Open-source repositories gaining traction right now.
37 repositories

Fully autonomous AI Agents system capable of performing complex penetration testing tasks

Easily and securely send things from one computer to another 🐊 📦

CyberStrikeAI is an AI-native security testing platform built in Go. It integrates 100+ security tools, an intelligent orchestration engine, role-based testing with predefined security roles, a skills system with specialized testing skills, and comprehensive lifecycle management capabilities.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Xray, Penetrates Everything. Also the best v2ray-core. Where the magic happens. An open platform for various uses.

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Star XTLS / RealiTLScanner A TLS server scanner for Reality

Star hashicorp / vault A tool for secrets management, encryption as a service, and privileged access management

Star tailscale / tailscale The easiest, most secure way to use WireGuard and 2FA.

Sponsor Star netbirdio / netbird Connect your devices into a secure WireGuard®-based overlay network with SSO, MFA and granular access controls.

Star fleetdm / fleet Open device management

have a plan for the worst-case scenario

Security harness for AI agents — egress proxy with DLP scanning, SSRF protection, MCP response scanning, and workspace integrity monitoring

Matchlock secures AI agent workloads with a Linux-based sandbox.

🌟 Open Source AI Agent Security Infrastructure — intercepts and blocks dangerous agent behaviors before they happen. Just one command! Join us to build safer Human-AI Symbiosis!

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native fingerprintx/naabu pipeline integration.

LLM security testing framework for detecting prompt injection, jailbreaks, and adversarial attacks — 190+ probes, 28 providers, single Go binary

boostsecurityio/bagel

A privacy-focused voice communication server and client, inspired by TeamSpeak, built entirely in Go.

Open-source firewall for AI agents. Policy engine that controls what OpenClaw, Claude Code, Cursor, Codex, and any AI tool can do on your machine.


SecureE2E - Secret line for Secret chats with a VPS

Search for github leaks by combining gitleaks and git-hound capabilities with rate control and exhaustive search.

eBPF endpoint observer for Linux: exec, file & network events as JSONL for your SIEM

Access control, policy enforcement, and audit logging for SSH agent sockets


一个简易的 dll 注入生成器

自动化Web备份文件扫描、监控系统。集成备份文件扫描、任务调度等功能,可以帮助安全研究人员自动化地发现和监控目标域名的备份文件。

QuestExploit 是一款基于 Go 语言开发的自动化安全测试工具。它针对 QuestDB 数据库的身份验证机制进行深度探测,能够自动验证多种绕过手段,并演示在成功绕过身份验证后,攻击者可能执行的恶意操作(如数据窃取、表删除、任意文件写入等)。 本项目是 QuestDB 身份验证绕过漏洞利用工具 的详细文档。该工具专门用于演示和测试 QuestDB 在特定配置下存在的安全风险,帮助安全研究人员理解身份验证绕过机制及其潜在后果。


🛡️ Lightweight, efficient HTTP/HTTPS prober intended for bug hunters and pentesters

SELA (Secure Encrypted Ledger Access). The air-gapped crypto vault project




mirror of https://gitlab.torproject.org/tpo/anti-censorship/pluggable-transports/snowflake.git

Go SDK for SanctumAI — credential management for AI agents
Paste a github.com URL. Submissions are reviewed before they are tracked.