Back to Topics Directory
Topic Hub

#red-team (30 Repositories)

Ranked open-source repositories tagged with #red-team, scored by pull request acceptance likelihood and maintainer engagement velocity.

Topic Avg Merge Rate

17.7%

Avg Review Latency

14.1h

Filter by language

30 repositories tagged #red-team

B TierGo 170

ashirt-ops/ashirt-server

Adversary Simulators High-Fidelity Intelligence and Reporting Toolkit

94.3%
Merge Rate
2d
First Review
100%
1st-Timers
1
Maintainers
B TierShell 3.9k

leebaird/discover

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux and Ubuntu.

100.0%
Merge Rate
<1h
First Review
100%
1st-Timers
0
Maintainers
A TierGo 678

praetorian-inc/titus

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

90.3%
Merge Rate
8d
First Review
82%
1st-Timers
4
Maintainers
B TierZig 338

The-Z-Labs/bof-launcher

[ BOF-LAUNCHER ] -> an API for loading, executing and in-memory masking BOFs on Windows and Linux for use in C/Zig/Go/Rust agents/implants. [ Z-BEAC0N ] -> a custom-written stage-1 (aka pre-C2) solution engineered with a small footprint, stealth and modularity in mind. [ DEVELOPED BOFS ] -> cross-platform (12), Linux-only (10), Win-only (2)

100.0%
Merge Rate
22h
First Review
100%
1st-Timers
1
Maintainers
B TierShell 3.5k

BlackArch/blackarch

An ArchLinux based distribution for penetration testers and security researchers.

78.2%
Merge Rate
2d
First Review
67%
1st-Timers
21
Maintainers
B TierGo 11.8k

BishopFox/sliver

Adversary Emulation Framework

69.0%
Merge Rate
5d
First Review
73%
1st-Timers
13
Maintainers
C TierGo 590

halilkirazkaya/arsenal-ng

The classic launcher, evolved. Fast, Go-based command library equipped with 200+ cybersecurity cheat-sheets. Just install and start hacking.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
1
Maintainers
D TierC# 385

ricardojoserf/SAMDump

Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#, C++, Crystal and Python

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierJavaScript 122

Dest1ny-Sec/DesJsFinder

被动JS分析 + 框架识别 + 主动Fuzz + 响应指纹 — 红队API挖掘利器

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 155

ricardojoserf/AutoPtT

Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, Python and Rust

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPOPowerShell 431

vectra-ai-research/MAAD-AF

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierGo 475

umutcamliyurt/PingRAT

PingRAT secretly passes C2 traffic through firewalls using ICMP payloads.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 133

Pnwcomputers/ULTIMATE-CYBERSECURITY-MASTER-GUIDE

This repository provides a centralized resource for operational cyber defense and offense, compiling Theory, Tools, Operating Procedures, and Step-by-Step Guides across various critical security domains. Content is sourced from industry-leading books and technical presentations, focusing on practical application rather than JUST theory.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierASAssembly 391

f1zm0/acheron

indirect syscalls for AV/EDR evasion in Go assembly

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPOPowerShell 257

kfallahi/UnderlayCopy

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 349

RiccardoAncarani/LiquidSnake

LiquidSnake is a tool that allows operators to perform fileless lateral movement using WMI Event Subscriptions and GadgetToJScript

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierHTML 340

Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera

🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 408

GetRektBoy724/SharpUnhooker

C# Based Universal API Unhooker

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierCSS 356

rubyfu/RubyFu

Rubyfu, where Ruby goes evil!

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 142

CommonHuman-Lab/nyxstrike

AI Powered penetration testing Platform for offensive security research

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 203

Whispergate/InfraGuard

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierNINim 444

itaymigdal/Nimbo-C2

Nimbo-C2 is yet another (simple and lightweight) C2 framework

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 345

getagentseal/agentseal

Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection resistance, and audit live MCP servers for tool poisoning.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierJavaScript 494

ReversecLabs/dref

DNS Rebinding Exploitation Framework

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 398

ghostvectoracademy/DLLHijackHunter

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC++ 726

JoasASantos/Red-Team-Exercises

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierNINix 219

redcode-labs/RedNixOS

NixOS-based 'distro' for cybersecurity enthusiasts

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 422

ReversecLabs/physmem2profit

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC 328

wavvs/nanorobeus

COFF file (BOF) for managing Kerberos tickets.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierShell 456

MatheuZSecurity/D3m0n1z3dShell

Demonized Shell is an Advanced Tool for persistence in linux.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
Best Red-team Open Source Repositories & C-Rank™ | GetMerged