全部标签
目录标签

#penetration-testing

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

41 条记录
标签为“penetration-testing”按健康指数排序
PyPI · Go · npm
94卓越健康指数
PurpleAILAB/Decepticon
Autonomous Hacking Agent for Red Team
Python · Cypher★ 5,348↓ 7,794/月2026年8月28日
Apache-2.02026年8月28日 · 指标 2.10.0
npm
91优秀健康指数
CyberStrikeus/CyberStrike
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1,266↓ 2,624/月2026年7月23日
AGPL-3.02026年7月23日 · 指标 2.10.0
Go · Maven
91优秀健康指数
praetorian-inc/titus
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Go · Java★ 6382026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
PyPI
91优秀健康指数
usestrix/strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · Go · TypeScript★ 48.3K2026年8月5日
Apache-2.02026年8月5日 · 指标 2.10.0
npm · RubyGems
90优秀健康指数
dradis/dradis-ce
Dradis Framework: Collaboration and reporting for IT Security teams
Ruby · HTML★ 8412026年9月5日
GPL-2.02026年9月5日 · 指标 2.10.0
npm
88优秀健康指数
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5,893/月2026年9月6日
MIT2026年9月6日 · 指标 2.10.0
Go
87优秀健康指数
goshs-labs/goshs
Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP callbacks · TLS · Auth · Share links. A powerful python3 -m http.server replacement.
Go · JavaScript★ 9532026年8月13日
MIT2026年8月13日 · 指标 2.10.0
npm
87优秀健康指数
pensarai/apex
AI-powered offensive security testing using autonomous agents, directly in your terminal.
TypeScript★ 307↓ 7,921/月2026年9月6日
Apache-2.02026年9月6日 · 指标 2.10.0
Go
87优秀健康指数
praetorian-inc/brutus
Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.
Go★ 3042026年8月7日
Apache-2.02026年8月7日 · 指标 2.10.0
npm
84优秀健康指数
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
TypeScript★ 46.4K↓ 3,414/月2026年8月5日
AGPL-3.02026年8月5日 · 指标 2.10.0
PyPI
83优秀健康指数
infobyte/faraday
Open Source Vulnerability Management Platform
Python★ 6,698↓ 917/月2026年8月29日
GPL-3.02026年8月29日 · 指标 2.10.0
Go · npm
83优秀健康指数
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 7682026年7月17日
MIT2026年7月17日 · 指标 2.10.0
RubyGems
81优秀健康指数
0dayInc/pwn
PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.
Ruby★ 782026年9月5日
MIT2026年9月5日 · 指标 2.10.0
npm
78良好健康指数
Null-Square/Null-CLi
Open-source AI pentest and compliance-readiness CLI by NullSquare.
TypeScript · JavaScript★ 81↓ 147/月2026年8月4日
自定义许可证2026年8月4日 · 指标 2.10.0
PyPI · crates.io
78良好健康指数
maurosoria/dirsearch
Web path scanner
Python★ 14.6K↓ 32.4K/月2026年8月19日
无许可证2026年8月19日 · 指标 2.10.0
Go
77良好健康指数
Ullaakut/nmap
Idiomatic nmap library for go developers
Go★ 1,0452026年7月30日
MIT2026年7月30日 · 指标 2.10.0
PyPI
77良好健康指数
gamehunterkaan/autopwn-suite
AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
Python · JavaScript★ 1,093↓ 188/月2026年7月17日
自定义许可证2026年7月17日 · 指标 2.10.0
Go
75良好健康指数
RAJANAGORI/Nightingale
Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes preconfigured with all essential tools and utilities required for efficient Vulnerability Assessment and Penetration Testing (VAPT), streamlining the setup process for security professionals.
Dockerfile · Shell · Python★ 3132026年8月4日
GPL-3.02026年8月4日 · 指标 2.10.0
Go
75良好健康指数
go-appsec/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 32026年9月5日
MIT2026年9月5日 · 指标 2.10.0
Go
75良好健康指数
go-appsec/toolbox
Collaborative application security testing between humans and agents via CLI and MCP
Go★ 372026年7月17日
MIT2026年7月17日 · 指标 2.10.0
PyPI
73良好健康指数
ASCIT31/Dark-Moon
Autonomous AI pentesting engine, continuous offensive security across web, cloud, identity, CI/CD, IaC, databases, Active Directory, Kubernetes and IoT firmware. Agentic reasoning plus real exploit execution deliver proof-based vulnerabilities. Privacy gateway: the LLM never sees your real IPs, hosts or creds, nothing leaves your perimeter.
Python · TypeScript · Shell★ 8022026年8月4日
GPL-3.02026年8月4日 · 指标 2.10.0
Go
73良好健康指数
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Go · HTML★ 4,3712026年8月28日
MIT2026年8月28日 · 指标 2.10.0
npm
71良好健康指数
pentoshi007/clai
Free AI coding & pentesting agent for your terminal
TypeScript★ 9↓ 15K/月2026年9月5日
MIT2026年9月5日 · 指标 2.10.0
npm
69良好健康指数
KryptSec/oasis
Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.
TypeScript★ 29↓ 39/月2026年8月28日
MIT2026年8月28日 · 指标 2.10.0
Go
69良好健康指数
go-harden/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 32026年7月17日
MIT2026年7月17日 · 指标 2.10.0
69良好健康指数
mukul975/Anthropic-Cybersecurity-Skills
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Python★ 27.3K2026年8月5日
Apache-2.02026年8月5日 · 指标 2.10.0
Go
67良好健康指数
sayseven7/frameseven
Offensive web security scanner — OWASP Top 10 · MCP server · CLI · Go
Go★ 112026年8月8日
MIT2026年8月8日 · 指标 2.10.0
63中等健康指数
Hacking-the-Cloud/hackingthe.cloud
An encyclopedia for offensive and defensive security knowledge in cloud native technologies.
Dockerfile · HTML · CSS★ 2,7382026年8月4日
自定义许可证2026年8月4日 · 指标 2.10.0
Go
63中等健康指数
ddddddO/packemon
Packet monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux
Go★ 3052026年7月20日
BSD-2-Clause2026年7月20日 · 指标 2.10.0
npm
62中等健康指数
Hyperyond/Hover
Open-source Vibe Testing suite: an MCP server for the coding agent you already run, a VS Code review cockpit, and CI. Your agent explores your app and crystallizes each flow into a plain @playwright/test spec you own — record == replay, runs in CI with zero AI.
TypeScript★ 11↓ 742/月2026年9月5日
Apache-2.02026年9月5日 · 指标 2.10.0