurity namedpipe namedpipes redteam redteam-tools research-tool windows

Last synced: 15 May 2025

https://github.com/RhinoSecurityLabs/ccat

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

amazon aws ccat cloud cybersecurity docker ecr eks gce gcp gke google k8s kubernetes pentest pentesting rhino rhinosecuritylabs

Last synced: 30 Apr 2025

https://github.com/hideckies/exploit-notes

Sticky notes for pentesting, bug bounty, CTF.

cybersecurity hacking-tools pentesting

Last synced: 01 May 2025

https://github.com/bluecapesecurity/PWF

Practical Windows Forensics Training

blueteam cybersecurity forensics purpleteam

Last synced: 12 Jul 2025

https://github.com/msuiche/OPCDE

OPCDE Cybersecurity Conference Materials

cybersecurity incident-response information-security vulnerability

Last synced: 02 Apr 2025

https://cmu-sei.github.io/GHOSTS/

GHOSTS is a realistic user simulation framework for cyber experimentation, simulation, training, and exercise

behavior cyber cybersecurity cybertraining exercise human network-simulation network-simulations network-simulator simulation simulation-modeling training user-simulator

Last synced: 10 Oct 2025

https://github.com/center-for-threat-informed-defense/attack-flow

Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flows for a small corpus of incidents, and creating visualization tools to display attack flows.

ctid cyber-threat-intelligence cybersecurity mitre-attack threat-informed-defense

Last synced: 15 May 2025

https://github.com/intigriti/misconfig-mapper

Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!

bug-bounty bugbounty cybersecurity hacking hacking-tool misconfig misfconfiguration services

Last synced: 11 Mar 2025

https://github.com/BushidoUK/Open-source-tools-for-CTI

Public Repository of Open Source Tools for Cyber Threat Intelligence Analysts and Researchers

cti cybersecurity infosec malware osint threatintel

Last synced: 14 May 2025

https://github.com/loxy0dev/RedTiger-Tools

RedTiger-Tools is a free multi-tool with many features in the areas of Cybersecurity, Pentesting, OSINT, Network Scanning, Discord and Hacking.

cybersecurity database discord dox email hacking ip linux malware-builder multi-tool multitool multitools osint pentesting sql stealer-builder token-grab tool tools windows

Last synced: 28 Mar 2025

https://github.com/kviklet/kviklet

Pull Request-like Review/Approval flow for database queries. For compliant but smooth Engineering access to production.

cyber-security cybersecurity database database-access devops kubernetes mssql mysql pam postgresql sql-server

Last synced: 28 Feb 2026

https://github.com/infobyte/emploleaks

An OSINT tool that helps detect members of a company with leaked credentials

bugbounty cybersecurity leaked-secrets osint pentesting redteam

Last synced: 15 May 2025

https://github.com/idov31/cronos

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

assembly c cyber-security cybersecurity encryption evasion infosec red-team redteam windows

Last synced: 05 Apr 2025

https://github.com/wgpsec/lc

LC(List Cloud)是一个多云攻击面资产梳理工具

cloud cloudsecurity cybersecurity

Last synced: 07 Apr 2025

https://github.com/rhinosecuritylabs/ccat

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

amazon aws ccat cloud cybersecurity docker ecr eks gce gcp gke google k8s kubernetes pentest pentesting rhino rhinosecuritylabs

Last synced: 05 Apr 2025

https://github.com/xalgord/xalgorix

Xalgorix - The Most Powerful Open-Source AI Pentesting Agent

ai ai-tools bug-bounty bugbounty cybersecurity security technology

Last synced: 07 Jun 2026

https://github.com/SanMuzZzZz/LuaN1aoAgent

LuaN1aoAgent is a cognitive-driven AI hacker. It is a fully autonomous AI penetration testing agent powered by DeepSeek V3.2. Using dual-graph reasoning, LuaN1ao achieves a success rate of over 90% on the XBOW Benchmark, with a median exploit cost of just $0.09.

agents ai ai-agents ai-security-tool autonomous-agents causal-graphs cybersecurity deepseek large-language-models llm multi-agent-systems penetration-testing penetration-testing-tools pentest plan-execute-reflect security-automation security-tools

Last synced: 29 Mar 2026

https://github.com/MetaOSINT/MetaOSINT.github.io

A tool to quickly identify relevant, publicly-available open source intelligence ("OSINT") tools and resources, saving valuable time during investigations, research, and analysis.

cryptocurrency cybersecurity disinformation email facebook geoint geolocation instagram intelligence investigation news opsec osint search search-engine security social-media social-network twitter username

Last synced: 06 Aug 2025

https://github.com/cifertech/RF-Clown

BLE and Bluetooth Jammer with nRF24L01 and ESP32

arduino ble bluetooth cybersecurity esp32 jammer nrf24l01 wifi

Last synced: 24 Aug 2025

https://github.com/yaklang/yaklang

A programming language exclusively designed for cybersecurity

cybersecurity dsl go security security-tools

Last synced: 28 Feb 2026

https://github.com/azure/security-copilot

Microsoft Security Copilot is a generative AI-powered security solution that helps increase the efficiency and capabilities of defenders to improve security outcomes at machine speed and scale, while remaining compliant to responsible AI principles

cybersecurity generativeai largelanguagemodel logicapps sample-code

Last synced: 15 May 2025

https://github.com/fuzzinglabs/mcp-security-hub

A growing collection of MCP servers bringing offensive security tools to AI assistants. Nmap, Ghidra, Nuclei, SQLMap, Hashcat and more.

ai claude cybersecurity docker ghidra mcp mcp-server nmap nuclei offensive-security osint pentesting security vulnerability-scanner

Last synced: 21 May 2026

https://github.com/simplerhacking/Evilginx3-Phishlets

This repository provides penetration testers and red teams with an extensive collection of dynamic phishing templates designed specifically for use with Evilginx3. May be updated periodically.

ai cybersecurity evilginx2 evilginx3 gophish infosec kali-linux pentesting phishing phishlets python redteaming script

Last synced: 07 Sep 2025

https://github.com/yogsec/hacking-tools

A curated list of penetration testing and ethical hacking tools, organized by category. This compilation includes tools from Kali Linux and other notable sources.

blue-team bug-bounty-tools bugbounty bugbountytips cybersecurity ethical-hacking-tools exploit forensics hackers hacking hacking-tools kali-linux linux-tools penetration-testing penetration-testing-tools red-team reverse-engineering vulnerability web-security

Last synced: 05 Mar 2026

https://github.com/escape-technologies/graphql-armor

🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / Envelop servers 🛡️

apollo apollo-server cybersecurity envelop graphql hacktoberfest middleware security security-tools typescript

Last synced: 14 May 2025

https://github.com/Escape-Technologies/graphql-armor

🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / Envelop servers 🛡️

apollo apollo-server cybersecurity envelop graphql hacktoberfest middleware security security-tools typescript

Last synced: 04 May 2025

https://github.com/knight0x07/ImpulsiveDLLHijack

C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be weaponized during Red Team Operations to evade EDR's.

cybersecurity dll-hijacking redteam redteam-tools

Last synced: 30 Mar 2025

https://github.com/stanfrbd/cyberbro

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

blueteam cti cyber-threat-intelligence cybersecurity dfir docker hash incident-response infosec ioc ipinfo osint osint-python python security security-tools threat threat-hunting threat-intelligence virustotal

Last synced: 27 Jan 2026

https://github.com/cipher387/linux-for-osint-21-day

In this repository you will find sample commands and test files for each day of the course "Linux for OSINT. A 21-day course for beginners".

bash cybersecurity linux osint shell

Last synced: 05 Apr 2025

https://github.com/trimstray/otseca

Open source security auditing tool to search and dump system configuration. It allows you to generate reports in HTML or RAW-HTML formats.

auditing cybersecurity dump html-report information-gathering linux pentesting reporting security-audit security-tools system system-analysis system-config system-information

Last synced: 08 Apr 2025

https://github.com/Azure/Security-Copilot

Microsoft Security Copilot is a generative AI-powered security solution that helps increase the efficiency and capabilities of defenders to improve security outcomes at machine speed and scale, while remaining compliant to responsible AI principles

cybersecurity generativeai largelanguagemodel logicapps sample-code

Last synced: 20 Oct 2025

https://github.com/center-for-threat-informed-defense/tram

TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE ATT&CK®.

ctid cyber-threat-intelligence cybersecurity mitre-attack threat-informed-defense

Last synced: 15 May 2025

https://github.com/kleiton0x00/ppmap

A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.

bug-bounty bugbounty bugbounty-tool cybersecurity infosec prototype-pollution xss xss-detection xss-exploitation xss-vulnerability

Last synced: 05 Apr 2025