Todas las etiquetas
Etiqueta del catálogo

#penetration-testing

Todos los repositorios del registro público que llevan esta etiqueta, procedente de sus topics de GitHub o de las palabras clave que publican sus registros de paquetes. La salud se mide con la misma metodología versionada que el resto del registro.

25 registros
Con la etiqueta «penetration-testing»Ordenado por índice de salud
Go · Maven
76Buenoíndice de salud
praetorian-inc/titus
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Go · Java★ 63819 jul 2026
Apache-2.019 jul 2026 · métricas 1.13.0
npm
75Buenoíndice de salud
CyberStrikeus/CyberStrike
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1266↓ 2624/mes23 jul 2026
AGPL-3.023 jul 2026 · métricas 1.13.0
PyPI
75Buenoíndice de salud
usestrix/strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · TypeScript★ 43.2K21 jul 2026
Apache-2.021 jul 2026 · métricas 1.13.0
npm
71Buenoíndice de salud
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript · TypeScript · CSS★ 763↓ 2247/mes15 jul 2026
MIT15 jul 2026 · métricas 1.13.0
npm · RubyGems
71Buenoíndice de salud
dradis/dradis-ce
Dradis Framework: Collaboration and reporting for IT Security teams
Ruby · HTML★ 827↓ 0/mes14 jul 2026
GPL-2.014 jul 2026 · métricas 1.13.0
Go · npm
71Buenoíndice de salud
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 76817 jul 2026
MIT17 jul 2026 · métricas 1.13.0
npm
70Buenoíndice de salud
KeygraphHQ/shannon
Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
TypeScript★ 45.9K20 jul 2026
AGPL-3.020 jul 2026 · métricas 1.13.0
npm
69Moderadoíndice de salud
pensarai/apex
AI-powered offensive security testing using autonomous agents, directly in your terminal.
TypeScript★ 297↓ 10.1K/mes15 jul 2026
Apache-2.015 jul 2026 · métricas 1.13.0
PyPI
68Moderadoíndice de salud
gamehunterkaan/autopwn-suite
AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
Python · JavaScript★ 1093↓ 188/mes17 jul 2026
Licencia propia17 jul 2026 · métricas 1.13.0
RubyGems
66Moderadoíndice de salud
0dayinc/pwn
PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.
Ruby★ 73↓ 0/mes14 jul 2026
MIT14 jul 2026 · métricas 1.13.0
Go
66Moderadoíndice de salud
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Go · HTML★ 434118 jul 2026
MIT18 jul 2026 · métricas 1.13.0
Go
64Moderadoíndice de salud
go-appsec/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 3↓ 0/mes14 jul 2026
MIT14 jul 2026 · métricas 1.13.0
Go
64Moderadoíndice de salud
go-appsec/toolbox
Collaborative application security testing between humans and agents via CLI and MCP
Go★ 3717 jul 2026
MIT17 jul 2026 · métricas 1.13.0
Go
61Moderadoíndice de salud
go-harden/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 317 jul 2026
MIT17 jul 2026 · métricas 1.13.0
Go
60Moderadoíndice de salud
ddddddO/packemon
Packet monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux
Go★ 30520 jul 2026
BSD-2-Clause20 jul 2026 · métricas 1.13.0
Go
58Moderadoíndice de salud
nodepassproject/nodepass
A secure, efficient TCP/UDP tunneling solution that delivers fast, reliable access across network restrictions using pre-established TCP/QUIC/WebSocket or HTTP/2 connections.
Go★ 267↓ 0/mes14 jul 2026
BSD-3-Clause14 jul 2026 · métricas 1.13.0
RubyGems
54Moderadoíndice de salud
urbanadventurer/WhatWeb
Next generation web scanner
Ruby★ 673522 jul 2026
GPL-2.022 jul 2026 · métricas 1.13.0
npm
53Moderadoíndice de salud
Hyperyond/Hover
Open-source Vibe Testing suite: an MCP server for the coding agent you already run, a VS Code review cockpit, and CI. Your agent explores your app and crystallizes each flow into a plain @playwright/test spec you own — record == replay, runs in CI with zero AI.
TypeScript★ 11↓ 0/mes14 jul 2026
Apache-2.014 jul 2026 · métricas 1.13.0
npm
52Moderadoíndice de salud
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
TypeScript · JavaScript★ 46319 jul 2026
AGPL-3.019 jul 2026 · métricas 1.13.0
Go
45En riesgoíndice de salud
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 021 jul 2026
MIT21 jul 2026 · métricas 1.13.0
npm
43En riesgoíndice de salud
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 19↓ 5644/mes15 jul 2026
MIT15 jul 2026 · métricas 1.13.0
PyPI
38En riesgoíndice de salud
hackerest/pwneye
Your ONVIF and RTSP camera companion for discovering and hacking real-world security cameras 🎥
Python★ 4518 jul 2026
GPL-3.018 jul 2026 · métricas 1.13.0
npm
35En riesgoíndice de salud
nsasoft/nsauditor-ai-agent-skill
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
Mixto★ 3↓ 4001/mes15 jul 2026
MIT15 jul 2026 · métricas 1.13.0
Go
34En riesgoíndice de salud
willygoid/fofa-grabber
A powerful Golang tool to fetch and export FOFA.info search results via API with real-time saving, concurrent requests, and multiple output formats (CSV, JSON, TXT)
Go★ 017 jul 2026
MIT17 jul 2026 · métricas 1.13.0
Go
25Críticoíndice de salud
ps1-blacklist/wpfather
WPFather - WordPress Vulnerability Scanner & Security Recon Tool with 16 Modules | Zero Config Single Binary
Go★ 016 jul 2026
Licencia propia16 jul 2026 · métricas 1.13.0