back to home

Best Open Source security tools Libraries

A curated list of the most popular GitHub repositories tagged with security tools. Select any project to visualize its architecture and dive into the codebase using RepoMind's AI engine.

#1x64dbg/x64dbg

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

47,901C++
Explore Repo

#2KeygraphHQ/shannon

Shannon Lite is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.

33,850TypeScript
Explore Repo

#3aquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

33,168Go
Explore Repo

#4Lissy93/web-check

🕵️‍♂️ All-in-one OSINT tool for analysing any website

32,317TypeScript
Explore Repo

#5gitleaks/gitleaks

Find secrets with Gitleaks 🔑

25,447Go
Explore Repo

#6Infisical/infisical

Infisical is the open-source platform for secrets, certificates, and privileged access management.

25,437TypeScript
Explore Repo

#7trufflesecurity/trufflehog

Find, verify, and analyze leaked credentials

25,062Go
Explore Repo

#8bee-san/RustScan

🤖 The Modern Port Scanner 🤖

19,447Rust
Explore Repo

#9fail2ban/fail2ban

Daemon to ban hosts that cause multiple authentication errors

17,228Python
Explore Repo

#10smicallef/spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

16,987Python
Explore Repo

#11CISOfy/lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

15,403Shell
Explore Repo

#12wazuh/wazuh

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

14,985C++
Explore Repo

#13jason5ng32/MyIP

The best IP Toolbox. Easy to check what's your IPs, IP geolocation, check for DNS leaks, examine WebRTC connections, speed test, ping test, MTR test, check website availability, whois search and more! || 可能是最好用的IP工具箱。轻松检查你的 IP,IP 地理位置,检查DNS泄漏,检查 WebRTC 连接,速度测试,ping 测试,MTR测试,检查网站可用性,查询 Whois 信息等等。

9,961Vue
Explore Repo

#14vxcontrol/pentagi

✨ Fully autonomous AI Agents system capable of performing complex penetration testing tasks

9,933Go
Explore Repo

#151N3/Sn1per

Attack Surface Management Platform

9,455Shell
Explore Repo

#16toniblyx/my-arsenal-of-aws-security-tools

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

9,413Shell
Explore Repo

#17securego/gosec

Go security checker

8,723Go
Explore Repo

#18A-poc/RedTeam-Tools

Tools and Techniques for Red Team / Penetration Testing

8,572
Explore Repo

#19Ullaakut/cameradar

Cameradar hacks its way into RTSP videosurveillance cameras

4,923Go
Explore Repo

#20OWASP/Nettacker

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

4,889Python
Explore Repo

#21e-m-b-a/emba

EMBA - The firmware security analyzer

3,486Shell
Explore Repo

#22aquasecurity/trivy-operator

Kubernetes-native security toolkit

1,884Go
Explore Repo

#23lirantal/npq

safely install npm packages by auditing them pre-install stage

1,719JavaScript
Explore Repo

#24ossf/cve-bin-tool

The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.

1,696Python
Explore Repo

#25goshs-labs/goshs

Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP callbacks · TLS · Auth · Share links. A powerful python3 -m http.server replacement.

884Go
Explore Repo

#26yaklang/yaklang

A programming language exclusively designed for cybersecurity

553Go
Explore Repo

#27SecObserve/SecObserve

SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It supports a variety of open source vulnerability scanners and integrates easily into CI/CD pipelines.

258Python
Explore Repo

#28rix4uni/medium-writeups

This repository updates latest Bug Bounty medium writeups every 10 minutes, https://readmedium.com/Medium_URL, https://archive.ph/Medium_URL, https://freedium.cfd/Medium_URL

170Go
Explore Repo