npm · PyPI88Excellenthealth index
intuitem/ciso-assistant-communityCISO Assistant is a one-stop-shop GRC platform for Risk Management, AppSec, Compliance & Audit, TPRM, BIA, Privacy, and Reporting. It supports 150+ global frameworks with automatic control mapping, including ISO 27001, NIST CSF, SOC 2, CIS, PCI DSS, NIS2, DORA, GDPR, HIPAA, CMMC, and more.
Python · Svelte · TypeScript★ 4,268Jul 17, 2026
PyPI · npm86Excellenthealth index
OpenCTI-Platform/openctiOpen Cyber Threat Intelligence Platform
TypeScript · JavaScript★ 9,686Jul 15, 2026
Packagist · PyPI83Goodhealth index
MISP/MISPMISP (core software) - Open Source Threat Intelligence and Sharing Platform
PHP · JavaScript★ 6,429Jul 21, 2026
panther-labs/panther-analysisBuilt-in Panther detection rules and policies
Python★ 458Jul 20, 2026
Projectdiscovery/httpxhttpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
Go · HTML★ 10.2KJul 17, 2026
splunk/security_contentSplunk Security Content
Python · Jupyter Notebook★ 1,653Jul 17, 2026
theopenlane/coreOpen source compliance automation for SOC 2, GDPR, ISO27001, NIST 800-53, and more
Go★ 280Jul 21, 2026
hack23/cia-compliance-managerThe CIA Compliance Manager is an application that helps organizations assess and manage the availability, integrity, and confidentiality of their systems and data based on customizable security levels, providing real-time cost estimates, business impact assessments, and technical implementation details.
TypeScript · HTML★ 20↓ 3,879/moJul 17, 2026
npm · PyPI77Goodhealth index
PurpleAILAB/DecepticonAutonomous Hacking Agent for Red Team
Python · Cypher★ 4,778Jul 17, 2026
crates.io · npm · Go +176Goodhealth index
VirusTotal/yara-xA rewrite of YARA in Rust.
Rust★ 1,215↓ 74.9K/moJul 15, 2026
npm · PyPI76Goodhealth index
bunkerity/bunkerweb🛡️ Open-source and cloud-native Web Application Firewall (WAF)
Python · Shell · HTML★ 10.7KJul 20, 2026
CyberStrikeus/CyberStrikeOpen-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1,266↓ 2,624/moJul 23, 2026
sherlock-project/sherlockHunt down social media accounts by username across social networks
Python★ 86.5K↓ 165.7K/moJul 13, 2026
usestrix/strixOpen-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · TypeScript★ 43.2KJul 21, 2026
PyPI · npm74Goodhealth index
NuGuardAI/nuguardopensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis
Python★ 10↓ 4,954/moJul 18, 2026
kaifcodec/user-scanner🕵️♂️ (2-in-1) Email & Username OSINT suite for deep data extraction. Analyzes 310+ scan vectors (120+ email / 190+ username) for security research, investigations, and digital footprinting.
Python★ 2,718↓ 19.2K/moJul 16, 2026
node-opcua/node-opcuaUnlocking the Full Potential of OPC UA with Typescript and NodeJS - http://node-opcua.github.io/
TypeScript★ 1,646↓ 0/moJul 14, 2026
InterceptSuite/ProxyBridgeProxifier Alternative to redirect any Windows/MacOS/Linux TCP and UDP traffic to HTTP/Socks5 proxy
C · Swift★ 5,448Jul 17, 2026
beenuar/aisocOpen-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.
Python · TypeScript★ 1,501Jul 15, 2026
Go · npm71Goodhealth index
xalgord/xalgorixAutonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 768Jul 17, 2026
npm69Moderatehealth index
pensarai/apexAI-powered offensive security testing using autonomous agents, directly in your terminal.
TypeScript★ 297↓ 10.1K/moJul 15, 2026
PyPI68Moderatehealth index
gamehunterkaan/autopwn-suiteAutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
Python · JavaScript★ 1,093↓ 188/moJul 17, 2026
PyPI67Moderatehealth index
squid-protocol/gitgalaxyDeep repository intelligence for humans and ai. Air gapped, on premise, zero dependency SAST for 50 languages regardless of compilation status. Sarif and sbom outputs.
Python★ 45↓ 0/moJul 14, 2026
cynative/cynativeDeep cybersecurity research agent for your cloud, code and runtime - ask your infrastructure anything. Read-only, sandboxed.
Go★ 87Jul 15, 2026
PyPI66Moderatehealth index
mentat-is/gulpg(ULP) core backend and plugins
Python★ 67↓ 836/moJul 17, 2026
Go · Maven66Moderatehealth index
seqra/seqraThe open source taint analysis engine for the AI era. A formal dataflow analysis tool you can customize and self-host, built so AI agents drive your application security analysis without burning tokens on every scan. AI-ready open source alternative to Semgrep Pro and CodeQL.
Kotlin · Go★ 110Jul 17, 2026
npm65Moderatehealth index
panguard-ai/panguard-aiOpen-source security platform for AI agents -- audits skills before install, monitors 24/7, shares threat intelligence across all users. | AI Agent 開源安全平台 -- 安裝前審計 skill、24/7 即時監控、社群共享威脅情報。
TypeScript · HTML · JavaScript★ 52↓ 2,959/moJul 15, 2026
Go · npm63Moderatehealth index
opendefender/OpenRiskUnified Risk & Threat Intelligence Management Platform
Go · TypeScript★ 14Jul 23, 2026
PyPI · npm62Moderatehealth index
PrismorSec/prismorRuntime Firewall for AI agents which catches the rogue tool call before it runs. Dangerous commands, secret leaks, prompt injection. For Claude Code, Codex and framework SDKs
Python · HTML★ 240↓ 6,171/moJul 19, 2026
npm · PyPI61Moderatehealth index
dataengineeringformachinelearning/dataengineeringformachinelearningDEML — High Throughput Event Platform for Real-Time Detection and Response
TypeScript · JavaScript · Python★ 1↓ 537/moJul 21, 2026