GitHub trending

Open-source repositories gaining traction right now.

RepositoriesLive mentionsDevelopersTopicsStats

Period

  • All time
  • Today
  • This week
  • This month
  • This year

Sort

  • Trending today
  • Most stars
  • Most forks
  • Recently updated

Category

  • All
  • AI
  • Dev tools
  • Security
  • Web
  • Infra
  • Mobile
  • Data

Language

  • All
  • Python
  • Go
  • JavaScript
  • TypeScript
  • Java
  • Rust
  • C++
  • Shell

Topics

  • All
  • #ai171
  • #python145
  • #llm134
  • #rust126
  • #ai-agents106
  • #mcp100
  • #claude-code99
  • #cli99
  • #golang83
  • #claude79
  • #typescript70
  • #hacktoberfest69
  • #javascript62
  • #go59
  • #open-source59
Filters

Period

  • All time
  • Today
  • This week
  • This month
  • This year

Sort

  • Trending today
  • Most stars
  • Most forks
  • Recently updated

Category

  • All
  • AI
  • Dev tools
  • Security
  • Web
  • Infra
  • Mobile
  • Data

Language

  • All
  • Python
  • Go
  • JavaScript
  • TypeScript
  • Java
  • Rust
  • C++
  • Shell

Topics

  • All
  • #ai171
  • #python145
  • #llm134
  • #rust126
  • #ai-agents106
  • #mcp100
  • #claude-code99
  • #cli99
  • #golang83
  • #claude79
  • #typescript70
  • #hacktoberfest69
  • #javascript62
  • #go59
  • #open-source59

170 repositories

1

usestrix/strix

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Python57K6.2K+2.8K today
#agents#artificial-intelligence#cybersecurity#penetration-testing#ai-penetration-testing
2

zhaoxuya520/reverse-skill

Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端

PowerShell27K3.7K+1.4K today
3

vxcontrol/pentagi

Fully autonomous AI Agents system capable of performing complex penetration testing tasks

Go22K2.9K+1.3K today
#ai-agents#ai-security-tool#autonomous-agents#golang#graphql
4

simplex-chat/simplex-chat

SimpleX - the first messaging network operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!

Haskell19K1.4K+1.2K today
#chat#protocol#e2ee#privacy#haskell
5

Z4nzu/hackingtool

ALL IN ONE Hacking Tool For Hackers

Python79K9K+1.2K today
#allinonehackingtool#web-attack#password-attack#hacking#wireless-attack
6

sherlock-project/sherlock

Hunt down social media accounts by username across social networks

Python90K11K+994 today
#osint#reconnaissance#linux#cli#sherlock
7

google/magika

Fast and accurate AI powered file content types detection

Python18K1.1K+956 today
#deep-learning#filetype#keras-classification-models#keras-models#mime-types
8

amnezia-vpn/amnezia-client

Amnezia VPN Client (Desktop+Mobile)

C++15K1.1K+515 today
#vpn#vpn-client#vpn-server#openvpn#wireguard
9

Dicklesworthstone/destructive_command_guard

The Destructive Command Guard (dcg) is for blocking dangerous git and shell commands from being executed by agents.

Rust5.8K239+471 today
#ai-agents#cli#developer-tools#rust#safety
10

schollz/croc

Easily and securely send things from one computer to another 🐊 📦

Go40K1.6K+396 today
#file-sharing#tcp#golang#peer-to-peer#data-transfer
11

megadose/holehe

holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.

Python14K1.8K+389 today
#information-gathering#osint#osint-tools#open-source-intelligence#python
12

mukul975/Anthropic-Cybersecurity-Skills

754 structured cybersecurity skills for AI agents · Mapped to 5 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND & NIST AI RMF · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 26 security domains · Apache 2.0

Python31K3.7K+361 today
#ai-agents#claude-code#cybersecurity#incident-response#mitre-attack
13

uber/ADR

ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.

Python1.5K134+354 today
#agent-security#ai-agents#ai-security#benchmark#llm-security
14

itsfatduck/optimizerDuck

Free, open-source Windows optimization tool for performance, privacy, and simplicity.

C#8.5K357+321 today
#optimizer#performance#tweaker#open-source#optimization
15

gorhill/uBlock

uBlock Origin - An efficient blocker for Chromium and Firefox. Fast and lean.

JavaScript67K4.3K+315 today
#ublock-origin#blocker#firefox#chromium#ublock
16

goauthentik/authentik

The authentication glue you need.

Python25K2K+310 today
#saml#saml-idp#saml-sp#oauth2#oauth2-server
17

smicallef/spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Python21K3.4K+294 today
#footprinting#osint#threatintel#python#infosec
18

OpenCTI-Platform/opencti

Star OpenCTI-Platform / opencti Open Cyber Threat Intelligence Platform

TypeScript9.8K1.4K+281 today
#cyber#cti#threat-intelligence#security#intelligence
19

sepinf-inc/IPED

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by law enforcement or in a corporate investigation by private examiners.

Java2.7K466+273 today
#forensic#recovery#digital-forensics
20

dani-garcia/vaultwarden

Unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs

Rust66K3.1K+268 today
#vaultwarden#bitwarden#rust#docker#rocket
21

Ed1s0nZ/CyberStrikeAI

CyberStrikeAI is an AI-native security testing platform built in Go. It integrates 100+ security tools, an intelligent orchestration engine, role-based testing with predefined security roles, a skills system with specialized testing skills, and comprehensive lifecycle management capabilities.

Go5.9K946+244 today
#ai#ai-agents#ai-cybersecurity#ai-penetration-testing#ai-security-tool
22

KeygraphHQ/shannon

Shannon Lite is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.

TypeScript47K5.4K+213 today
#penetration-testing#pentesting#security-audit#security-automation#security-tools
23

pi-hole/pi-hole

A black hole for Internet advertisements

Shell61K3.3K+196 today
#pi-hole#ad-blocker#shell#blocker#raspberry-pi
24

veracrypt/VeraCrypt

Disk encryption with strong security based on TrueCrypt

C11K1.3K+186 today
#encryption#encryption-decryption#encryption-algorithms#veracrypt#idrix
25

Mebus/cupp

Common User Passwords Profiler (CUPP)

Python6.5K2.4K+184 today
#wordlist-generator#wordlist#dictionary-attack#password#password-strength
26

BigBodyCobain/Shadowbroker

Open-source intelligence for the global theater. Track everything from the corporate/private jets of the wealthy, and spy satellites, to seismic events in one unified interface. Hook an AI agent up to have it parse through data and find previously unseen correlations. The knowledge is available to all but rarely aggregated in the open, until now.

Python11K1.7K+165 today
#osint#osint-resources#osint-tool#asdb#cctv
27

Universal-Debloater-Alliance/universal-android-debloater-next-generation

Cross-platform GUI written in Rust using ADB to debloat non-rooted Android devices. Improve your privacy, the security and battery life of your device.

Rust8.9K375+146 today
#adb#android#bloatware-removal#debloat#debloater
28

rustdesk/rustdesk

An open-source remote desktop application designed for self-hosting, as an alternative to TeamViewer.

Rust122K19K+143 today
#remote-control#remote-desktop#teamviewer#anydesk#vnc
29

google/osv-scanner

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Go11K770+141 today
#scanner#security-audit#security-tools#vulnerability-scanner
30

hiddify/hiddify-app

Multi-platform auto-proxy client, supporting Sing-box, X-ray, TUIC, Hysteria, Reality, Trojan, SSH etc. It’s an open-source, secure and ad-free.

Dart32K3K+132 today
#proxy#singbox#v2ray#xray#clash
31

Unclecheng-li/VulnClaw

基于 AI Agent + MCP 工具链 + 渗透 Skill 编排, 配合大语言模型, 自然语言输入 → 自动完成「信息收集 → 漏洞发现 → 漏洞利用 → 报告生成」全流程。

Python1.7K164+132 today
#ai#ai-agent#ai-tools#ctf#cybersecurity
32

francescopace/espectre

🛜 ESPectre 👻 - Motion detection system based on Wi-Fi spectre analysis (CSI), with Home Assistant integration.

Python9.1K683+112 today
#csi#home-assistant#wifi#wifi-sensing#esp-32
33

K2SOsint/Legendary_OSINT

A list of OSINT tools & resources for (fraud-)investigators, CTI-analysts, KYC, AML and more.

1.7K215+109 today
#cti#cyberthreatintelligence#osint#osint-tools-list#socmint
34

geo-tp/ESP32-Bit-Pirate

A Hardware Hacking Tool with Web-Based CLI That Speaks Every Protocol

C++5.6K456+83 today
#esp32#hardware-hacking#debugging#can-bus#i2c
35

XTLS/Xray-core

Xray, Penetrates Everything. Also the best v2ray-core. Where the magic happens. An open platform for various uses.

Go41K5.8K+78 today
#xray#vless#tunnel#anticensorship#vmess
36

microsoft/mxc

Policy-driven, layered isolation and containment

Rust1.2K64+57 today
37

microsoft/agent-governance-toolkit

AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.

Python6.1K1.1K+46 today
#agent-framework#ai-agents#ai-safety#compliance#governance
38

0x4m4/hexstrike-ai

Star 0x4m4 / hexstrike-ai HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.

Python11K2.4K+27 today
#0x4m4#ai#ai-agents#ai-cybersecurity#ai-hacking
39

kaifcodec/user-scanner

Star kaifcodec / user-scanner 🕵️🫆 (2-in-1) Emaill and Username OSINT tool that analyzes username and email presence across multiple platforms, intended for security research, investigations, legitimate analysis

Python3.3K385+27 today
#osint#osint-tool#python#osint-tools#email-osint
40

aquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Go38K620+26 today
#security#security-tools#docker#containers#vulnerability-scanners
41

RocketChat/Rocket.Chat

The Secure CommsOS™ for mission-critical operations

TypeScript46K14K+22 today
#chat#meteor#javascript#collaboration#webrtc
42

HunxByts/GhostTrack

Useful tool to track location or mobile number

Python15K2K+21 today
#fyp#hacking#hacking-tool#indonesia#information
43

GH05TCREW/pentestagent

Star GH05TCREW / pentestagent PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.

Python3K601+18 today
#security-automation#ai-agents#ai#ai-cybersecurity#ai-hacking
44

martin-olivier/airgorah

Sponsor Star martin-olivier / airgorah A WiFi security auditing software mainly based on aircrack-ng tools suite

Rust1.1K176+17 today
#aircrack-ng#gui#security#security-audit#wifi
45

thalesgroup-cert/Watcher

Star thalesgroup-cert / Watcher Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.

JavaScript1.4K203+15 today
#cybersecurity#threat-hunting#django#reactjs#misp
46

XTLS/RealiTLScanner

Star XTLS / RealiTLScanner A TLS server scanner for Reality

Go4.3K306+8 today
47

projectdiscovery/nuclei-templates

Star projectdiscovery / nuclei-templates Community curated list of templates for the nuclei engine to find security vulnerabilities.

JavaScript13K3.6K+4 today
#nuclei-templates#nuclei#bugbounty#security#nuclei-checks
48

NationalSecurityAgency/ghidra

Star NationalSecurityAgency / ghidra Ghidra is a software reverse engineering (SRE) framework

Java73K8K
#software-analysis#disassembler#reverse-engineering
49

GyulyVGC/sniffnet

Sponsor Star GyulyVGC / sniffnet Comfortably monitor your Internet traffic 🕵️‍♂️

Rust41K1.9K
#network-analysis#networking#packet-sniffer#rust-crate#linux
50

keycloak/keycloak

Sponsor Star keycloak / keycloak Open Source Identity and Access Management For Modern Applications and Services

Java36K8.8K
#keycloak#oidc#saml
51

hashicorp/vault

Star hashicorp / vault A tool for secrets management, encryption as a service, and privileged access management

Go36K4.7K
#vault#go#secrets
52

tailscale/tailscale

Star tailscale / tailscale The easiest, most secure way to use WireGuard and 2FA.

Go35K3.1K
#wireguard#oauth#sso#2fa#vpn
53

netbirdio/netbird

Sponsor Star netbirdio / netbird Connect your devices into a secure WireGuard®-based overlay network with SSO, MFA and granular access controls.

Go29K1.6K
#wireguard#wireguard-vpn#vpn#nat-traversal#mesh-networks
54

qeeqbox/social-analyzer

Sponsor Star qeeqbox / social-analyzer API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites

JavaScript24K2.3K
#osint#social-media#analyzer#username#profile
55

EasyTier/EasyTier

Star EasyTier / EasyTier A simple, decentralized mesh VPN with WireGuard support.

Rust13K1.3K
#nat-traversal#p2p#rust#tailscale#vpn
56

signalapp/Signal-Server

Star signalapp / Signal-Server Server supporting the Signal Private Messenger applications on Android, Desktop, and iOS

Java11K2.5K
57

fleetdm/fleet

Star fleetdm / fleet Open device management

Go6.8K995
#osquery#gitops#device-management#vulnerability-management#binary-authorization
58

signalapp/libsignal

Star signalapp / libsignal Home to the Signal Protocol as well as other cryptographic primitives which make Signal possible.

Rust6K776
59

sheeki03/tirith

Your browser catches homograph attacks. Your terminal doesn't. Tirith guards the gate — intercepts suspicious URLs, ANSI injection, and pipe-to-shell attacks before they execute.

Rust2.7K92
#cli#devtools#homograph-attack#rust#security
60

cisco-ai-defense/skill-scanner

Security Scanner for Agent Skills

Python2.5K309
#agent#agent-skills#security

Suggest a repository

Paste a github.com URL. Submissions are reviewed before they are tracked.

1–60 of 170Next