Усі теги
Тег каталогу

#penetration-testing

Усі репозиторії публічного реєстру з цим тегом — із тем GitHub або ключових слів, які публікують їхні реєстри пакетів. Здоров'я вимірюється за тією ж версіонованою методологією, що й решта реєстру.

41 запис
З тегом «penetration-testing»Упорядковано за індексом здоров'я
PyPI · Go · npm
94Винятковийіндекс здоров'я
PurpleAILAB/Decepticon
Autonomous Hacking Agent for Red Team
Python · Cypher★ 5 348↓ 7 794/міс28 серп. 2026 р.
Apache-2.028 серп. 2026 р. · метрики 2.10.0
npm
91Відміннийіндекс здоров'я
CyberStrikeus/CyberStrike
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1 266↓ 2 624/міс23 лип. 2026 р.
AGPL-3.023 лип. 2026 р. · метрики 2.10.0
Go · Maven
91Відміннийіндекс здоров'я
praetorian-inc/titus
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Go · Java★ 63819 лип. 2026 р.
Apache-2.019 лип. 2026 р. · метрики 2.10.0
PyPI
91Відміннийіндекс здоров'я
usestrix/strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · Go · TypeScript★ 48.3K5 серп. 2026 р.
Apache-2.05 серп. 2026 р. · метрики 2.10.0
npm · RubyGems
90Відміннийіндекс здоров'я
dradis/dradis-ce
Dradis Framework: Collaboration and reporting for IT Security teams
Ruby · HTML★ 8415 вер. 2026 р.
GPL-2.05 вер. 2026 р. · метрики 2.10.0
npm
88Відміннийіндекс здоров'я
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5 893/міс6 вер. 2026 р.
MIT6 вер. 2026 р. · метрики 2.10.0
Go
87Відміннийіндекс здоров'я
goshs-labs/goshs
Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP callbacks · TLS · Auth · Share links. A powerful python3 -m http.server replacement.
Go · JavaScript★ 95313 серп. 2026 р.
MIT13 серп. 2026 р. · метрики 2.10.0
npm
87Відміннийіндекс здоров'я
pensarai/apex
AI-powered offensive security testing using autonomous agents, directly in your terminal.
TypeScript★ 307↓ 7 921/міс6 вер. 2026 р.
Apache-2.06 вер. 2026 р. · метрики 2.10.0
Go
87Відміннийіндекс здоров'я
praetorian-inc/brutus
Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.
Go★ 3047 серп. 2026 р.
Apache-2.07 серп. 2026 р. · метрики 2.10.0
npm
84Відміннийіндекс здоров'я
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
TypeScript★ 46.4K↓ 3 414/міс5 серп. 2026 р.
AGPL-3.05 серп. 2026 р. · метрики 2.10.0
PyPI
83Відміннийіндекс здоров'я
infobyte/faraday
Open Source Vulnerability Management Platform
Python★ 6 698↓ 917/міс29 серп. 2026 р.
GPL-3.029 серп. 2026 р. · метрики 2.10.0
Go · npm
83Відміннийіндекс здоров'я
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 76817 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 2.10.0
RubyGems
81Відміннийіндекс здоров'я
0dayInc/pwn
PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.
Ruby★ 785 вер. 2026 р.
MIT5 вер. 2026 р. · метрики 2.10.0
npm
78Добрийіндекс здоров'я
Null-Square/Null-CLi
Open-source AI pentest and compliance-readiness CLI by NullSquare.
TypeScript · JavaScript★ 81↓ 147/міс4 серп. 2026 р.
Власна ліцензія4 серп. 2026 р. · метрики 2.10.0
PyPI · crates.io
78Добрийіндекс здоров'я
maurosoria/dirsearch
Web path scanner
Python★ 14.6K↓ 32.4K/міс19 серп. 2026 р.
Без ліцензії19 серп. 2026 р. · метрики 2.10.0
Go
77Добрийіндекс здоров'я
Ullaakut/nmap
Idiomatic nmap library for go developers
Go★ 1 04530 лип. 2026 р.
MIT30 лип. 2026 р. · метрики 2.10.0
PyPI
77Добрийіндекс здоров'я
gamehunterkaan/autopwn-suite
AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
Python · JavaScript★ 1 093↓ 188/міс17 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 2.10.0
Go
75Добрийіндекс здоров'я
RAJANAGORI/Nightingale
Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes preconfigured with all essential tools and utilities required for efficient Vulnerability Assessment and Penetration Testing (VAPT), streamlining the setup process for security professionals.
Dockerfile · Shell · Python★ 3134 серп. 2026 р.
GPL-3.04 серп. 2026 р. · метрики 2.10.0
Go
75Добрийіндекс здоров'я
go-appsec/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 35 вер. 2026 р.
MIT5 вер. 2026 р. · метрики 2.10.0
Go
75Добрийіндекс здоров'я
go-appsec/toolbox
Collaborative application security testing between humans and agents via CLI and MCP
Go★ 3717 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 2.10.0
PyPI
73Добрийіндекс здоров'я
ASCIT31/Dark-Moon
Autonomous AI pentesting engine, continuous offensive security across web, cloud, identity, CI/CD, IaC, databases, Active Directory, Kubernetes and IoT firmware. Agentic reasoning plus real exploit execution deliver proof-based vulnerabilities. Privacy gateway: the LLM never sees your real IPs, hosts or creds, nothing leaves your perimeter.
Python · TypeScript · Shell★ 8024 серп. 2026 р.
GPL-3.04 серп. 2026 р. · метрики 2.10.0
Go
73Добрийіндекс здоров'я
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Go · HTML★ 4 37128 серп. 2026 р.
MIT28 серп. 2026 р. · метрики 2.10.0
npm
71Добрийіндекс здоров'я
pentoshi007/clai
Free AI coding & pentesting agent for your terminal
TypeScript★ 9↓ 15K/міс5 вер. 2026 р.
MIT5 вер. 2026 р. · метрики 2.10.0
npm
69Добрийіндекс здоров'я
KryptSec/oasis
Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.
TypeScript★ 29↓ 39/міс28 серп. 2026 р.
MIT28 серп. 2026 р. · метрики 2.10.0
Go
69Добрийіндекс здоров'я
go-harden/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 317 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 2.10.0
69Добрийіндекс здоров'я
mukul975/Anthropic-Cybersecurity-Skills
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Python★ 27.3K5 серп. 2026 р.
Apache-2.05 серп. 2026 р. · метрики 2.10.0
Go
67Добрийіндекс здоров'я
sayseven7/frameseven
Offensive web security scanner — OWASP Top 10 · MCP server · CLI · Go
Go★ 118 серп. 2026 р.
MIT8 серп. 2026 р. · метрики 2.10.0
63Помірнийіндекс здоров'я
Hacking-the-Cloud/hackingthe.cloud
An encyclopedia for offensive and defensive security knowledge in cloud native technologies.
Dockerfile · HTML · CSS★ 2 7384 серп. 2026 р.
Власна ліцензія4 серп. 2026 р. · метрики 2.10.0
Go
63Помірнийіндекс здоров'я
ddddddO/packemon
Packet monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux
Go★ 30520 лип. 2026 р.
BSD-2-Clause20 лип. 2026 р. · метрики 2.10.0
npm
62Помірнийіндекс здоров'я
Hyperyond/Hover
Open-source Vibe Testing suite: an MCP server for the coding agent you already run, a VS Code review cockpit, and CI. Your agent explores your app and crystallizes each flow into a plain @playwright/test spec you own — record == replay, runs in CI with zero AI.
TypeScript★ 11↓ 742/міс5 вер. 2026 р.
Apache-2.05 вер. 2026 р. · метрики 2.10.0