#penetration-testing (30 Repositories)
Ranked open-source repositories tagged with #penetration-testing, scored by pull request acceptance likelihood and maintainer engagement velocity.
54.8%
79.0h
30 repositories tagged #penetration-testing
jayofelony/pwnagotchi
(⌐■_■) - Raspberry Pi instrumenting Bettercap for Wi-Fi pwning.
ipa-lab/hackingBuddyGPT
Helping Ethical Hackers use LLMs in 50 Lines of Code or less..
praetorian-inc/brutus
Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Pnwcomputers/ULTIMATE-CYBERSECURITY-MASTER-GUIDE
This repository provides a centralized resource for operational cyber defense and offense, compiling Theory, Tools, Operating Procedures, and Step-by-Step Guides across various critical security domains. Content is sourced from industry-leading books and technical presentations, focusing on practical application rather than JUST theory.
xalgorix/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
maurosoria/dirsearch
Web path scanner
praetorian-inc/titus
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
e-m-b-a/emba
EMBA - The firmware security analyzer
praetorian-inc/vespasian
API discovery tool that maps attack surfaces from captured traffic and generates specs for REST, GraphQL, SOAP, and WebSocket APIs
OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Syslifters/sysreptor
A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automate your pentest reports with ease.
ddddddO/packemon
Packet monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux
shuvonsec/claude-bug-bounty
AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
usestrix/strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
andreashappe/cochise
Autonomous Assumed Breach Penetration-Testing Active Directory Networks
Ch0pin/medusa
Mobile Edge-Dynamic Unified Security Analysis
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
infobyte/faraday
Open Source Vulnerability Management Platform
reconmap/reconmap
Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from reconnaissance through execution and reporting. With built-in command automation, output parsing, and AI‑assisted summaries, it delivers faster, more structured, and high‑quality security assessments.
Armur-Ai/Pentest-Swarm-AI
Autonomous penetration testing using a swarm of AI agents. Orchestrates recon, classification, exploitation, and reporting specialists with ReAct reasoning — supports bug bounty, continuous monitoring, and CTF modes. Built with Go, Claude API, and 7+ native security tools.
qazbnm456/awesome-web-security
🐶 A curated list of Web Security materials and resources.
halilkirazkaya/arsenal-ng
The classic launcher, evolved. Fast, Go-based command library equipped with 200+ cybersecurity cheat-sheets. Just install and start hacking.
seeu-inspace/easyg
Here I gather all the resources about hacking that I find interesting
GreyDGL/PentestGPT
Automated Penetration Testing Agentic Framework Powered by Large Language Models
LyleMi/Learn-Web-Hacking
Study Notes For Web Hacking / Web安全学习笔记
ex18a/pwnagotchi64
(◕‿‿◕) - Pwnagotchi 64-Bit AI Edition
dedsec1121fk/DedSec
Official repository of the DedSec Project.
Ragnt/AngryOxide
802.11 Attack Tool