isemennikov's Stars
chaitin/SafeLine
serve as a reverse proxy to protect your web services from attacks and exploits.
jtesta/ssh-audit
SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
yandex/gixy
Nginx configuration static analyzer
yaroslaff/ws-emit
Easily emit websocket events from any sources (python, php, bash, whatever) using redis or HTTP interface
Urigo/graphql-scalars
A library of custom GraphQL Scalars for creating precise type-safe GraphQL schemas.
EnableSecurity/sipvicious
SIPVicious OSS is a VoIP security testing toolset. It helps security teams, QA and developers test SIP-based VoIP systems and applications. This toolset is useful in simulating VoIP hacking attacks against PBX systems especially through identification, scanning, extension enumeration and password cracking.
dolevf/Black-Hat-GraphQL
The Black Hat GraphQL Book Repository
EnableSecurity/wafw00f
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
thewhiteh4t/seeker
Accurately Locate Smartphones using Social Engineering
ColinIanKing/stress-ng
This is the stress-ng upstream project git repository. stress-ng will stress test a computer system in various selectable ways. It was designed to exercise various physical subsystems of a computer as well as the various operating system kernel interfaces.
JohnHammond/ctf-katana
This repository aims to hold suggestions (and hopefully/eventually code) for CTF challenges. The "project" is nicknamed Katana.
decalage2/oletools
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
nixawk/pentest-wiki
PENTEST-WIKI is a free online security knowledge library for pentesters / researchers. If you have a good idea, please share it with others.
Ignitetechnologies/Mindmap
This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them
prowler-cloud/prowler
Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more
nil0x42/phpsploit
Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor
tenable/terrascan
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
mxrch/GHunt
🕵️♂️ Offensive Google framework.
EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
PacktPublishing/Keycloak---Identity-and-Access-Management-for-Modern-Applications-2nd-Edition
Keycloak - Identity and Access Management for Modern Applications, 2nd Edition
docker/docker-bench-security
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
mandiant/capa
The FLARE team's open-source tool to identify capabilities in executable files.
SigmaHQ/sigma
Main Sigma Rule Repository
OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Syslifters/sysreptor
A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automate your pentest reports with ease.
valyala/fasthttp
Fast HTTP package for Go. Tuned for high performance. Zero memory allocations in hot paths. Up to 10x faster than net/http
future-architect/vuls
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Neo23x0/Loki2
LOKI2 - Simple IOC and YARA Scanner
locustio/locust
Write scalable load tests in plain Python 🚗💨