The Vault

746 curated tools across 6 categories — auto-updated weekly

746Tools
6Categories
Python (172)Go (161)TypeScript (70)Shell (48)JavaScript (35)C (27)Rust (24)HTML (19)

Showing all 746 tools

build-your-own-x

codecrafters-io/build-your-own-x

Hands-on tutorials for recreating popular technologies from scratch

Training PlatformsMarkdown
482.2k

awesome

sindresorhus/awesome

Meta collection of awesome lists covering all tech topics

Knowledge Bases
447.7k

freeCodeCamp

freeCodeCamp/freeCodeCamp

Comprehensive free coding curriculum and learning platform for programming fundamentals

Training PlatformsTypeScript
438.7k

free-programming-books

EbookFoundation/free-programming-books

Massive collection of free programming books and educational resources

Books & CoursesPython
384.4k

openclaw

openclaw/openclaw

Cross-platform personal AI assistant framework with data ownership focus

AI FrameworksTypeScript
328.9k

awesome-python

vinta/awesome-python

Comprehensive list of Python frameworks, libraries and development resources

Knowledge BasesPython
288.4k

awesome-selfhosted

awesome-selfhosted/awesome-selfhosted

Comprehensive list of self-hostable network services and web applications

Knowledge Bases
281.4k

Python

TheAlgorithms/Python

Educational algorithm implementations for computer science and interview preparation

Knowledge BasesPython
218.9k

ohmyzsh

ohmyzsh/ohmyzsh

Community-driven zsh configuration framework with plugins and themes

CLI & TerminalShell
185.6k

n8n

n8n-io/n8n

Visual workflow automation platform with native AI capabilities and 400+ integrations

AutomationTypeScript
180.4k

awesome-go

avelino/awesome-go

Curated list of Go frameworks, libraries and development resources

Knowledge BasesGo
168.0k

ollama

ollama/ollama

Local LLM runtime supporting multiple models including Qwen, Gemma, and DeepSeek

LLM ToolsGo
165.8k

prompts.chat

f/prompts.chat

Community platform for sharing and discovering AI prompts and techniques

Prompt EngineeringHTML
153.7k

langflow

langflow-ai/langflow

Visual workflow builder for creating and deploying AI agents with drag-and-drop interface

AI FrameworksPython
146.0k

next.js

vercel/next.js

Popular React framework for production web apps with SSR and static generation

Frameworks & LibrariesJavaScript
138.4k

system-prompts-and-models-of-ai-tools

x1xhlol/system-prompts-and-models-of-ai-tools

Collection of AI system prompts and models from popular coding tools

Prompt Engineering
132.6k

opencode

anomalyco/opencode

Open source coding agent for automated software development tasks

Coding AgentsTypeScript
127.6k

kubernetes

kubernetes/kubernetes

Production-grade container orchestration platform for modern applications

Infrastructure & DevOpsGo
121.3k

free-for-dev

ripienaar/free-for-dev

Free tier services for DevOps, development, and infrastructure

Infrastructure & DevOpsHTML
120.2k

excalidraw

excalidraw/excalidraw

Collaborative virtual whiteboard for sketching diagrams and visual planning

Frameworks & LibrariesTypeScript
119.3k

ui

shadcn-ui/ui

Modern React component library with accessible design and framework flexibility

Frameworks & LibrariesTypeScript
110.3k

rustdesk

rustdesk/rustdesk

Self-hosted remote desktop alternative to TeamViewer with cross-platform support

Infrastructure & DevOpsRust
109.8k

godot

godotengine/godot

Multi-platform 2D/3D game engine for cross-platform development

Frameworks & LibrariesC++
108.3k

frp

fatedier/frp

Fast reverse proxy for exposing local servers through NAT and firewalls

Infrastructure & DevOpsGo
105.5k

superpowers

obra/superpowers

Agentic skills framework for software development methodology with practical approach

AI FrameworksShell
103.6k

awesome-mac

jaywcjlove/awesome-mac

Comprehensive collection of high-quality macOS software and tools

Knowledge BasesJavaScript
100.6k

supabase

supabase/supabase

Open-source Postgres development platform with auth, real-time, and AI capabilities

DatabasesTypeScript
99.4k

skills

anthropics/skills

Official Anthropic repository for agent skills development and examples

AI FrameworksPython
99.4k

whisper

openai/whisper

OpenAI's robust speech recognition system using large-scale supervision

AI FrameworksPython
96.4k

immich

immich-app/immich

High-performance self-hosted photo/video management and backup solution

Infrastructure & DevOpsTypeScript
95.4k

everything-claude-code

affaan-m/everything-claude-code

Agent harness optimization system for Claude Code with skills and memory management

AI FrameworksJavaScript
95.1k

nvm

nvm-sh/nvm

POSIX-compliant Node.js version manager for switching between Node versions

CLI & TerminalShell
92.5k

playwright

microsoft/playwright

Cross-browser testing framework for web automation and E2E testing

Frameworks & LibrariesTypeScript
84.7k

servers

modelcontextprotocol/servers

Official collection of Model Context Protocol servers for AI applications

LLM ToolsTypeScript
81.7k

uv

astral-sh/uv

Extremely fast Python package manager written in Rust for efficient dependency management

Build ToolsRust
81.7k

claude-code

anthropics/claude-code

Terminal-based AI coding assistant that understands codebases and handles git workflows

Coding AgentsShell
81.0k

Deep-Live-Cam

hacksider/Deep-Live-Cam

Real-time deepfake and face swap tool using AI for video manipulation

ai-toolsPython
80.2k

spec-kit

github/spec-kit

GitHub toolkit for spec-driven development with AI integration

Frameworks & LibrariesPython
79.6k

zed

zed-industries/zed

High-performance multiplayer code editor built in Rust by Atom creators

Editors & IDERust
77.6k

cs-video-courses

Developer-Y/cs-video-courses

Curated list of computer science courses with video lectures covering various topics

Books & Courses
77.4k

code-server

coder/code-server

VS Code running in browser for remote development environments

Editors & IDETypeScript
76.8k

elasticsearch

elastic/elasticsearch

Distributed RESTful search and analytics engine for enterprise data solutions

DatabasesJava
76.4k

PayloadsAllTheThings

swisskyrepo/PayloadsAllTheThings

Curated payload collection for web app security testing and CTF challenges

Web App TestingPython
76.3k

Ventoy

ventoy/Ventoy

Multi-boot USB solution supporting various OS images and secure boot

Infrastructure & DevOpsC
75.2k

lazygit

jesseduffield/lazygit

Simple terminal UI for Git commands with visual interface

CLI & TerminalGo
74.8k

sherlock

sherlock-project/sherlock

Social media account hunting by username across multiple platforms

Reconnaissance & OSINTPython
74.0k

tesseract

tesseract-ocr/tesseract

Industry-standard OCR engine for extracting text from images and documents

Frameworks & LibrariesC++
73.0k

moby

moby/moby

Core Docker project for container-based system development and deployment

Infrastructure & DevOpsGo
71.6k

caddy

caddyserver/caddy

Fast multi-platform web server with automatic HTTPS and reverse proxy capabilities

Infrastructure & DevOpsGo
71.0k

SecLists

danielmiessler/SecLists

Comprehensive collection of security testing wordlists and payloads for pentesting

Web App TestingPHP
69.6k

ansible

ansible/ansible

Agentless IT automation platform for configuration management and deployment

Infrastructure & DevOpsPython
68.4k

codex

openai/codex

Lightweight terminal-based coding agent from OpenAI

Coding AgentsRust
66.8k

ghidra

NationalSecurityAgency/ghidra

NSA's powerful software reverse engineering framework and disassembler

Reverse EngineeringJava
66.0k

localstack

localstack/localstack

Local AWS cloud stack emulator for offline development and testing

Infrastructure & DevOpsPython
64.7k

prometheus

prometheus/prometheus

Industry-standard time series database and monitoring system for infrastructure metrics

SIEM & MonitoringGo
63.3k

traefik

traefik/traefik

Cloud-native application proxy and load balancer with automatic service discovery

Infrastructure & DevOpsGo
62.3k

nerd-fonts

ryanoasis/nerd-fonts

Massive collection of developer-focused patched fonts with programming icons

CLI & TerminalCSS
62.1k

ladybird

LadybirdBrowser/ladybird

Independent web browser engine built from scratch for security and performance

CLI & TerminalC++
61.4k

cline

cline/cline

Autonomous coding agent for IDEs with file creation and command execution

Coding AgentsTypeScript
59.2k

agency-agents

msitarzewski/agency-agents

Complete AI agency framework with specialized agents for different business roles

AI FrameworksShell
58.5k

astro

withastro/astro

Modern web framework for content-driven static and hybrid sites

Frameworks & LibrariesTypeScript
57.7k

html5-boilerplate

h5bp/html5-boilerplate

Professional HTML5 boilerplate with best practices for robust web development

Frameworks & LibrariesJavaScript
57.4k

vaultwarden

dani-garcia/vaultwarden

Self-hosted password manager, essential for secrets management

Secrets ManagementRust
57.1k

pi-hole

pi-hole/pi-hole

Network-wide ad blocker with DNS server and DHCP capabilities

Network DefenseShell
56.2k

nanoGPT

karpathy/nanoGPT

Karpathy's minimal GPT training implementation, perfect for learning and experimentation

AI FrameworksPython
55.4k

starship

starship/starship

Fast, customizable shell prompt that works across multiple shells

CLI & TerminalRust
55.0k

ChatGPT

lencx/ChatGPT

Cross-platform ChatGPT desktop app with note-taking features

LLM ToolsRust
54.4k

powerlevel10k

romkatv/powerlevel10k

Fast and feature-rich zsh theme for enhanced terminal experience

CLI & TerminalShell
53.4k

ImHex

WerWolv/ImHex

Feature-rich hex editor with pattern analysis for reverse engineering

Reverse EngineeringC++
52.9k

Docker-OSX

sickcodes/Docker-OSX

Run macOS VM in Docker containers for CI/CD and security research

Infrastructure & DevOpsShell
52.3k

lazydocker

jesseduffield/lazydocker

Simple terminal UI for managing Docker containers and images

Infrastructure & DevOpsGo
50.3k

nanochat

karpathy/nanochat

Budget-conscious ChatGPT alternative optimized for cost efficiency

LLM ToolsPython
49.9k

winutil

ChrisTitusTech/winutil

Windows system administration utility for tweaks, updates, and software management

CLI & TerminalPowerShell
49.8k

autoresearch

karpathy/autoresearch

Karpathy's autonomous research AI agents for single-GPU training experiments

AutomationPython
48.5k

terraform

hashicorp/terraform

Infrastructure as code tool for safely managing cloud resources

Infrastructure & DevOpsGo
48.0k

open-source-mac-os-apps

serhii-londar/open-source-mac-os-apps

Curated list of open source macOS applications for developers

Knowledge Bases
47.9k

ui-ux-pro-max-skill

nextlevelbuilder/ui-ux-pro-max-skill

AI skill for professional UI/UX design intelligence across multiple platforms

AI FrameworksPython
47.7k

serverless

serverless/serverless

Popular framework for building auto-scaling serverless applications on cloud platforms

Frameworks & LibrariesJavaScript
46.9k

awesome-compose

docker/awesome-compose

Collection of Docker Compose examples for development and deployment

Infrastructure & DevOpsHTML
44.5k

helix

helix-editor/helix

Modern modal text editor in Rust, alternative to Vim with improved ergonomics

Editors & IDERust
43.6k

RSSHub

DIYgod/RSSHub

Universal RSS hub converting various platforms to RSS feeds for content aggregation

API ToolsTypeScript
42.9k

Files

files-community/Files

Modern Windows file manager with developer-friendly features and Git integration

CLI & TerminalC#
42.6k

BMAD-METHOD

bmad-code-org/BMAD-METHOD

Agile AI-driven development methodology framework

Frameworks & LibrariesJavaScript
41.7k

ccxt

ccxt/ccxt

Comprehensive cryptocurrency trading API library supporting 100+ exchanges

API ToolsPython
41.5k

desktop

zen-browser/desktop

Privacy-focused Firefox-based browser for secure web browsing and development

CLI & TerminalJavaScript
40.8k

cal.com

calcom/cal.com

Open-source scheduling platform built with modern TypeScript stack

Frameworks & LibrariesTypeScript
40.7k

awesome-openclaw-skills

VoltAgent/awesome-openclaw-skills

Curated collection of 5400+ OpenClaw agent skills categorized and filtered

AI Frameworks
40.6k

Fabric

danielmiessler/Fabric

Modular AI framework with crowdsourced prompts for human augmentation

Prompt EngineeringGo
40.1k

litellm

BerriAI/litellm

Universal LLM API gateway with cost tracking and guardrails for 100+ providers

LLM ToolsPython
39.9k

claude-mem

thedotmack/claude-mem

Claude Code plugin for AI-powered memory and context injection in coding

AI FrameworksTypeScript
39.2k

MiroFish

666ghj/MiroFish

Multi-agent swarm intelligence engine for prediction and social analysis

AI FrameworksPython
38.6k

get-shit-done

gsd-build/get-shit-done

Meta-prompting framework for Claude Code with spec-driven development approach

Coding AgentsJavaScript
38.2k

metasploit-framework

rapid7/metasploit-framework

The legendary Metasploit penetration testing and exploitation framework

Exploitation FrameworksRuby
37.8k

cli

httpie/cli

Modern command-line HTTP client with JSON support, colors, and developer features

API ToolsPython
37.8k

it-tools

CorentinTh/it-tools

Collection of handy online tools for developers with great UX

CLI & TerminalVue
37.7k

paperless-ngx

paperless-ngx/paperless-ngx

Document management system with OCR and machine learning capabilities

Infrastructure & DevOpsPython
37.5k

sqlmap

sqlmapproject/sqlmap

Automated SQL injection detection and database takeover tool

Web App TestingPython
36.9k

headscale

juanfont/headscale

Open source self-hosted Tailscale control server implementation

Infrastructure & DevOpsGo
36.7k

reactive-resume

amruthpillai/reactive-resume

Privacy-focused resume builder with modern tech stack, useful dev tool

Frameworks & LibrariesTypeScript
35.9k

gstack

garrytan/gstack

Opinionated Claude Code setup for CEO, Designer, Eng Manager roles

LLM ToolsTypeScript
35.8k

awesome-docker

veggiemonk/awesome-docker

Comprehensive list of Docker resources, tools and projects

Knowledge BasesMakefile
35.7k

learn-claude-code

shareAI-lab/learn-claude-code

Educational Claude Code agent harness built from scratch for learning AI agents

AI FrameworksTypeScript
35.5k

vault

hashicorp/vault

Enterprise secrets management and privileged access management platform

Secrets ManagementGo
35.3k

Trilium

TriliumNext/Trilium

Self-hosted personal knowledge management system with note-taking features

Frameworks & LibrariesTypeScript
35.1k

LibreChat

danny-avila/LibreChat

Enhanced ChatGPT clone with multiple AI providers and agent capabilities

LLM ToolsTypeScript
34.8k

system_prompts_leaks

asgeirtj/system_prompts_leaks

Collection of extracted system prompts from popular AI chatbots for research

AI SecurityHTML
34.8k

croc

schollz/croc

Secure peer-to-peer file transfer tool with end-to-end encryption

CLI & TerminalGo
34.4k

server

nextcloud/server

Self-hosted cloud platform for file sharing and collaboration

Infrastructure & DevOpsPHP
34.4k

pnpm

pnpm/pnpm

Fast, disk-efficient package manager alternative to npm for Node.js development

Build ToolsTypeScript
34.4k

CyberChef

gchq/CyberChef

Swiss Army knife for data analysis, encryption, encoding - essential security tool

Reconnaissance & OSINTJavaScript
34.4k

filebrowser

filebrowser/filebrowser

Web-based file browser for server management and file operations

Infrastructure & DevOpsGo
34.0k

trivy

aquasecurity/trivy

Comprehensive vulnerability scanner for containers, Kubernetes, code, and clouds

Vulnerability ScanningGo
33.5k

CasaOS

IceWhaleTech/CasaOS

Self-hosted personal cloud OS with Docker containerization and home automation

Infrastructure & DevOpsGo
33.5k

awesome-sysadmin

awesome-foss/awesome-sysadmin

Curated collection of open-source system administration tools and resources

Knowledge Bases
33.3k

AdGuardHome

AdguardTeam/AdGuardHome

Network-wide DNS server blocking ads and trackers with privacy focus

Network DefenseGo
33.1k

k9s

derailed/k9s

Terminal-based Kubernetes cluster management tool with intuitive interface

CLI & TerminalGo
33.1k

web-check

Lissy93/web-check

All-in-one website analysis tool for OSINT investigations and reconnaissance

Reconnaissance & OSINTTypeScript
32.4k

nginx-proxy-manager

NginxProxyManager/nginx-proxy-manager

Docker container for managing Nginx proxy hosts with web interface

Infrastructure & DevOpsTypeScript
32.2k

posthog

PostHog/posthog

All-in-one developer platform with analytics, feature flags, and AI product assistant

Frameworks & LibrariesPython
32.2k

glances

nicolargo/glances

Cross-platform system monitoring tool with web API and terminal interface

Infrastructure & DevOpsPython
32.1k

sharp

lovell/sharp

High-performance Node.js image processing library using libvips

Frameworks & LibrariesJavaScript
32.0k

cockroach

cockroachdb/cockroach

Cloud-native distributed SQL database designed for high availability

DatabasesGo
32.0k

agents

wshobson/agents

Multi-agent orchestration framework for Claude Code with intelligent automation

AutomationPython
31.9k

dokku

dokku/dokku

Docker-powered PaaS for building and managing application lifecycles, Heroku alternative

Infrastructure & DevOpsShell
31.9k

minikube

kubernetes/minikube

Local Kubernetes development environment for testing and learning

Infrastructure & DevOpsGo
31.6k

CheatSheetSeries

OWASP/CheatSheetSeries

OWASP cheat sheets covering essential application security topics and best practices

Knowledge BasesPython
31.6k

paperclip

paperclipai/paperclip

Open-source orchestration platform for autonomous business operations

AutomationTypeScript
31.3k

podman

containers/podman

Daemonless container engine - secure Docker alternative for managing OCI containers

Infrastructure & DevOpsGo
31.1k

changedetection.io

dgtlmoon/changedetection.io

Website change detection and monitoring tool for content tracking and alerts

SIEM & MonitoringPython
30.7k

vscodium

VSCodium/vscodium

VS Code without Microsoft telemetry and licensing restrictions

Editors & IDEShell
30.6k

awesome-claude-code

hesreallyhim/awesome-claude-code

Curated list of Claude Code skills, hooks, and agent orchestration resources

Knowledge BasesPython
29.9k

helm

helm/helm

The standard package manager for Kubernetes - essential for application deployment

Infrastructure & DevOpsGo
29.6k

Jobs_Applier_AI_Agent_AIHawk

feder-cr/Jobs_Applier_AI_Agent_AIHawk

AI-powered job application automation agent using GPT and web scraping

AutomationPython
29.5k

ntfy

binwiederhier/ntfy

Self-hosted notification service for developers to send push notifications via HTTP

API ToolsGo
29.3k

github-mcp-server

github/github-mcp-server

GitHub's official Model Context Protocol server for AI integration

LLM ToolsGo
28.1k

harbor

goharbor/harbor

Enterprise container registry with security scanning and content signing

Container SecurityGo
27.8k

nuclei

projectdiscovery/nuclei

Fast YAML-based vulnerability scanner for apps, APIs, networks, and cloud

Vulnerability ScanningGo
27.6k

authelia

authelia/authelia

Multi-factor SSO portal with OpenID certification and passkey support

Endpoint SecurityGo
27.3k

ProxmoxVE

community-scripts/ProxmoxVE

Community scripts for Proxmox VE virtualization platform management

Infrastructure & DevOpsShell
27.2k

awesome-falsehood

kdeldycke/awesome-falsehood

Educational resource about programming pitfalls and common misconceptions

Knowledge Bases
27.2k

searxng

searxng/searxng

Privacy-focused metasearch engine aggregating results without tracking

Infrastructure & DevOpsPython
27.0k

pi-mono

badlogic/pi-mono

AI agent toolkit with coding CLI, unified LLM API, and web interfaces

Coding AgentsTypeScript
26.7k

Awesome-LLM

Hannibal046/Awesome-LLM

Comprehensive curated list of LLM resources, papers, and tools

LLM Tools
26.5k

AstrBot

AstrBotDevs/AstrBot

Multi-platform agentic chatbot infrastructure with LLM integration and plugins

AI FrameworksPython
26.4k

mkdocs-material

squidfunk/mkdocs-material

Material Design theme and framework for MkDocs documentation sites

Frameworks & LibrariesPython
26.3k

ungoogled-chromium

ungoogled-software/ungoogled-chromium

Privacy-focused Chromium browser with Google integrations and tracking removed

Endpoint SecurityPython
26.1k

hashcat

hashcat/hashcat

World's fastest GPU-accelerated password recovery utility

Password & Credential ToolsC
25.6k

awesome-pentest

enaqx/awesome-pentest

Comprehensive penetration testing tools and resources collection

Exploitation Frameworks
25.6k

gitleaks

gitleaks/gitleaks

Fast secrets detection tool with AI-powered analysis for Git repositories

Secrets ManagementGo
25.5k

awesome-osint

jivoi/awesome-osint

Comprehensive curated list of Open Source Intelligence (OSINT) tools and resources

Knowledge Bases
25.4k

ente

ente-io/ente

End-to-end encrypted cloud storage with zero-knowledge privacy protection

Endpoint SecurityDart
25.3k

trufflehog

trufflesecurity/trufflehog

Find, verify, and analyze leaked credentials in code repositories and files

Secrets ManagementGo
25.1k

wg-easy

wg-easy/wg-easy

Easy WireGuard VPN deployment with web-based admin interface

Infrastructure & DevOpsTypeScript
25.1k

nanoclaw

qwibitai/nanoclaw

Containerized AI assistant with multi-messenger support and memory

Coding AgentsTypeScript
24.8k

dashy

Lissy93/dashy

Self-hosted personal dashboard with monitoring widgets for homelab management

Infrastructure & DevOpsVue
24.3k

agent-browser

vercel-labs/agent-browser

Browser automation CLI specifically designed for AI agent workflows in Rust

AutomationRust
24.1k

cilium

cilium/cilium

eBPF-based container networking and security for Kubernetes environments

Network DefenseGo
24.0k

Scoop

ScoopInstaller/Scoop

Command-line package installer for Windows with bucket-based management

CLI & TerminalPowerShell
23.8k

netbird

netbirdio/netbird

Secure WireGuard-based mesh network with SSO and access controls

Network DefenseGo
23.7k

vibe-kanban

BloopAI/vibe-kanban

Kanban-style task manager for enhancing Claude Code and coding agents

Coding AgentsRust
23.6k

browser

lightpanda-io/browser

Headless browser specifically designed for AI automation and web scraping tasks

AutomationZig
23.4k

API-Security-Checklist

shieldfy/API-Security-Checklist

Essential security checklist for API design, testing, and deployment

Knowledge Bases
23.2k

slim

slimtoolkit/slim

Container image minification tool that reduces size by 30x while improving security

Container SecurityGo
23.1k

awesome-flipperzero

djsime1/awesome-flipperzero

Flipper Zero resources for hardware hacking and RF analysis

Reverse Engineering
23.0k

Roo-Code

RooCodeInc/Roo-Code

AI-powered development team integrated directly into code editors for assistance

Coding AgentsTypeScript
22.8k

dockge

louislam/dockge

Self-hosted Docker Compose stack manager with reactive web interface

Infrastructure & DevOpsTypeScript
22.5k

macOS-Security-and-Privacy-Guide

drduh/macOS-Security-and-Privacy-Guide

Comprehensive macOS security hardening and privacy configuration guide

Compliance & Hardening
22.5k

ruflo

ruvnet/ruflo

Agent orchestration platform for Claude with multi-agent swarms and RAG integration

AI FrameworksTypeScript
22.3k

UniGetUI

Devolutions/UniGetUI

Universal GUI for Windows package managers (winget, chocolatey, pip, scoop, npm)

CLI & TerminalC#
22.0k

SuperClaude_Framework

SuperClaude-Org/SuperClaude_Framework

Configuration framework enhancing Claude Code with specialized commands

AI FrameworksPython
21.8k

mdBook

rust-lang/mdBook

Generate technical books from markdown files, Rust-based Gitbook alternative

DocumentationRust
21.4k

sops

getsops/sops

Flexible secrets encryption tool supporting multiple cloud providers and PGP

Secrets ManagementGo
21.2k

renovate

renovatebot/renovate

Automated dependency updates across multiple platforms and package managers

Supply ChainTypeScript
21.1k

dns-blocklists

hagezi/dns-blocklists

Comprehensive DNS blocklists for malware, ads, and malicious domain filtering

Threat IntelligenceText
21.0k

fastfetch

fastfetch-cli/fastfetch

Fast system information tool, maintained alternative to neofetch with better performance

CLI & TerminalC
20.9k

CLI-Anything

HKUDS/CLI-Anything

Framework for making all software accessible to AI agents via CLI interfaces

AutomationPython
20.7k

awesome-readme

matiassingers/awesome-readme

Examples of excellent README documentation for projects

Documentation
20.6k

authentik

goauthentik/authentik

Identity provider with SAML, OAuth2, and OIDC support for authentication

Endpoint SecurityPython
20.6k

awesome-tunneling

anderspitman/awesome-tunneling

Curated list of tunneling and self-hosted networking alternatives to ngrok

Knowledge Bases
20.6k

containerd

containerd/containerd

Industry-standard container runtime powering Docker and Kubernetes

Infrastructure & DevOpsGo
20.5k

claude-code-best-practice

shanraisshan/claude-code-best-practice

Best practices and patterns for Claude AI coding and prompt engineering

Prompt EngineeringHTML
20.1k

teleport

gravitational/teleport

Zero-trust access platform for infrastructure with certificate-based auth

Endpoint SecurityGo
20.1k

netbox

netbox-community/netbox

Network automation and infrastructure management platform, essential for DevOps

Infrastructure & DevOpsPython
20.0k

Atlas

Atlas-OS/Atlas

Windows hardening and privacy modification toolkit for secure configurations

Compliance & HardeningBatchfile
20.0k

PEASS-ng

peass-ng/PEASS-ng

Privilege escalation enumeration scripts suite for Linux and Windows with colors

Reconnaissance & OSINTC#
19.5k

RustScan

bee-san/RustScan

High-speed Rust port scanner with modern features and Docker support

Reconnaissance & OSINTRust
19.5k

ingress-nginx

kubernetes/ingress-nginx

Official NGINX ingress controller for Kubernetes - handles external traffic routing

Infrastructure & DevOpsGo
19.5k

maigret

soxoj/maigret

Username enumeration across thousands of sites for OSINT investigations

Reconnaissance & OSINTPython
19.2k

hurl

Orange-OpenSource/hurl

Plain text HTTP testing tool for API testing and integration testing

API ToolsRust
18.7k

GitNexus

abhigyanpatwari/GitNexus

Client-side code intelligence engine creating knowledge graphs with RAG agent

Coding AgentsTypeScript
18.6k

catppuccin

catppuccin/catppuccin

Meta repository for popular pastel theme across multiple development tools

Editors & IDETypeScript
18.6k

GHunt

mxrch/GHunt

Offensive Google OSINT framework for gathering intelligence from Google services

Reconnaissance & OSINTPython
18.6k

Handy

cjpais/Handy

Open source offline speech-to-text application with accessibility features

CLI & TerminalRust
18.3k

awesome-privacy

pluja/awesome-privacy

Curated list of privacy-respecting services and alternatives

Knowledge Bases
18.3k

promptfoo

promptfoo/promptfoo

Comprehensive testing and red teaming framework for AI prompts and agents

AI SecurityTypeScript
18.1k

docker-mailserver

docker-mailserver/docker-mailserver

Production-ready containerized mail server with antispam and antivirus

Infrastructure & DevOpsShell
18.0k

L1B3RT4S

elder-plinius/L1B3RT4S

AI jailbreak prompts for red teaming and adversarial testing of AI systems

AI Security
18.0k

linkwarden

linkwarden/linkwarden

Self-hosted collaborative bookmark manager with annotation capabilities

Frameworks & LibrariesTypeScript
17.6k

OpenViking

volcengine/OpenViking

Context database for AI agents with hierarchical memory and skill management

AI FrameworksPython
17.6k

awesome-zsh-plugins

unixorn/awesome-zsh-plugins

ZSH plugins and themes for enhanced terminal productivity

CLI & TerminalShell
17.5k

nebula

slackhq/nebula

High-performance overlay networking tool for secure mesh networking

Network DefenseGo
17.2k

hydra

ory/hydra

Enterprise OAuth2/OIDC provider for identity management and secure authentication

Endpoint SecurityGo
17.0k

open-gpu-kernel-modules

NVIDIA/open-gpu-kernel-modules

Open source NVIDIA GPU kernel modules for Linux development environments

Infrastructure & DevOpsC
16.8k

Flipper

UberGuidoZ/Flipper

Custom modifications and tools for Flipper Zero hardware hacking device

Reverse EngineeringC
16.8k

codon

exaloop/codon

High-performance Python compiler with zero-overhead and GPU support

Frameworks & LibrariesPython
16.7k

ZeroTierOne

zerotier/ZeroTierOne

Decentralized VPN creating secure virtual networks with peer-to-peer architecture

Network DefenseC++
16.6k

heretic

p-e-w/heretic

Automatic censorship removal tool for language models using abliteration techniques

AI SecurityPython
16.4k

nomad

hashicorp/nomad

Flexible workload orchestrator for deploying diverse application types at scale

Infrastructure & DevOpsGo
16.3k

katana

projectdiscovery/katana

Next-gen web crawling and spidering framework for reconnaissance and asset discovery

Reconnaissance & OSINTGo
16.2k

Seelen-UI

eythaann/Seelen-UI

Customizable Windows desktop environment with tiling window manager and modern UI

CLI & TerminalRust
16.2k

Signal-Desktop

signalapp/Signal-Desktop

Cross-platform encrypted messaging client for secure desktop communications

Endpoint SecurityTypeScript
16.1k

awesome-hacking

carpedm20/awesome-hacking

General hacking tutorials, tools and educational security resources

Knowledge Bases
15.9k

flipperzero-firmware

flipperdevices/flipperzero-firmware

Flipper Zero firmware for multi-tool hardware hacking and RF analysis

Reverse EngineeringC
15.7k

packer

hashicorp/packer

Multi-platform machine image builder for consistent deployment environments

Build ToolsGo
15.6k

answer

apache/answer

Open-source Q&A platform for building community forums and knowledge bases

Frameworks & LibrariesGo
15.4k

awx

ansible/awx

Web UI and REST API for Ansible automation platform management

Infrastructure & DevOpsPython
15.3k

kind

kubernetes-sigs/kind

Local Kubernetes clusters in Docker for testing and development workflows

Infrastructure & DevOpsGo
15.1k

wazuh

wazuh/wazuh

Open source unified XDR and SIEM platform for endpoint and cloud protection

SIEM & MonitoringC++
15.0k

NemoClaw

NVIDIA/NemoClaw

Secure OpenClaw execution within NVIDIA OpenShell runtime with managed inference

AI SecurityJavaScript
15.0k

faker

faker-js/faker

JavaScript library for generating realistic fake data for testing and development

Frameworks & LibrariesTypeScript
15.0k

zaproxy

zaproxy/zaproxy

OWASP ZAP core project - comprehensive web application security scanner

Web App TestingJava
14.9k

cryptomator

cryptomator/cryptomator

Client-side encryption tool for securing cloud storage files

Endpoint SecurityJava
14.8k

logstash

elastic/logstash

Data processing pipeline for logs, events, and real-time streaming ETL operations

Infrastructure & DevOpsJava
14.8k

social-engineer-toolkit

trustedsec/social-engineer-toolkit

Comprehensive social engineering toolkit for security testing and red team operations

Social EngineeringPython
14.7k

amass

owasp-amass/amass

Comprehensive attack surface mapping and asset discovery platform by OWASP

Reconnaissance & OSINTGo
14.3k

awesome-microservices

mfornos/awesome-microservices

Microservices architecture principles and technologies collection

Frameworks & Libraries
14.2k

awesome-security

sbilly/awesome-security

Comprehensive collection of security tools, resources, and documentation

Knowledge Bases
14.1k

coredns

coredns/coredns

Modular DNS server with plugin architecture for service discovery and resolution

Infrastructure & DevOpsGo
14.0k

CL4R1T4S

elder-plinius/CL4R1T4S

Leaked system prompts from major AI systems for transparency and security research

AI Security
13.9k

agentskills

agentskills/agentskills

Specification and documentation framework for standardizing AI agent skills

AI FrameworksPython
13.8k

systeminformer

winsiderss/systeminformer

Advanced system monitor and debugging tool for Windows security analysis

Endpoint SecurityC
13.8k

cert-manager

cert-manager/cert-manager

Automated TLS certificate provisioning and management for Kubernetes clusters

Infrastructure & DevOpsGo
13.7k

gitpod

gitpod-io/gitpod

Cloud-based development environments for faster and more secure coding

Editors & IDETypeScript
13.6k

awesome-malware-analysis

rshipp/awesome-malware-analysis

Malware analysis tools, frameworks and threat intelligence resources

Knowledge Bases
13.5k

gobuster

OJ/gobuster

Fast directory/file, DNS and VHost enumeration tool for discovering hidden resources

Reconnaissance & OSINTGo
13.5k

gluetun

qdm12/gluetun

Multi-provider VPN client container with DNS-over-TLS and proxy support

Network DefenseGo
13.5k

rook

rook/rook

Storage orchestration operator for Kubernetes - manages Ceph and other storage systems

Infrastructure & DevOpsGo
13.4k

prowler

prowler-cloud/prowler

Multi-cloud security platform for automated compliance and security auditing

Cloud SecurityPython
13.4k

Reverse-Engineering

mytechnotalent/Reverse-Engineering

Comprehensive reverse engineering tutorial covering multiple architectures

Training PlatformsAssembly
13.4k

semaphore

semaphoreui/semaphore

Modern UI and API for Ansible, Terraform, and other DevOps tools

Infrastructure & DevOpsGo
13.4k

pwntools

Gallopsled/pwntools

Popular CTF framework and exploit development library with extensive tooling

CTF & PracticePython
13.3k

subfinder

projectdiscovery/subfinder

Fast passive subdomain enumeration for reconnaissance and bug bounties

Reconnaissance & OSINTGo
13.3k

node_exporter

prometheus/node_exporter

System metrics exporter for Prometheus monitoring - essential for infrastructure visibility

SIEM & MonitoringGo
13.3k

awesome-web-security

qazbnm456/awesome-web-security

Curated web security materials and penetration testing resources

Knowledge Bases
13.2k

FlareSolverr

FlareSolverr/FlareSolverr

Proxy server to bypass Cloudflare protection for testing purposes

Web App TestingPython
13.2k

dnscrypt-proxy

DNSCrypt/dnscrypt-proxy

Encrypted DNS proxy supporting DoH, DNSCrypt for secure DNS resolution

Network DefenseGo
13.1k

page-agent

alibaba/page-agent

JavaScript in-page GUI agent for controlling web interfaces with natural language

AutomationTypeScript
13.1k

Badges4-README.md-Profile

alexandresanlim/Badges4-README.md-Profile

Badge collection for improving GitHub profile documentation

DocumentationMarkdown
13.0k

john

openwall/john

Advanced offline password cracker supporting hundreds of hash types

Password & Credential ToolsC
12.9k

crowdsec

crowdsecurity/crowdsec

Crowdsourced threat detection with shared CTI and malicious IP blocking

Threat IntelligenceGo
12.8k

GTFOBins.github.io

GTFOBins/GTFOBins.github.io

Curated list of Unix binaries for bypassing security restrictions and privilege escalation

Knowledge BasesYAML
12.8k

juice-shop

juice-shop/juice-shop

OWASP Juice Shop - intentionally insecure web app for security training and CTFs

CTF & PracticeTypeScript
12.7k

aws-cdk

aws/aws-cdk

AWS CDK framework for defining cloud infrastructure as code in TypeScript

IaC SecurityTypeScript
12.7k

nitter

zedeus/nitter

Privacy-focused Twitter frontend alternative

Infrastructure & DevOpsNim
12.6k

nmap

nmap/nmap

Essential network discovery and port scanning tool for reconnaissance activities

Reconnaissance & OSINTC
12.6k

Osintgram

Datalux/Osintgram

Instagram OSINT tool with interactive shell for account analysis

Reconnaissance & OSINTPython
12.5k

distrobox

89luca89/distrobox

Run any Linux distro in containers for development flexibility

CLI & TerminalShell
12.2k

PentestGPT

GreyDGL/PentestGPT

LLM-powered automated penetration testing framework for security assessments

AI SecurityPython
12.2k

portmaster

safing/portmaster

Application firewall and privacy protection tool for blocking network surveillance

Network DefenseGo
12.1k

dozzle

amir20/dozzle

Real-time Docker/K8s log viewer with web UI for container monitoring and debugging

Infrastructure & DevOpsGo
12.1k

nuclei-templates

projectdiscovery/nuclei-templates

Community-curated vulnerability templates for Nuclei scanner

Vulnerability ScanningJavaScript
12.1k

vuls

future-architect/vuls

Agent-less vulnerability scanner for Linux, containers, and network devices

Vulnerability ScanningGo
12.1k

impeccable

pbakaus/impeccable

Design language framework for improving AI design capabilities and outputs

Prompt EngineeringJavaScript
12.0k

Signal-iOS

signalapp/Signal-iOS

Open-source encrypted messenger for iOS providing secure communications

Endpoint SecuritySwift
11.9k

shell_gpt

TheR1D/shell_gpt

Command-line productivity tool powered by GPT and other LLMs for task automation

LLM ToolsPython
11.9k

grype

anchore/grype

Vulnerability scanner for container images and filesystems with SBOM support

Container SecurityGo
11.8k

thc-hydra

vanhauser-thc/thc-hydra

Fast network password cracker supporting many protocols and services

Password & Credential ToolsC
11.7k

atomic-red-team

redcanaryco/atomic-red-team

Portable detection tests based on MITRE ATT&CK framework for threat detection

SIEM & MonitoringC
11.7k

examples

serverless/examples

Collection of serverless architecture examples and boilerplates

Frameworks & LibrariesJavaScript
11.5k

netboot.xyz

netbootxyz/netboot.xyz

Network-based OS installer and provisioning tool using iPXE

Infrastructure & DevOpsJinja
11.5k

netmaker

gravitl/netmaker

WireGuard-based mesh networking platform for secure distributed virtual networks

Cloud SecurityGo
11.5k

whoogle-search

benbusby/whoogle-search

Self-hosted ad-free privacy-respecting search engine alternative

Infrastructure & DevOpsPython
11.4k

linkerd2

linkerd/linkerd2

Lightweight service mesh providing security and observability for Kubernetes

Infrastructure & DevOpsGo
11.3k

kubescape

kubescape/kubescape

Kubernetes security platform with risk analysis, compliance, and misconfiguration scanning

Container SecurityGo
11.3k

hacktricks

HackTricks-wiki/hacktricks

Comprehensive wiki of hacking techniques, CTF tricks, and pentesting knowledge

Knowledge BasesCSS
11.1k

docker-pi-hole

pi-hole/docker-pi-hole

Official Pi-hole Docker image for DNS-based ad blocking

Network DefenseShell
10.9k

sliver

BishopFox/sliver

Modern C2 framework for adversary emulation and red team operations

Red TeamGo
10.9k

umbrel

getumbrel/umbrel

Self-hosted home server OS with 300+ apps including Bitcoin and cloud storage

Infrastructure & DevOpsTypeScript
10.8k

terraform-provider-aws

hashicorp/terraform-provider-aws

Official AWS provider for Terraform infrastructure as code deployments

Infrastructure & DevOpsGo
10.8k

beef

beefproject/beef

Browser exploitation framework for testing web application security vulnerabilities

Exploitation FrameworksJavaScript
10.8k

mRemoteNG

mRemoteNG/mRemoteNG

Multi-protocol remote connection manager for SSH, RDP, and other protocols

Infrastructure & DevOpsC#
10.7k

skopeo

containers/skopeo

Utility for working with container registries - inspect, copy, and sign images

Infrastructure & DevOpsGo
10.6k

Signal-Server

signalapp/Signal-Server

Backend server implementation for Signal encrypted messaging platform

Infrastructure & DevOpsJava
10.4k

awesome-hacker-search-engines

edoardottt/awesome-hacker-search-engines

Search engines for penetration testing and OSINT operations

Reconnaissance & OSINTShell
10.3k

linkding

sissbruecker/linkding

Self-hosted bookmark manager for developers and researchers

Infrastructure & DevOpsPython
10.3k

Personal_AI_Infrastructure

danielmiessler/Personal_AI_Infrastructure

Agentic AI infrastructure platform for augmenting human productivity and capabilities

AI FrameworksTypeScript
10.3k

sigma

SigmaHQ/sigma

Main repository for Sigma detection rules for SIEM and security monitoring

SIEM & MonitoringPython
10.2k

Betterfox

yokoffing/Betterfox

Optimized Firefox configuration for enhanced privacy, security, and performance

Endpoint SecurityJavaScript
10.2k

nikto

sullo/nikto

Classic web server scanner for identifying vulnerabilities and misconfigurations

Vulnerability ScanningPerl
10.2k

Red-Teaming-Toolkit

infosecn1nja/Red-Teaming-Toolkit

Curated collection of open-source security tools for red teamers

Red Team
10.2k

bunkerweb

bunkerity/bunkerweb

Next-generation open-source Web Application Firewall with container support

WAF & FirewallsPython
10.2k

obsidian-git

Vinzent03/obsidian-git

Git integration plugin for Obsidian with auto-commit and sync features

Build ToolsTypeScript
10.1k

awesome-threat-intelligence

hslatman/awesome-threat-intelligence

Curated collection of threat intelligence resources and tools

Knowledge Bases
10.0k

healthchecks

healthchecks/healthchecks

Open-source cron job and background task monitoring service

SIEM & MonitoringPython
9.9k

jekyll-theme-chirpy

cotes2020/jekyll-theme-chirpy

Responsive Jekyll theme optimized for technical writing and documentation

DocumentationHTML
9.9k

buildkit

moby/buildkit

Advanced Docker builder toolkit with caching and concurrent build capabilities

Infrastructure & DevOpsGo
9.8k

httpx

projectdiscovery/httpx

Multi-purpose HTTP toolkit for probing and SSL certificate analysis

Reconnaissance & OSINTGo
9.7k

awesome-bash

awesome-lists/awesome-bash

Bash scripts and resources for shell scripting and automation

CLI & TerminalShell
9.6k

Sn1per

1N3/Sn1per

Comprehensive attack surface management platform with OSINT and pentesting tools

Reconnaissance & OSINTShell
9.6k

docker-bench-security

docker/docker-bench-security

Security benchmark script checking Docker container deployment best practices

Container SecurityShell
9.6k

bbot

blacklanternsecurity/bbot

Recursive internet scanner for attack surface management and reconnaissance

Reconnaissance & OSINTPython
9.5k

devops-resources

bregman-arie/devops-resources

Comprehensive DevOps resources covering cloud, containers, and security

Knowledge BasesGroovy
9.5k

terragrunt

gruntwork-io/terragrunt

Orchestration tool for scaling Terraform/OpenTofu infrastructure as code

Infrastructure & DevOpsGo
9.4k

VeraCrypt

veracrypt/VeraCrypt

Open-source disk encryption tool for securing data at rest with strong crypto algorithms

Endpoint SecurityC
9.4k

ctf-tools

zardus/ctf-tools

Setup scripts for security research and CTF tools collection

CTF & PracticeShell
9.3k

mitmproxy2swagger

alufers/mitmproxy2swagger

Automatically generates API docs from captured HTTP traffic using mitmproxy

Reverse EngineeringHTML
9.3k

awesome-privacy

Lissy93/awesome-privacy

Comprehensive curated list of privacy and security-focused tools and services

Knowledge BasesAstro
9.1k

wireshark

wireshark/wireshark

Industry standard network packet analyzer for traffic monitoring and analysis

Network DefenseC
9.1k

wstg

OWASP/wstg

OWASP's comprehensive guide to testing web application and service security

Knowledge Bases
9.0k

v2

miniflux/v2

Minimalist self-hosted RSS feed reader with PostgreSQL backend

Infrastructure & DevOpsGo
8.9k

awesome-incident-response

meirwah/awesome-incident-response

Incident response tools and DFIR resources for security operations teams

Knowledge Bases
8.9k

tpotce

telekom-security/tpotce

All-in-one multi honeypot platform for deception and threat detection

Threat IntelligenceC
8.9k

external-dns

kubernetes-sigs/external-dns

Kubernetes controller for automatically managing DNS records from ingress resources

Infrastructure & DevOpsGo
8.9k

autoscaler

kubernetes/autoscaler

Kubernetes autoscaling components for dynamic resource management

Infrastructure & DevOpsGo
8.8k

falco

falcosecurity/falco

Cloud-native runtime security monitoring with eBPF and container support

Endpoint SecurityC++
8.8k

gosec

securego/gosec

Static analysis security scanner specifically designed for Go applications

SAST / DAST / SCAGo
8.7k

star-history

star-history/star-history

Visualize GitHub star growth history — great for evaluating project momentum

API ToolsTypeScript
8.7k

Virtual-Display-Driver

VirtualDrivers/Virtual-Display-Driver

Virtual display driver for Windows - useful for VR, streaming, and remote desktop setups

Infrastructure & DevOpsC++
8.7k

git-credential-manager

git-ecosystem/git-credential-manager

Cross-platform Git credential manager with secure auth for major Git services

Secrets ManagementC#
8.7k

buildah

containers/buildah

Tool for building OCI container images without Docker daemon - rootless builds

Infrastructure & DevOpsGo
8.7k

trape

jofpin/trape

Internet people tracker combining OSINT analysis with social engineering

Social EngineeringPython
8.6k

osv-scanner

google/osv-scanner

OSV.dev vulnerability scanner for finding security issues in dependencies

SAST / DAST / SCAGo
8.6k

checkov

bridgecrewio/checkov

Multi-cloud misconfiguration scanner for IaC, containers, and packages

IaC SecurityPython
8.5k

anteon

getanteon/anteon

eBPF-based Kubernetes monitoring and performance testing platform

Infrastructure & DevOpsGo
8.5k

syft

anchore/syft

Generate Software Bill of Materials (SBOM) from container images and filesystems

SAST / DAST / SCAGo
8.5k

alertmanager

prometheus/alertmanager

Alert management for Prometheus - handles deduplication and routing to notification channels

SIEM & MonitoringGo
8.4k

GRDB.swift

groue/GRDB.swift

Swift SQLite toolkit with focus on application development and database observation

DatabasesSwift
8.3k

GhostTrack

HunxByts/GhostTrack

Mobile number and location tracking tool for OSINT gathering

Reconnaissance & OSINTPython
8.2k

simplewall

henrypp/simplewall

Simple Windows firewall configuration tool for network activity control

WAF & FirewallsC
8.2k

imaginAIry

brycedrennan/imaginAIry

Pythonic AI tool for generating images and videos with AI models

LLM ToolsPython
8.1k

NETworkManager

BornToBeRoot/NETworkManager

Network management GUI tool with port scanning, monitoring, and troubleshooting

Infrastructure & DevOpsC#
8.1k

PrivateBin

PrivateBin/PrivateBin

Zero-knowledge encrypted pastebin for secure data sharing with client-side encryption

Endpoint SecurityPHP
8.1k

kube-bench

aquasecurity/kube-bench

CIS Kubernetes benchmark compliance checker for security best practices

Container SecurityGo
8.0k

flux2

fluxcd/flux2

GitOps continuous delivery platform for Kubernetes with Helm and Kustomize support

Infrastructure & DevOpsGo
8.0k

MONAI

Project-MONAI/MONAI

Healthcare imaging AI toolkit from Project MONAI for medical image processing

AI FrameworksPython
8.0k

bandit

PyCQA/bandit

Static analysis tool for finding common security issues in Python code

SAST / DAST / SCAPython
7.9k

hackrf

greatscottgadgets/hackrf

Software-defined radio platform for RF security research and wireless testing

Network AttacksC
7.8k

steampipe

turbot/steampipe

SQL-based cloud security posture management and compliance tool

Cloud SecurityGo
7.7k

tubearchivist

tubearchivist/tubearchivist

Self-hosted YouTube media server for content archiving and management

Infrastructure & DevOpsPython
7.7k

osint_stuff_tool_collection

cipher387/osint_stuff_tool_collection

Curated collection of hundreds of online OSINT tools

Reconnaissance & OSINTHTML
7.7k

kata-containers

kata-containers/kata-containers

Lightweight VMs that provide container-like performance with VM security isolation

Container SecurityRust
7.6k

ntopng

ntop/ntopng

Web-based network traffic monitoring and analysis with real-time visibility

Network DefenseLua
7.6k

feroxbuster

epi052/feroxbuster

Fast Rust-based recursive web content discovery and URL bruteforcer

Web App TestingRust
7.6k

PoC-in-GitHub

nomi-sec/PoC-in-GitHub

Automated collection of proof-of-concept exploits and CVE research from GitHub

Exploitation Frameworks
7.6k

Wallos

ellite/Wallos

Self-hosted subscription tracking and budget management application

Frameworks & LibrariesPHP
7.6k

ScoutSuite

nccgroup/ScoutSuite

Multi-cloud security auditing tool for AWS, Azure, and GCP environments

Cloud SecurityPython
7.6k

kyverno

kyverno/kyverno

Policy-as-code engine for Kubernetes security and compliance management

IaC SecurityGo
7.5k

cai

aliasrobotics/cai

AI Security framework for cybersecurity applications and LLM pentesting

AI SecurityPython
7.5k

DependencyCheck

dependency-check/DependencyCheck

OWASP dependency checker for finding vulnerabilities in application dependencies

SAST / DAST / SCAJava
7.5k

awesome-home-assistant

frenck/awesome-home-assistant

Curated Home Assistant resources for IoT and smart home development

Knowledge BasesShell
7.5k

podman-desktop

podman-desktop/podman-desktop

Desktop GUI for managing containers and Kubernetes - developer-friendly Docker alternative

Infrastructure & DevOpsTypeScript
7.4k

AutoResearchClaw

aiming-lab/AutoResearchClaw

Autonomous research agent generating complete papers from ideas with self-evolution

AutomationPython
7.4k

windhawk

ramensoftware/windhawk

Windows program customization marketplace and modding platform

CLI & TerminalC++
7.4k

reconftw

six2dez/reconftw

Automated reconnaissance tool that runs multiple security scanners on target domains

Reconnaissance & OSINTShell
7.4k

Winhance

memstechtips/Winhance

Windows system optimization and debloat tool for improving performance and privacy

CLI & TerminalC#
7.1k

calico

projectcalico/calico

Cloud-native networking and network security solution with identity-aware policies

Network DefenseGo
7.1k

homarr

ajnart/homarr

Customizable homeserver dashboard for managing Docker containers and services

Infrastructure & DevOpsTypeScript
7.1k

aircrack-ng

aircrack-ng/aircrack-ng

Complete WiFi security auditing suite for wireless network penetration testing

Network AttacksC
7.1k

tfsec

aquasecurity/tfsec

Terraform security scanner now integrated into Trivy for IaC analysis

IaC SecurityGo
7.0k

mac-dev-playbook

geerlingguy/mac-dev-playbook

Ansible playbook for automated Mac developer environment setup

Infrastructure & DevOpsShell
6.9k

al-khaser

ayoubfaouzi/al-khaser

Collection of anti-analysis techniques used by malware in the wild

Malware AnalysisC++
6.9k

awesome-appsec

paragonie/awesome-appsec

Curated collection of application security learning resources and references

Knowledge BasesPHP
6.9k

RsaCtfTool

RsaCtfTool/RsaCtfTool

RSA attack tool for CTF challenges and cryptographic exploitation

Exploitation FrameworksPython
6.8k

caldera

mitre/caldera

MITRE's automated adversary emulation platform for red team operations

Red TeamPython
6.8k

awesome-web-hacking

infoslack/awesome-web-hacking

Curated list of web application security resources and hacking tools

Knowledge Bases
6.8k

DevSecOps

sottlmarek/DevSecOps

Ultimate DevSecOps resource library and tool collection

Knowledge Bases
6.7k

spicedb

authzed/spicedb

Zanzibar-inspired authorization database for fine-grained access control

Endpoint SecurityGo
6.5k

app

simple-login/app

Privacy-focused email aliasing service to protect email addresses

Endpoint SecurityPython
6.5k

lolcat

busyloop/lolcat

Ruby CLI tool that adds rainbow colors to terminal output - fun terminal utility

CLI & TerminalRuby
6.5k

external-secrets

external-secrets/external-secrets

Kubernetes operator that syncs secrets from external providers like AWS Secrets Manager

Secrets ManagementGo
6.5k

WhatWeb

urbanadventurer/WhatWeb

Web application fingerprinting scanner for identifying technologies and versions

Web App TestingRuby
6.5k

linux-exploit-suggester

The-Z-Labs/linux-exploit-suggester

Linux privilege escalation auditing tool that suggests applicable kernel exploits

Exploitation FrameworksShell
6.4k

Responder

lgandx/Responder

LLMNR/NBT-NS poisoner with rogue authentication server for credential harvesting

Network AttacksPython
6.4k

cloudquery

cloudquery/cloudquery

Cloud asset inventory and CSPM data pipeline for security posture

Cloud SecurityGo
6.3k

awesome-tf

shuaibiyy/awesome-tf

Terraform and OpenTofu resources for infrastructure as code

IaC Security
6.3k

k3d

k3d-io/k3d

Helper tool to run k3s Kubernetes clusters in Docker containers

Infrastructure & DevOpsGo
6.3k

faraday

infobyte/faraday

Open source vulnerability management platform with tool integration and reporting

SAST / DAST / SCAPython
6.3k

Big-Ass-Data-Broker-Opt-Out-List

yaelwrites/Big-Ass-Data-Broker-Opt-Out-List

Comprehensive list for opting out of data broker services to protect privacy

Compliance & Hardening
6.3k

Prowlarr

Prowlarr/Prowlarr

Indexer manager/proxy for torrent trackers and Usenet integration

Infrastructure & DevOpsC#
6.3k

x11docker

mviereck/x11docker

Security-focused tool to run GUI applications in isolated Docker containers

Container SecurityShell
6.2k

awesome-security-hardening

decalage2/awesome-security-hardening

Curated collection of security hardening guides and best practices

Compliance & Hardening
6.2k

MISP

MISP/MISP

Open source threat intelligence platform for sharing IOCs and malware analysis

Threat IntelligencePHP
6.2k

thelounge

thelounge/thelounge

Modern self-hosted web IRC client for team communication

Frameworks & LibrariesTypeScript
6.2k

osmedeus

j3ssie/osmedeus

Modern orchestration engine combining AI workflows for security testing

Reconnaissance & OSINTGo
6.2k

Arjun

s0md3v/Arjun

HTTP parameter discovery suite for API fuzzing and web application testing

Web App TestingPython
6.2k

kubernetes-network-policy-recipes

ahmetb/kubernetes-network-policy-recipes

Ready-to-use Kubernetes Network Policy examples for microsegmentation

Container Security
6.1k

actions-runner-controller

actions/actions-runner-controller

Kubernetes controller for managing GitHub Actions self-hosted runners at scale

CI/CD SecurityGo
6.1k

playwright-cli

microsoft/playwright-cli

Microsoft's CLI for Playwright browser automation, code generation and debugging

CLI & TerminalTypeScript
6.0k

xxh

xxh/xxh

Portable shell environment over SSH with support for multiple shell types

CLI & TerminalPython
5.9k

openvscode-server

gitpod-io/openvscode-server

Remote VS Code server accessible through web browser from any device

Editors & IDETypeScript
5.9k

blackbird

p1ngul1n0/blackbird

Social media account discovery by username and email

Reconnaissance & OSINTPython
5.9k

awesome-bugbounty-tools

vavkamil/awesome-bugbounty-tools

Bug bounty tools collection for web security testing

Web App Testing
5.9k

permify

Permify/permify

Google Zanzibar-inspired authorization service for fine-grained permissions

Endpoint SecurityGo
5.8k

cupp

Mebus/cupp

Generates custom wordlists based on user profiling for password attacks

Password & Credential ToolsPython
5.8k

naabu

projectdiscovery/naabu

Fast Go-based port scanner for attack surface discovery in pentests

Reconnaissance & OSINTGo
5.8k

k0s

k0sproject/k0s

Zero friction Kubernetes distribution for simplified cluster deployment

Infrastructure & DevOpsGo
5.8k

Cosmos-Server

azukaar/Cosmos-Server

Secure self-hosted server platform with built-in authentication and DDoS protection

Infrastructure & DevOpsJavaScript
5.8k

mosint

alpkeskin/mosint

Automated email OSINT tool with data breach hunting capabilities

Reconnaissance & OSINTGo
5.8k

DesktopCommanderMCP

wonderwhy-er/DesktopCommanderMCP

MCP server giving Claude terminal control and file system capabilities

Coding AgentsTypeScript
5.7k

cosign

sigstore/cosign

Keyless code signing and verification for containers and software artifacts

Supply ChainGo
5.7k

Organizr

causefx/Organizr

Homelab services dashboard organizer with service management interface

Infrastructure & DevOpsPHP
5.7k

commix

commixproject/commix

Automated OS command injection detection and exploitation tool

Web App TestingPython
5.7k

webmin

webmin/webmin

Web-based server management control panel for system administration

Infrastructure & DevOpsHTML
5.7k

guide

hobby-kube/guide

Cost-effective Kubernetes cluster setup guide for hobbyists and small-scale

Infrastructure & DevOps
5.7k

can-i-take-over-xyz

EdOverflow/can-i-take-over-xyz

Comprehensive list of services vulnerable to subdomain takeover attacks

Reconnaissance & OSINTPython
5.6k

kubernetes-goat

madhuakula/kubernetes-goat

Vulnerable by design Kubernetes cluster for hands-on security training

CTF & PracticeHTML
5.4k

Top10

OWASP/Top10

Official OWASP Top 10 security risks documentation for web applications

Knowledge BasesHTML
5.4k

cinnamon

linuxmint/cinnamon

Linux desktop environment with traditional layout and modern features

Infrastructure & DevOpsJavaScript
5.4k

dangerzone

freedomofpress/dangerzone

Converts potentially dangerous documents to safe PDFs for malware mitigation

Malware AnalysisPython
5.3k

ansible-collection-hardening

dev-sec/ansible-collection-hardening

Ansible collection for hardening Linux, SSH, nginx, and MySQL systems

Compliance & HardeningJinja
5.3k

awesome-uses

wesbos/awesome-uses

Curated list of developer setups and configurations for workspace optimization

Knowledge BasesJavaScript
5.2k

awesome-cybersecurity-blueteam

fabacab/awesome-cybersecurity-blueteam

Comprehensive blue team cybersecurity resources and defensive security tools

Knowledge Bases
5.2k

libreddit

libreddit/libreddit

Privacy-focused Reddit frontend for secure browsing

Infrastructure & DevOpsRust
5.2k

raspap-webgui

RaspAP/raspap-webgui

Full-featured wireless router web interface for Raspberry Pi and Debian devices

Infrastructure & DevOpsPHP
5.2k

Empire

BC-SECURITY/Empire

Post-exploitation PowerShell framework for red team and penetration testing

Red TeamPowerShell
5.1k

microsandbox

zerocore-ai/microsandbox

Secure local-first sandboxes for AI agents with cross-platform support

AI SecurityRust
5.0k

kube-hunter

aquasecurity/kube-hunter

Kubernetes cluster security weakness scanner and penetration testing tool

Vulnerability ScanningPython
5.0k

hakrawler

hakluke/hakrawler

Fast web crawler for discovering endpoints and assets in web applications

Reconnaissance & OSINTGo
5.0k

mimir

grafana/mimir

Scalable long-term storage backend for Prometheus metrics and observability data

Infrastructure & DevOpsGo
5.0k

mayhem-firmware

portapack-mayhem/mayhem-firmware

Portable SDR firmware for HackRF enabling mobile RF testing and analysis

Network AttacksC
5.0k

h8mail

khast3x/h8mail

Email breach hunting with premium service integration support

Reconnaissance & OSINTPython
4.9k

dalfox

hahwul/dalfox

Powerful automated XSS scanner with CI/CD integration for security testing

Web App TestingGo
4.9k

shlink

shlinkio/shlink

Self-hosted URL shortener with REST API for link management

API ToolsPHP
4.8k

pouch

AliyunContainerService/pouch

Enterprise container engine focused on efficiency, isolation, and security

Container SecurityGo
4.7k

CDK

cdk-team/CDK

Kubernetes, Docker, and Containerd security testing toolkit with container escapes

Container SecurityGo
4.6k

WebHackersWeapons

hahwul/WebHackersWeapons

Curated collection of web hacking tools and resources for bug bounty

Knowledge BasesRuby
4.5k

awesome-threat-detection

0x4D31/awesome-threat-detection

Curated list of threat detection and hunting resources for security analysts

Knowledge Bases
4.5k

robin

apurvsinghgautam/robin

AI-powered dark web investigation and OSINT tool

Reconnaissance & OSINTPython
4.5k

IntelOwl

intelowlproject/IntelOwl

Scalable threat intelligence platform for IOC enrichment and malware analysis

Threat IntelligencePython
4.5k

diun

crazy-max/diun

Docker registry monitoring tool for automated update notifications

Infrastructure & DevOpsGo
4.5k

JimsGarage

JamesTurland/JimsGarage

Collection of homelab configuration files and scripts for self-hosting enthusiasts

Infrastructure & DevOpsShell
4.5k

kvm

jetkvm/kvm

Remote KVM solution for controlling computers over network connections

Infrastructure & DevOpsC
4.5k

awesome-termux-hacking

may215/awesome-termux-hacking

Curated list of Termux-based hacking and OSINT tools

Knowledge Bases
4.4k

notion-py

jamalex/notion-py

Python API client for Notion workspace automation and integration

API ToolsPython
4.4k

Mythic

its-a-feature/Mythic

Multi-platform collaborative red teaming framework for advanced operations

Red TeamJavaScript
4.4k

caddy-docker-proxy

lucaslorentz/caddy-docker-proxy

Caddy web server configured as reverse proxy for Docker containers

Infrastructure & DevOpsGo
4.3k

awesome-newsletters

zudochkin/awesome-newsletters

Tech newsletters for staying updated on industry developments

Knowledge Bases
4.3k

LinkFinder

GerbenJavado/LinkFinder

JavaScript endpoint discovery tool for web application reconnaissance

Reconnaissance & OSINTPython
4.3k

unifios-utilities

unifi-utilities/unifios-utilities

UniFi Dream Machine utilities for enhanced network management and security tools

Infrastructure & DevOpsShell
4.3k

interactsh

projectdiscovery/interactsh

Out-of-band interaction server for detecting blind vulnerabilities

Web App TestingGo
4.2k

Harden-Windows-Security

HotCakeX/Harden-Windows-Security

Comprehensive Windows security hardening toolkit with official Microsoft methods

Compliance & HardeningC#
4.2k

agent-os

buildermethods/agent-os

System for injecting codebase standards and improving spec-driven development

Coding AgentsShell
4.2k

retire.js

RetireJS/retire.js

Scanner for JavaScript libraries with known vulnerabilities and SBOM generation

SAST / DAST / SCAJavaScript
4.1k

docker-webtop

linuxserver/docker-webtop

Containerized Linux desktop environments accessible through web browsers

Infrastructure & DevOpsShell
4.1k

Tdarr

HaveAGitGat/Tdarr

Distributed video/audio transcoding automation with health checking

Infrastructure & DevOpsMakefile
4.0k

awesome-devops

wmariuss/awesome-devops

Curated DevOps tools, platforms, and best practices resource collection

Knowledge BasesPython
4.0k

volatility3

volatilityfoundation/volatility3

Advanced memory forensics framework for analyzing RAM dumps and malware

Forensics & IRPython
4.0k

ivre

ivre/ivre

Self-hosted network recon framework - alternative to Shodan/ZoomEye with Nmap/Masscan

Reconnaissance & OSINTPython
4.0k

warehouse

pypi/warehouse

Official Python Package Index (PyPI) warehouse implementation

Infrastructure & DevOpsPython
4.0k

nextdns

nextdns/nextdns

NextDNS CLI client providing DNS-over-HTTPS proxy functionality

Network DefenseGo
4.0k

privacyguides.org

privacyguides/privacyguides.org

Privacy and security guidance resource for protection against surveillance

Knowledge BasesMarkdown
3.9k

TorBot

DedSecInside/TorBot

Dark web crawler and OSINT tool for Tor network investigation

Reconnaissance & OSINTPython
3.9k

nut

networkupstools/nut

Network UPS management tools for monitoring and controlling power systems

Infrastructure & DevOpsC
3.9k

linux-smart-enumeration

diego-treitos/linux-smart-enumeration

Linux enumeration tool for pentesting and CTF privilege escalation

Reconnaissance & OSINTShell
3.9k

reverse-shell-generator

0dayCTF/reverse-shell-generator

Web-based reverse shell generator with multiple payload types for pentesting and CTFs

Exploitation FrameworksJavaScript
3.9k

IMSI-catcher

Oros42/IMSI-catcher

Tool for capturing IMSI numbers from nearby cellular devices using SDR hardware

Network AttacksPython
3.8k

chartmuseum

helm/chartmuseum

Helm chart repository server for managing Kubernetes application packages

Infrastructure & DevOpsGo
3.8k

toutatis

megadose/toutatis

Instagram account information extraction tool for OSINT

Reconnaissance & OSINTPython
3.8k

securedrop

freedomofpress/securedrop

Secure whistleblower platform for anonymous document submission

Compliance & HardeningPython
3.8k

OSCE3-Complete-Guide

JoasASantos/OSCE3-Complete-Guide

Complete study guide for OSCE3 certification tracks (OSWE, OSEP, OSED, OSEE)

Training Platforms
3.8k

yarr

nkanaev/yarr

Lightweight self-hosted RSS reader for personal content management

Infrastructure & DevOpsGo
3.8k

PrivescCheck

itm4n/PrivescCheck

PowerShell privilege escalation enumeration script specifically for Windows systems

Reconnaissance & OSINTPowerShell
3.8k

sslyze

nabla-c0d3/sslyze

Fast SSL/TLS scanning library for security assessments and vulnerability testing

Vulnerability ScanningPython
3.7k

Fuzzing101

antonio-morales/Fuzzing101

Step-by-step fuzzing tutorial covering AFL, fuzzilli and other fuzzing techniques

Training Platforms
3.7k

feedbin

feedbin/feedbin

Web-based RSS reader platform for content aggregation and management

Infrastructure & DevOpsRuby
3.7k

cloudsploit

aquasecurity/cloudsploit

Cloud Security Posture Management tool for multi-cloud environments

Cloud SecurityJavaScript
3.7k

composerize

composerize/composerize

Converts docker run commands to docker-compose format for easier management

Infrastructure & DevOpsJavaScript
3.7k

ansible-nas

davestephens/ansible-nas

Ansible playbook for building full-featured home server and NAS systems

Infrastructure & DevOpsJinja
3.7k

Findomain

Findomain/Findomain

Fast subdomain discovery with port scanning and monitoring features

Reconnaissance & OSINTRust
3.7k

sdrangel

f4exb/sdrangel

Feature-rich SDR software for RF reception and transmission across multiple platforms

Reconnaissance & OSINTC++
3.7k

dependency-track

DependencyTrack/dependency-track

OWASP component analysis platform for software supply chain risk reduction

Supply ChainJava
3.7k

docker-swag

linuxserver/docker-swag

Nginx reverse proxy with Let's Encrypt and fail2ban intrusion prevention

Infrastructure & DevOpsDockerfile
3.6k

Anthropic-Cybersecurity-Skills

mukul975/Anthropic-Cybersecurity-Skills

Structured cybersecurity skills dataset for AI agents mapped to MITRE ATT&CK

AI SecurityPython
3.6k

PyRIT

Azure/PyRIT

Risk identification framework for red teaming and testing generative AI systems

AI SecurityPython
3.6k

gqrx

gqrx-sdr/gqrx

GUI SDR receiver for RF signal analysis and monitoring

Reconnaissance & OSINTC++
3.6k

assetfinder

tomnomnom/assetfinder

Simple tool for finding domains and subdomains related to a target domain

Reconnaissance & OSINTGo
3.5k

Raccoon

evyatarmeged/Raccoon

High-performance reconnaissance and vulnerability scanning platform

Vulnerability ScanningPython
3.5k

cloudgoat

RhinoSecurityLabs/cloudgoat

Vulnerable AWS environment deployment tool for cloud security training

Training PlatformsPython
3.5k

SSRFmap

swisskyrepo/SSRFmap

Automatic SSRF fuzzer and exploitation tool for pentesting

Exploitation FrameworksPython
3.5k

docker-volume-backup

offen/docker-volume-backup

Backup Docker volumes to S3, WebDAV, Azure, Dropbox, and other storage

Infrastructure & DevOpsGo
3.4k

OSINT

sinwindie/OSINT

Collection of OSINT tools and methodologies for intelligence gathering

Reconnaissance & OSINTPython
3.4k

dashdot

MauriceNino/dashdot

Modern server dashboard for monitoring system resources and services

Infrastructure & DevOpsTypeScript
3.4k

coraza

corazawaf/coraza

OWASP web application firewall library compatible with ModSecurity

WAF & FirewallsGo
3.4k

claude-code-hooks-mastery

disler/claude-code-hooks-mastery

Educational resource for mastering Claude Code Hooks functionality

LLM ToolsPython
3.4k

Stowaway

ph4ntonn/Stowaway

Multi-hop proxy tool for red team operations and pentesting

Red TeamGo
3.3k

craft-agents-oss

lukilabs/craft-agents-oss

Open-source AI agent crafting framework (minimal description available)

AI FrameworksTypeScript
3.3k

cariddi

edoardottt/cariddi

Domain crawler for endpoint discovery, secrets, and API key detection

Reconnaissance & OSINTGo
3.3k

timesketch

google/timesketch

Collaborative forensic timeline analysis platform for incident response

Forensics & IRPython
3.3k

SecretScanner

deepfence/SecretScanner

Container secret scanner for passwords and API keys in images and filesystems

Secrets ManagementGo
3.3k

pypykatz

skelsec/pypykatz

Pure Python implementation of Mimikatz for credential extraction

Exploitation FrameworksPython
3.3k

metorial

metorial/metorial

AI model integration platform with 600+ services using Model Context Protocol

AI FrameworksTypeScript
3.2k

kubectl

kubernetes/kubectl

Command-line interface tool for managing Kubernetes clusters and resources

CLI & TerminalGo
3.2k

SimpleMem

aiming-lab/SimpleMem

Efficient lifelong memory system for LLM agents with compression and retrieval

LLM ToolsPython
3.2k

dockle

goodwithtech/dockle

Docker image linter for security best practices and compliance checking

Container SecurityGo
3.2k

Mr.Holmes

Lucksi/Mr.Holmes

Comprehensive OSINT framework with multiple information gathering modules

Reconnaissance & OSINTPython
3.1k

cloud-nuke

gruntwork-io/cloud-nuke

Tool for cleaning up cloud resources by deleting all resources in accounts

Cloud SecurityGo
3.1k

httprobe

tomnomnom/httprobe

Probe domains for working HTTP/HTTPS servers during reconnaissance

Reconnaissance & OSINTGo
3.1k

ContainerSSH

ContainerSSH/ContainerSSH

On-demand container launcher over SSH for development and testing

Infrastructure & DevOpsGo
3.0k

OpenShell

NVIDIA/OpenShell

NVIDIA's secure runtime environment for autonomous AI agents with safety controls

AI SecurityRust
3.0k

APT_REPORT

blackorbird/APT_REPORT

Curated collection of APT reports and IOCs for threat hunting and analysis

Threat IntelligencePython
3.0k

ddns-updater

qdm12/ddns-updater

Containerized dynamic DNS updater with web UI for multiple providers

Infrastructure & DevOpsGo
2.9k

AttackSurfaceAnalyzer

microsoft/AttackSurfaceAnalyzer

Microsoft tool for analyzing OS security configuration changes during software installs

Compliance & HardeningC#
2.9k

littlelink

sethcottle/littlelink

Lightweight self-hosted link aggregation tool, alternative to Linktree for developers

Frameworks & LibrariesHTML
2.9k

NextDNS-Config

yokoffing/NextDNS-Config

DNS-over-HTTPS proxy configuration guide with ad/malware blocking capabilities

Network Defense
2.9k

Pentest-Cheat-Sheets

Kitsun3Sec/Pentest-Cheat-Sheets

Penetration testing command reference and code snippet collection

Knowledge BasesShell
2.9k

selfhosted-apps-docker

DoTheEvo/selfhosted-apps-docker

Guide for self-hosting applications with Docker examples

Infrastructure & DevOpsShell
2.8k

uncover

projectdiscovery/uncover

Multi-engine search tool for discovering exposed hosts across the internet

Reconnaissance & OSINTGo
2.8k

portainer-templates

Lissy93/portainer-templates

Curated collection of 500+ one-click Portainer application templates

Infrastructure & DevOpsPython
2.8k

awesome-game-security

gmh5225/awesome-game-security

Game security resources covering anti-cheat, reverse engineering, and protection

Knowledge BasesPython
2.8k

Snaffler

SnaffCon/Snaffler

File discovery tool for penetration testers to find sensitive data and credentials

Reconnaissance & OSINTC#
2.8k

wizarr

wizarrrr/wizarr

User invitation and management system for media servers like Plex/Jellyfin

Frameworks & LibrariesPython
2.8k

home-ops

onedr0p/home-ops

Complete GitOps homelab setup with Kubernetes, Flux, and infrastructure automation

Infrastructure & DevOpsYAML
2.8k

php-reverse-shell

pentestmonkey/php-reverse-shell

PHP reverse shell script for web application penetration testing

Web App TestingPHP
2.7k

dnsx

projectdiscovery/dnsx

Fast DNS toolkit for enumeration and resolution with wildcard filtering

Reconnaissance & OSINTGo
2.7k

medicat_installer

mon5termatt/medicat_installer

Medicat installer for IT support and system recovery tools

Forensics & IRBatchfile
2.7k

yopass

jhaals/yopass

Secure one-time sharing of secrets and passwords with encryption

Secrets ManagementTypeScript
2.7k

cluster-template

onedr0p/cluster-template

Complete Kubernetes cluster template with Talos, Flux GitOps, and security best practices

Infrastructure & DevOpsYAML
2.7k

stego-toolkit

DominicBreuker/stego-toolkit

Collection of steganography tools for CTF challenges

CTF & PracticeShell
2.6k

IOSSecuritySuite

securing/IOSSecuritySuite

iOS anti-tampering and security detection library for mobile app protection

Endpoint SecuritySwift
2.6k

PacketSender

dannagle/PacketSender

Cross-platform network utility for sending/receiving TCP, UDP, SSL, HTTP packets

Infrastructure & DevOpsC++
2.6k

email2phonenumber

martinvigo/email2phonenumber

Phone number discovery through email address OSINT techniques

Reconnaissance & OSINTPython
2.6k

Elkeid

bytedance/Elkeid

ByteDance open-source CWPP/EDR for hosts, containers, K8s, and serverless

Endpoint SecurityGo
2.6k

Awesome-Telegram-OSINT

ItIsMeCall911/Awesome-Telegram-OSINT

Curated resources for Telegram-focused OSINT investigations

Knowledge Bases
2.6k

gsd-2

gsd-build/gsd-2

Meta-prompting and context engineering system for long-running autonomous agents

Prompt EngineeringTypeScript
2.6k

hackingthe.cloud

Hacking-the-Cloud/hackingthe.cloud

Encyclopedia of offensive and defensive cloud security techniques and knowledge

Knowledge BasesDockerfile
2.6k

pwnagotchi

jayofelony/pwnagotchi

Raspberry Pi WiFi penetration testing device using Bettercap

Network AttacksPython
2.6k

waymore

xnl-h4ck3r/waymore

Enhanced web archive data collection from Wayback Machine and other sources

Reconnaissance & OSINTPython
2.6k

Maestro

RunMaestro/Maestro

Command center for orchestrating and managing multiple AI agents

AI FrameworksTypeScript
2.6k

awesome-functional-python

sfermigier/awesome-functional-python

Functional programming resources and libraries for Python developers

Frameworks & Libraries
2.5k

godot-mcp

Coding-Solo/godot-mcp

MCP server for Godot integration, enables AI agents to control game engine workflows

LLM ToolsJavaScript
2.5k

pwnedOrNot

thewhiteh4t/pwnedOrNot

Email breach checking using HaveIBeenPwned API integration

Reconnaissance & OSINTPython
2.5k

nexfil

thewhiteh4t/nexfil

Fast username enumeration across multiple social platforms

Reconnaissance & OSINTPython
2.5k

BurpSuite-For-Pentester

Ignitetechnologies/BurpSuite-For-Pentester

Comprehensive BurpSuite cheatsheet for bug bounty hunters and pentesters

Knowledge Bases
2.5k

SUDO_KILLER

TH3xACE/SUDO_KILLER

Sudo privilege escalation exploitation tool for pentesting

Exploitation FrameworksShell
2.4k

PCredz

lgandx/PCredz

Extracts credentials and sensitive data from pcap files or live network interfaces

Forensics & IRPython
2.4k

FBI-tools

danieldurnea/FBI-tools

Curated collection of OSINT and digital forensics tools

Knowledge Bases
2.4k

terraform-best-practices

antonbabenko/terraform-best-practices

Comprehensive Terraform best practices ebook translated into multiple languages

Books & CoursesHCL
2.4k

awesome-engineering-team-management

kdeldycke/awesome-engineering-team-management

Engineering management transition guide for developers moving to leadership roles

Knowledge Bases
2.4k

cloudflare-ddns

favonia/cloudflare-ddns

Feature-rich Cloudflare DDNS updater with Docker support

Infrastructure & DevOpsGo
2.4k

hacking-resources

Lifka/hacking-resources

Comprehensive hacking resources and cheat sheets for offensive/defensive security

Knowledge Bases
2.4k

awesome-cloud-native

rootsongjc/awesome-cloud-native

Curated cloud native tools and tutorials for modern infrastructure

Infrastructure & DevOpsHTML
2.4k

traefik-forward-auth

thomseddon/traefik-forward-auth

OAuth-based forward authentication service for Traefik reverse proxy

Secrets ManagementGo
2.4k

cloudfox

BishopFox/cloudfox

Automated situational awareness tool for cloud penetration testing

Reconnaissance & OSINTGo
2.3k

one_gadget

david942j/one_gadget

Tool for finding one gadget RCE exploits in libc libraries

Exploitation FrameworksRuby
2.3k

MetaClaw

aiming-lab/MetaClaw

Conversational agent that learns and evolves through continual learning and meta-learning

AI FrameworksPython
2.3k

Awesome-OSINT-For-Everything

Astrosp/Awesome-OSINT-For-Everything

Curated collection of OSINT tools for information gathering and recon

Reconnaissance & OSINTShell
2.3k

RedTeam-OffensiveSecurity

bigb0sss/RedTeam-OffensiveSecurity

Collection of tools and resources for red team operations and offensive security

Red TeamPython
2.3k

ansible-role-docker

geerlingguy/ansible-role-docker

Ansible role for automated Docker installation and configuration

Infrastructure & DevOps
2.2k

borgmatic

borgmatic-collective/borgmatic

Configuration-driven backup automation for servers with deduplication and monitoring

Infrastructure & DevOpsPython
2.2k

unmanic

Unmanic/unmanic

Media library optimization tool for automated file conversion and management

Infrastructure & DevOpsPython
2.2k

cloudsplaining

salesforce/cloudsplaining

AWS IAM privilege escalation and least privilege violation assessment tool

Cloud SecurityJavaScript
2.2k

AutomatedLab

AutomatedLab/AutomatedLab

PowerShell framework for automated Windows/Linux lab deployment on HyperV/Azure

Infrastructure & DevOpsPowerShell
2.2k

awesome-iam

kdeldycke/awesome-iam

Comprehensive identity and access management knowledge base for cloud security

Knowledge Bases
2.2k

vscode

catppuccin/vscode

Soothing pastel theme for Visual Studio Code editor

Editors & IDETypeScript
2.1k

snallygaster

hannob/snallygaster

Scanner for discovering secret files and sensitive information on web servers

Web App TestingPython
2.1k

f8x

ffffffff0x/f8x

Red/blue team environment automation deployment tool

CTF & PracticeShell
2.1k

CTFCrackTools

0Chencc/CTFCrackTools

Next-generation CTF Swiss Army Knife with visual workflow

CTF & PracticeRust
2.1k

smuggler

defparam/smuggler

HTTP request smuggling and desync testing tool for finding protocol vulnerabilities

Web App TestingPython
2.1k

agentic-context-engine

kayba-ai/agentic-context-engine

Context engine enabling agents to learn from experience with memory management

AI FrameworksPython
2.1k

plaso

log2timeline/plaso

Timeline analysis tool for digital forensics investigations and incident response

Forensics & IRPython
2.0k

smbmap

ShawnDEvans/smbmap

SMB enumeration tool for network reconnaissance and share discovery

Reconnaissance & OSINTPython
2.0k

hub

artifacthub/hub

Cloud Native package discovery and management platform for Kubernetes ecosystem

Infrastructure & DevOpsTypeScript
2.0k

ToolsFx

Leon406/ToolsFx

Cross-platform crypto toolbox for CTF and cryptography challenges

CTF & PracticeKotlin
2.0k

FIR

certsocietegenerale/FIR

Fast incident response platform for security teams and forensic investigations

Forensics & IRJavaScript
2.0k

metasploit-payloads

rapid7/metasploit-payloads

Unified repository for Metasploit Framework payloads and exploits

Exploitation FrameworksC
2.0k

FISSURE

ainfosec/FISSURE

Comprehensive RF and reverse engineering framework for wireless protocol analysis

Reverse EngineeringPython
1.9k

ggshield

GitGuardian/ggshield

Advanced secrets detection with 500+ validators for CI/CD pipelines

Secrets ManagementPython
1.9k

owtf

owtf/owtf

Offensive Web Testing Framework for efficient penetration testing workflows

Web App TestingTypeScript
1.9k

octosuite

bellingcat/octosuite

Terminal toolkit for analyzing GitHub data and conducting OSINT investigations

Reconnaissance & OSINTPython
1.9k

awesome-lockpicking

fabacab/awesome-lockpicking

Physical security resources covering lockpicking and lock bypass techniques

Knowledge Bases
1.8k

slsa

slsa-framework/slsa

Framework defining supply-chain security levels for software artifacts

Supply ChainHTML
1.8k

resources

ctfs/resources

General collection of CTF information, tools, and tips

CTF & Practice
1.8k

murphysec

murphysecurity/murphysec

Open source SCA tool for dependency vulnerability detection

Supply ChainGo
1.8k

Maintainerr

Maintainerr/Maintainerr

Library maintenance tool for Plex and Jellyfin media servers

Infrastructure & DevOpsTypeScript
1.8k

launchpad

timothystewart6/launchpad

HomeLab automation collection with Docker, Kubernetes, and Ansible templates

Infrastructure & DevOpsDockerfile
1.7k

hardening

konstruktoid/hardening

Ubuntu hardening scripts with systemd integration for security compliance

Compliance & HardeningShell
1.7k

hping

antirez/hping

Network tool for packet crafting, firewall testing, and port scanning

Network AttacksC
1.7k

ctftool

taviso/ctftool

Interactive CTF exploration tool for reverse engineering

CTF & PracticeC
1.7k

awesome-soc

cyb3rxp/awesome-soc

Curated knowledge base for building and running Security Operations Centers

Knowledge Bases
1.7k

wordlists

assetnote/wordlists

Curated wordlists for content discovery and web application penetration testing

Web App TestingCSS
1.6k

Starkiller

BC-SECURITY/Starkiller

Web-based GUI frontend for managing PowerShell Empire C2 operations

Red TeamVue
1.6k

Name-That-Hash

bee-san/Name-That-Hash

Hash identification tool for CTF and security research

CTF & PracticePython
1.6k

container-security-checklist

krol3/container-security-checklist

Comprehensive container security checklist for DevSecOps practices

Container Security
1.6k

gitjacker

liamg/gitjacker

Extracts git repositories from misconfigured websites to find exposed source code

Reconnaissance & OSINTGo
1.6k

copacetic

project-copacetic/copacetic

CLI tool for direct container image patching and vulnerability remediation

Container SecurityGo
1.6k

hakrevdns

hakluke/hakrevdns

Fast tool for performing bulk reverse DNS lookups during reconnaissance

Reconnaissance & OSINTGo
1.6k

nomore403

devploit/nomore403

Advanced HTTP 403 bypass tool for security researchers

Web App TestingGo
1.6k

enum4linux-ng

cddmp/enum4linux-ng

Next-gen Windows/Samba enumeration tool for CTF and pentesting

Reconnaissance & OSINTPython
1.6k

nanocoder

Nano-Collective/nanocoder

Local-first coding agent running in terminal with community focus

Coding AgentsTypeScript
1.5k

xnLinkFinder

xnl-h4ck3r/xnLinkFinder

Discovers endpoints, parameters, and secrets from web applications for recon

Reconnaissance & OSINTPython
1.5k

mcp-memory-service

doobidoo/mcp-memory-service

Persistent memory service for AI agents with knowledge graph and vector storage

AI FrameworksPython
1.5k

GAP-Burp-Extension

xnl-h4ck3r/GAP-Burp-Extension

Burp extension for finding potential endpoints and generating custom wordlists

Web App TestingPython
1.5k

windows-privesc-check

pentestmonkey/windows-privesc-check

Windows privilege escalation checker identifying common attack vectors

Exploitation FrameworksPython
1.5k

docker-mods

linuxserver/docker-mods

Documentation and examples for modifying LinuxServer base containers

Infrastructure & DevOps
1.5k

mutillidae

webpwnized/mutillidae

Deliberately vulnerable web application for security training

Training PlatformsPHP
1.5k

harbor-helm

goharbor/harbor-helm

Official Helm chart for deploying Harbor container registry on Kubernetes

Infrastructure & DevOpsMustache
1.5k

nebula-sync

lovelaze/nebula-sync

Synchronization tool for managing multiple Pi-hole DNS instances across networks

Infrastructure & DevOpsGo
1.4k

secure-ios-app-dev

felixgr/secure-ios-app-dev

Collection of common iOS app vulnerabilities for security assessment reference

Knowledge Bases
1.4k

git-hound

tillson/git-hound

GitHub-wide secret scanning tool for credential leak detection

Secrets ManagementGo
1.4k

bypass-mdm

assafdori/bypass-mdm

Tool for bypassing macOS Mobile Device Management (MDM) setup restrictions

Exploitation FrameworksShell
1.4k

stash

stashed/stash

Kubernetes stateful application backup solution using Restic

Infrastructure & DevOpsGo
1.4k

hindsight

obsidianforensics/hindsight

Browser forensics tool for Chrome/Chromium analyzing browsing history and artifacts

Forensics & IRPython
1.4k

webauthn

w3c/webauthn

W3C Web Authentication API specification for public key credential access

DocumentationHTML
1.4k

AIL-framework

CIRCL/AIL-framework

Analysis framework for information leaks and privacy security incidents

Threat IntelligencePython
1.4k

PeaNUT

Brandawg93/PeaNUT

Network UPS monitoring dashboard for infrastructure management

Infrastructure & DevOpsTypeScript
1.4k

threat-dragon

OWASP/threat-dragon

OWASP threat modeling tool for identifying security risks in application design

SAST / DAST / SCAJavaScript
1.4k

Auto_Wordlists

carlospolop/Auto_Wordlists

Automated wordlist generation tool for security testing and brute force

Password & Credential ToolsPython
1.3k

HidHide

nefarius/HidHide

Windows input device firewall for controlling gaming peripheral access

Endpoint SecurityC++
1.3k

TREVORspray

blacklanternsecurity/TREVORspray

Modular password spraying tool with threading and proxy support for Office 365

Password & Credential ToolsPython
1.3k

docker-pihole-unbound

mpgirro/docker-pihole-unbound

Docker setup for Pi-Hole DNS blocking with Unbound recursive DNS

Infrastructure & DevOpsShell
1.3k

CaptfEncoder

guyoung/CaptfEncoder

Cross-platform network security tool suite for CTF and crypto

CTF & PracticeJavaScript
1.3k

stackrox

stackrox/stackrox

Kubernetes security platform with runtime monitoring and risk analysis

Container SecurityGo
1.3k

trivy-action

aquasecurity/trivy-action

GitHub Action for Trivy vulnerability scanning of Docker containers

SAST / DAST / SCAShell
1.3k

Telos

danielmiessler/Telos

Framework for creating deep context about human-relevant topics

AI Frameworks
1.2k

bane

genuinetools/bane

Custom AppArmor profile generator for enhanced Docker container security

Container SecurityGo
1.2k

SharpHound

SpecterOps/SharpHound

C# data collector for BloodHound Active Directory attack path analysis

Reconnaissance & OSINTC#
1.2k

dagda

eliasgranderubio/dagda

Docker image vulnerability scanner with malware detection and runtime monitoring

SAST / DAST / SCAPython
1.2k

artifacts

ForensicArtifacts/artifacts

Comprehensive repository of digital forensics artifacts and definitions

Forensics & IRPython
1.2k

Signal-TLS-Proxy

signalapp/Signal-TLS-Proxy

TLS proxy for Signal messaging service network security

Network DefenseShell
1.2k

qscan

qi4L/qscan

Lightning-fast internal network scanner for reconnaissance activities

Reconnaissance & OSINTGo
1.2k

Artemis

CERT-Polska/Artemis

Modular vulnerability scanner with automatic report generation capabilities

Vulnerability ScanningPython
1.1k

Hemmelig.app

HemmeligOrg/Hemmelig.app

Encrypted secret sharing platform for secure information exchange

Secrets ManagementTypeScript
1.1k

OpenSCA-cli

XmirrorSecurity/OpenSCA-cli

Open source SCA with SBOM generation and license compliance checking

Supply ChainGo
1.1k

rekor

sigstore/rekor

Transparency log for software supply chain provenance and security verification

Supply ChainGo
1.1k

jok3r

koutto/jok3r

Network and web pentest automation framework with vulnerability exploitation

Exploitation FrameworksHTML
1.1k

Beginners-Guide-to-Obfuscation

BC-SECURITY/Beginners-Guide-to-Obfuscation

Educational guide on obfuscation techniques for security professionals

Red TeamPowerShell
1.1k

gitsign

sigstore/gitsign

Keyless Git commit signing using Sigstore for secure software development

Supply ChainGo
1.1k

Aggressor

k8gege/Aggressor

Cobalt Strike extension with large network penetration scanning capabilities

Exploitation Frameworks
1.1k

Pi.Alert

leiweibau/Pi.Alert

Network device discovery and monitoring for detecting unauthorized connections

Network DefensePHP
1.1k

Silver

s0md3v/Silver

Mass IP scanner for identifying vulnerable services across networks

Vulnerability ScanningPython
1.0k

The-Hacker-Recipes

The-Hacker-Recipes/The-Hacker-Recipes

Comprehensive technical guides and documentation for cybersecurity practitioners

Knowledge Bases
1.0k

goscan

marco-lancini/goscan

Interactive network scanner built with Go for pentesting activities

Reconnaissance & OSINTGo
1.0k

mash-playbook

mother-of-all-self-hosting/mash-playbook

Comprehensive Ansible playbook for self-hosting multiple services

Infrastructure & DevOpsPython
1.0k

flipper-application-catalog

flipperdevices/flipper-application-catalog

Application catalog for Flipper Zero security research and penetration testing

Reverse EngineeringPython
1.0k

plugins

serverless/plugins

Community plugins extending Serverless Framework functionality

Frameworks & LibrariesJavaScript
992

hakoriginfinder

hakluke/hakoriginfinder

Discovers origin hosts behind reverse proxies to bypass cloud WAFs

Reconnaissance & OSINTGo
987

in-toto

in-toto/in-toto

Framework for protecting software supply chain integrity with attestations

Supply ChainPython
982

StreamController

StreamController/StreamController

Elegant Linux app for Stream Deck with plugin support

CLI & TerminalPython
974

SoftRF

lyusupov/SoftRF

Multi-platform aviation proximity awareness system for DIY aircraft tracking

Infrastructure & DevOpsC
963

volsync

backube/volsync

Kubernetes operator for asynchronous data replication and disaster recovery

Infrastructure & DevOpsGo
947

skanuvaty

Esc4iCEscEsc/skanuvaty

High-performance DNS/network/port scanner with subdomain enumeration capabilities

Reconnaissance & OSINTRust
923

zap-extensions

zaproxy/zap-extensions

ZAP add-ons collection for the popular web application security scanner

Web App TestingHTML
922

Flipper-iOS-App

flipperdevices/Flipper-iOS-App

iOS app for managing Flipper Zero hardware security testing device

Reverse EngineeringSwift
905

BTLE

JiaoXianjun/BTLE

BLE packet sniffer/transmitter for wireless security testing and protocol analysis

Network AttacksJupyter Notebook
876

Linux-Privilege-Escalation

Ignitetechnologies/Linux-Privilege-Escalation

Linux privilege escalation cheatsheet for OSCP and CTF preparation

Knowledge Bases
870

skipfish

spinkham/skipfish

Web application security scanner by lcamtuf for finding vulnerabilities

Web App TestingC
848

log4j2burpscanner

f0ng/log4j2burpscanner

BurpSuite extension for detecting CVE-2021-44228 Log4j2 vulnerabilities

Vulnerability ScanningJava
840

gattacker

securing/gattacker

Bluetooth Low Energy security testing tool with MITM attack capabilities

Network AttacksJavaScript
815

fulcio

sigstore/fulcio

OIDC-based PKI certificate authority for keyless code signing infrastructure

Supply ChainGo
814

goscan

timest/goscan

Efficient IPv4 network scanner for discovering active devices on LANs

Reconnaissance & OSINTGo
798

cargo-vet

mozilla/cargo-vet

Mozilla's supply-chain security auditing tool for Rust dependencies

Supply ChainRust
797

tlosint-live

tracelabs/tlosint-live

OSINT-focused Linux distribution based on Kali for open source intelligence gathering

Reconnaissance & OSINTHTML
794

chain-bench

aquasecurity/chain-bench

CIS-based compliance auditing for software supply chain security

Supply ChainGo
770

Substrate

danielmiessler/Substrate

Framework for creating deep contextual understanding using AI

AI FrameworksTypeScript
765

npm-security-best-practices

bodadotsh/npm-security-best-practices

Best practices guide for NPM supply chain attack prevention

Supply Chain
765

rtl-sdr-scanner-cpp

shajen/rtl-sdr-scanner-cpp

SDR scanner for RF reconnaissance and signal analysis

Reconnaissance & OSINTC++
760

hacktricks-cloud

HackTricks-wiki/hacktricks-cloud

Cloud-focused security knowledge base and penetration testing guide

Knowledge BasesCSS
736

crowdsec-bouncer-traefik-plugin

maxlerebourg/crowdsec-bouncer-traefik-plugin

Traefik plugin integrating CrowdSec for WAF and IP protection

WAF & FirewallsGo
732

dnsvalidator

vortexau/dnsvalidator

Maintains and validates list of reliable IPv4 DNS servers for reconnaissance

Reconnaissance & OSINTPython
730

PurplePanda

carlospolop/PurplePanda

Multi-cloud privilege escalation path discovery tool for GCP, GitHub, Kubernetes

Cloud SecurityPython
719

go-tuf

theupdateframework/go-tuf

Go implementation of The Update Framework for secure software updates

Supply ChainGo
697

goaccess-for-nginxproxymanager

xavier-hernandez/goaccess-for-nginxproxymanager

GoAccess analytics Docker image specifically for Nginx Proxy Manager logs

Infrastructure & DevOpsShell
691

packj

ossillate-inc/packj

Malicious dependency detection for preventing supply chain attacks

Supply ChainPython
685

thgtoa

Anon-Planet/thgtoa

Comprehensive guide for online anonymity, OpSec, and privacy practices

Knowledge Bases
680

images

chainguard-images/images

Distroless container images with minimal attack surface and security hardening

Container SecurityHCL
664

shell-plugins

1Password/shell-plugins

Shell plugins providing seamless authentication for terminal tools via 1Password

Secrets ManagementGo
650

DreamDojo

NVIDIA/DreamDojo

NVIDIA's robot world model from large-scale human video data for generalist robotics

AI FrameworksPython
634

pyhtools

dmdhrumilmistry/pyhtools

Comprehensive Python hacking library with network and malware tools

Exploitation FrameworksPython
624

Pulsarr

jamcalli/Pulsarr

Real-time Plex watchlist monitoring with automated media library management

Infrastructure & DevOpsTypeScript
618

samytools

samyk/samytools

Simple tools for reverse engineering and data manipulation on *nix systems

Reverse EngineeringPerl
614

misp-galaxy

MISP/misp-galaxy

MISP threat actor clusters and attack patterns for structured threat intelligence

Threat IntelligencePython
612

thiss.link

NayamAmarshe/thiss.link

Privacy-focused encrypted link shortener with password protection and self-hosting

Endpoint SecurityTypeScript
596

HellRaiser

m0nad/HellRaiser

Nmap-based vulnerability scanner correlating CPEs with CVE database

Vulnerability ScanningRuby
573

evilscan

eviltik/evilscan

Simple NodeJS network scanner for port scanning and reconnaissance

Reconnaissance & OSINTJavaScript
545

chainloop

chainloop-dev/chainloop

SDLC evidence store with SBOM management and supply chain attestations

Supply ChainGo
539

CloudScraper

jordanpotti/CloudScraper

Cloud storage enumeration tool for S3 buckets, Azure blobs, and DigitalOcean

Reconnaissance & OSINTPython
534

pentmenu

GinjaChris/pentmenu

Bash script for network reconnaissance and DoS attacks

Network AttacksShell
528

validation-benchmarks

xbow-engineering/validation-benchmarks

AI security validation benchmarks for testing AI model safety and security

AI SecurityPHP
525

witness

in-toto/witness

Pluggable framework for software artifact provenance verification

Supply ChainGo
519

toolkit

bellingcat/toolkit

OSINT toolkit from Bellingcat for open source intelligence investigations

Reconnaissance & OSINTJavaScript
499

MMLanScan

mavris/MMLanScan

iOS library for LAN network scanning and device discovery

Reconnaissance & OSINTObjective-C
496

xmap

idealeer/xmap

Fast IPv4/IPv6 network scanner for Internet-wide research scanning

Reconnaissance & OSINTC
479

webscan

samyk/webscan

Browser-based network scanner with local IP detection capabilities

Reconnaissance & OSINTJavaScript
471

traefik-kop

jittering/traefik-kop

Dynamic service discovery agent for Docker containers with Traefik and Redis

Infrastructure & DevOpsGo
462

docker-kasm

linuxserver/docker-kasm

Containerized Kasm Workspaces for browser-based virtual desktop environments

Infrastructure & DevOpsShell
451

PowerShell_IPv4NetworkScanner

BornToBeRoot/PowerShell_IPv4NetworkScanner

Asynchronous IPv4 network scanner written in PowerShell

Reconnaissance & OSINTPowerShell
431

nautical-backup

Minituff/nautical-backup

Simple Docker volume backup tool for automated data protection

Infrastructure & DevOpsPython
430

imgcrypt

containerd/imgcrypt

OCI container image encryption package for securing container workloads

Container SecurityGo
424

hakcheckurl

hakluke/hakcheckurl

Go tool that takes URLs and returns HTTP response codes for web enumeration

Web App TestingGo
403

streamdeck-linux-gui

streamdeck-linux-gui/streamdeck-linux-gui

Linux UI for Elgato Stream Deck hardware control

CLI & TerminalPython
401

kubelet

kubernetes/kubelet

Kubelet component configurations for Kubernetes node management

Infrastructure & DevOpsGo
401

ansible_homelab

rishavnandi/ansible_homelab

Ansible playbooks for automated homelab setup with Docker deployment

Infrastructure & DevOpsHCL
382

minder

mindersec/minder

Comprehensive software supply chain security management platform

Supply ChainGo
380

misp-modules

MISP/misp-modules

MISP expansion modules for threat intelligence enrichment and data import/export

Threat IntelligencePython
363

awesome-software-supply-chain-security

bureado/awesome-software-supply-chain-security

Comprehensive resource compilation for supply chain security

Knowledge Bases
350

wiki

forensicswiki/wiki

Community wiki dedicated to digital forensics knowledge and techniques

Knowledge Bases
321

sigstore-python

sigstore/sigstore-python

Python client for Sigstore software supply chain security and code signing

Supply ChainPython
316

malicious-software-packages-dataset

DataDog/malicious-software-packages-dataset

Human-vetted dataset of malicious software packages for supply chain security research

Supply ChainPython
315

dfiq

google/dfiq

Collection of investigative questions and approaches for digital forensics

Forensics & IRPython
301

dns

qdm12/dns

Secure DNS server with DNS-over-TLS support from multiple privacy providers

Network DefenseGo
284

source-controller

fluxcd/source-controller

GitOps toolkit for managing source code repositories in Kubernetes deployments

Infrastructure & DevOpsGo
273

chains

tektoncd/chains

Supply chain security integration for Tekton CI/CD pipelines

Supply ChainGo
270

community.docker

ansible-collections/community.docker

Ansible collection for Docker container management and orchestration

Infrastructure & DevOpsPython
254

op-vscode

1Password/op-vscode

1Password integration for VS Code enabling secure credential management

Secrets ManagementTypeScript
253

UBUNTU22-CIS

ansible-lockdown/UBUNTU22-CIS

Automated CIS benchmark compliance remediation for Ubuntu 22 using Ansible

Compliance & HardeningYAML
248

sbomnix

tiiuae/sbomnix

Nix-focused SBOM generation and supply chain security utilities

Supply ChainPython
247

back-me-up

Dheerajmadhukar/back-me-up

Scans wayback data for sensitive data leaks using regex patterns

Reconnaissance & OSINTShell
229

SIGpi

joecupano/SIGpi

SIGINT toolkit for radio frequency analysis and amateur radio operations

Reconnaissance & OSINTShell
228

model-transparency

sigstore/model-transparency

Machine learning model supply chain security with Sigstore integration

AI SecurityPython
225

connect-sdk-python

1Password/connect-sdk-python

Python SDK for 1Password Connect API for programmatic secrets management

Secrets ManagementPython
223

h1-brain

PatrikFehrenbach/h1-brain

MCP server connecting AI assistants to HackerOne for automated bug bounty hunting

AI SecurityPython
211

connect

1Password/connect

1Password Connect server for programmatic access to 1Password secrets in automation

Secrets Management
206

npmGrafStats

smilebasti/npmGrafStats

Exports Nginx Proxy Manager logs to InfluxDB for Grafana visualization

Infrastructure & DevOpsPython
203

watchtower

bosch-aisecurity-aishield/watchtower

AI model vulnerability scanner for ML supply chain security

AI SecurityPureBasic
202

magpie

openraven/magpie

CSPM focused on cloud ransomware and supply chain attack analysis

Cloud SecurityJava
199

macaron

oracle/macaron

Oracle's extensible supply-chain security analysis framework supporting multiple build systems

Supply ChainPython
189

3os.org

fire1ce/3os.org

Technical documentation hub for DevOps, pentesting, and IT professionals

DocumentationHTML
185

UBUNTU20-CIS

ansible-lockdown/UBUNTU20-CIS

Automated CIS benchmark compliance remediation for Ubuntu 20 using Ansible

Compliance & HardeningYAML
183

secure-repository-supply-chain

skills/secure-repository-supply-chain

GitHub Skills course on securing supply chain and managing dependencies

Training PlatformsC#
183

docker-ddclient

linuxserver/docker-ddclient

Docker container for dynamic DNS client management

Infrastructure & DevOpsDockerfile
178

Daemon

danielmiessler/Daemon

Open-source personal API framework for custom integrations

API ToolsTypeScript
175

Widgets-for-UniGetUI

Devolutions/Widgets-for-UniGetUI

Windows widgets for package manager UI, extends system package management capabilities

CLI & TerminalC#
170

i-probably-didnt-backdoor-this

kpcyrd/i-probably-didnt-backdoor-this

Practical experiment on supply-chain security using reproducible builds

Supply ChainDockerfile
160

preflight

SpectralOps/preflight

Tool to verify scripts and executables against supply chain attacks

Supply ChainGo
156

awesome-cloud-sec

RyanJarv/awesome-cloud-sec

Curated collection of cloud security tools and resources

Knowledge Bases
150

terraform-provider-harbor

goharbor/terraform-provider-harbor

Terraform provider for Harbor container registry infrastructure as code

IaC SecurityGo
147

in-toto-golang

in-toto/in-toto-golang

Go implementation of in-toto framework for software supply chain integrity

Supply ChainGo
146

Software-Supply-Chain-Security

vishalgarg-sec/Software-Supply-Chain-Security

Comprehensive compilation of Software Supply Chain Security resources and tools

Knowledge Bases
144

agentseal

AgentSeal/agentseal

Security toolkit for AI agents - scan, monitor, test prompt injection, audit MCP servers

AI SecurityPython
141

python-for-coding-interviews

mmicu/python-for-coding-interviews

Python algorithms and data structures reference for coding interviews

Knowledge BasesDockerfile
138

maloss

osssanitizer/maloss

Research tool for measuring supply chain attacks on package managers

Supply ChainJava
136

docker-netbox

linuxserver/docker-netbox

Dockerized NetBox deployment for infrastructure management

Infrastructure & DevOpsPython
125

image-reflector-controller

fluxcd/image-reflector-controller

GitOps component that scans container registries for image updates and vulnerabilities

Container SecurityGo
120

subdover

PushpenderIndia/subdover

Multithreaded subdomain takeover vulnerability scanner with extensive fingerprints

Vulnerability ScanningPython
108

pupy

AlessandroZ/pupy

Cross-platform RAT with in-memory execution and low footprint capabilities

Exploitation FrameworksPython
90

cloudjack

prevade/cloudjack

AWS Route53/CloudFront vulnerability assessment and exploitation tool

Vulnerability ScanningPython
86

BrewUp

fire1ce/BrewUp

Automated Homebrew package management and backup for macOS developers

Infrastructure & DevOpsShell
60

safe-harbour

trickest/safe-harbour

Collection of security.txt files from popular domains for responsible disclosure

Reconnaissance & OSINT
56

DeadDNS

DreyAnd/DeadDNS

Automated DNS hijacking tool for identifying vulnerable dead DNS records

Reconnaissance & OSINTPython
53

Foremost

gerryamurphy/Foremost

File recovery tool using headers/footers analysis for digital forensics investigations

Forensics & IRC
40

ansible-cis-ubuntu-2204

MVladislav/ansible-cis-ubuntu-2204

Ansible role for automated CIS Ubuntu 22.04 compliance and hardening

Compliance & HardeningYAML
37

Eraserr

everettsouthwick/Eraserr

Media server maintenance automation for cleaning up unwatched content

Infrastructure & DevOpsPython
32

SilverBullet-1.4.1-Pro-

v3nom-1337/SilverBullet-1.4.1-Pro-

Multi-proxy account checker tool for credential validation testing

Password & Credential Tools
19

yk-csr-generator

SheepReaper/yk-csr-generator

CLI tool for generating Certificate Signing Requests using YubiKey hardware tokens

Secrets ManagementC#
7

CIPHER

defconxt/CIPHER

Claude-integrated security engineering assistant for privacy and hardening

AI SecurityJavaScript
1

BrewUp

defconxt/BrewUp

Homebrew package manager interface for macOS development environment management

CLI & TerminalShell
1
Open source · updated weekly via automated pipeline
View on GitHub