Open-source repositories gaining traction right now.
170 repositories

DPI detection tool for internet censorship testing. Identifies TLS, TCP, HTTP blocking and 16-20KB connection drops

have a plan for the worst-case scenario



Security harness for AI agents — egress proxy with DLP scanning, SSRF protection, MCP response scanning, and workspace integrity monitoring

Automatic Exploit Generation with LLMs

Matchlock secures AI agent workloads with a Linux-based sandbox.

A versatile proxy client supporting multiple protocols including VLESS, VMess, Shadowsocks, Trojan, Hysteria2, and TUIC with advanced management features, subscription support, routing rules, and system proxy/TUN modes

🌟 Open Source AI Agent Security Infrastructure — intercepts and blocks dangerous agent behaviors before they happen. Just one command! Join us to build safer Human-AI Symbiosis!

Bluetooth Low Energy (BLE) scanner with Resolvable Private Address (RPA) resolution using Identity Resolving Keys (IRKs)

Active Directory information dumper via ADWS for evasion purposes

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native fingerprintx/naabu pipeline integration.

LLM security testing framework for detecting prompt injection, jailbreaks, and adversarial attacks — 190+ probes, 28 providers, single Go binary

Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier



boostsecurityio/bagel

Secure Wireless Data-Transfer over BLE and USB for Passwords, Pentesting and Media Control.

Secure DNS over HTTPS Worker is a Cloudflare Worker that provides a custom DNS over HTTPS (DoH) endpoint along with a simple, educational web page for users. It allows users to securely encrypt their DNS queries using their own domain, protecting privacy and bypassing ISP-level monitoring.


Generate DLL proxy/sideload projects. Automatically parses PE export tables and generates ready-to-compile project for red team engagements.

A monitoring hub that watches popular open-source repositories and uses AI to detect when commits are patching security vulnerabilities - often before a CVE is even assigned. Findings are published to a retro-themed website with an RSS feed.

PoC

A Rust template for writing Beacon Object Files (BOFs)

ByPassTamperPlus / SQLMap加强绕WAF / Code By:Tas9er

A privacy-focused voice communication server and client, inspired by TeamSpeak, built entirely in Go.

A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for quick AD enumeration.

IP Security Analyzer: A pro-grade Cloudflare Worker for forensic intelligence. Detects VPNs, Proxies & Hosting IPs via heuristic ASN auditing. Includes Security Scoring, WebRTC Leak Test, ISP classification, and Geo-location. Built with a modern Bento UI and live terminal logs. Powerful, open-source and real-time network forensic tool.


Open-source firewall for AI agents. Policy engine that controls what OpenClaw, Claude Code, Cursor, Codex, and any AI tool can do on your machine.

300 lines eBPF tool that shows which pods are reading your K8s secrets and how often.

基于 PyQt5 的 Nuclei 漏洞扫描图形化工具,支持 POC 管理、FOFA/Hunter/Shodan 资产搜索、AI 辅助分析、漏洞报告生成等功能

TorZon Darknet Link

An enterprise framework implementing the Agent Operation Authorization protocol with cryptographic identity binding, fine-grained authorization, and semantic audit trails for secure AI agent operations.

URILoot is a browser extension designed for Bug Bounty Hunters and Pentesters. Makes fetching uris easy from various sources.

🛡️ Open-source binary protection toolkit for Windows PE. Nanomite, VM protection, anti-debug, and more.

Open-source security dashboard using Have I Been Pwned and multiple security APIs

One flake. Fully hardened. NixOS module for secure OpenClaw deployment.

A Java based password strength checker that validates input using predefined security constraints


WebSocket Penetration Testing Toolkit for Burp Suite


The Security Layer (Shell) for OpenClaw, the essential safety harness for PII & sensitive credentials protection

SecureE2E - Secret line for Secret chats with a VPS

Suite de auditoría de red automatizada. Detecta dispositivos, identifica fabricantes y busca vulnerabilidades (CVEs). Incluye versiones optimizadas para PC (Multi-hilo), Raspberry Pi Zero 2W (Low Power) y scripts Legacy en Bash. Genera reportes con integración a Telegram.

Collection of extracted skills from popular AI agents product like Kimi, GLM & Minimax

A CLI secrets store & dispatch tool built for AI agents. Authy stores encrypted secrets locally and dispatches them to agents with policy-based scoping, short-lived session tokens, and audit logging. No server required.

Search for github leaks by combining gitleaks and git-hound capabilities with rate control and exhaustive search.

A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.

TorZon Darknet Link

eBPF endpoint observer for Linux: exec, file & network events as JSONL for your SIEM

Complete security layer for OpenClaw - CLI Scanner + Live Dashboard. Secrets detection, config hardening, prompt injection scanning, MCP server auditing. Zero telemetry.



Firmware reverse engineering and vulnerability research on Xiaomi Redmi Watch 5 Active (SiFli SF32LB551)

Check the CVE,CCE,CWE vulnerabilities with AI Analyzer.

A high-fidelity, educational cybersecurity sandbox for simulating ransomware attacks and deploying multi-layered Défense mechanisms in a safe, controlled environment.

ghidra but on steroids for hunters

Access control, policy enforcement, and audit logging for SSH agent sockets

Implementation of Zero Trust Network Access using Keycloak, WireGuard and Flask.
Paste a github.com URL. Submissions are reviewed before they are tracked.