#offensive-security (29 Repositories)
Ranked open-source repositories tagged with #offensive-security, scored by pull request acceptance likelihood and maintainer engagement velocity.
7.9%
9.0h
29 repositories tagged #offensive-security
ashirt-ops/ashirt-server
Adversary Simulators High-Fidelity Intelligence and Reporting Toolkit
praetorian-inc/brutus
Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
JusticeRage/FFM
Freedom Fighting Mode: open source hacking harness
CX330Blake/Black-Hat-Zig
This project provides some code examples of Zig for malwares, hacking, and red teaming. ⚡
so87/OSCP-PwK
This is my cheatsheet and scripts developed while taking the Offensive Security Penetration Testing with Kali Linux course.
cdxiaodong/cain-agent
Real-world AI penetration testing engineer for authorized assessments — built-in cloud module covering AWS/Azure/GCP + Aliyun/Tencent/Huawei clouds. Built on Claude Agent SDK
b1tg/rust-windows-shellcode
Windows shellcode development in Rust
gh0x0st/Invoke-PSObfuscation
An in-depth approach to obfuscating the individual components of a PowerShell payload whether you're on Windows or Kali Linux.
pablosnt/rekono
Offensive security platform that automates attack surface discovery and vulnerability management
f1zm0/acheron
indirect syscalls for AV/EDR evasion in Go assembly
Armur-Ai/Pentest-Swarm-AI
Autonomous penetration testing using a swarm of AI agents. Orchestrates recon, classification, exploitation, and reporting specialists with ReAct reasoning — supports bug bounty, continuous monitoring, and CTF modes. Built with Go, Claude API, and 7+ native security tools.
0xsyr0/Red-Team-Playbooks
This repository contains cutting-edge open-source security notes and tools that will help you during your Red Team assessments.
b1nhack/rust-shellcode
windows-rs shellcode loaders
ivan-sincek/android-penetration-testing-cheat-sheet
Work in progress...
BishopFox/rmiscout
RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities
fabaff/nix-security-box
Tool set for Information security professionals and all others
InfosecHouse/InfosecHouse
Tools & Resources for Cyber Security Operations
edoardottt/favirecon
Use favicons to improve your target recon phase. Quickly detect technologies, WAF, exposed panels, known services.
ivan-sincek/powershell-reverse-tcp
PowerShell scripts for communicating with a remote host.
0xsyr0/OSCP
OSCP Cheat Sheet
pumpbin/pumpbin
🎃 PumpBin is an Implant Generation Platform.
deonmenezes/mantishack
Mantis Hack
blackhatethicalhacking/TerminatorZ
TerminatorZ is a highly sophisticated and efficient Offensive CVE Exploitation Framework that scans for top potential vulnerabilities with known CVEs in your web applications.
vectra-ai-research/Halberd
Halberd : Multi-Cloud Agentic Attack Tool
Syslifters/offsec-tools
Compiled tools for internal assessments
mantvydasb/RedTeaming-Tactics-and-Techniques
Red Teaming Tactics and Techniques
htrgouvea/spellbook
Framework for rapid development of offensive security tools
safedv/RustiveDump
LSASS memory dumper using only NTAPIs, creating a minimal minidump. It can be compiled as shellcode (PIC), supports XOR encryption, and remote file transmission.