x64dbg is an open-source user-mode debugger for Windows, aimed at reverse engineering and malware analysis of executables whose source code is unavailable. It ships 32-bit and 64-bit builds, a plugin system, and can be compiled from source by users.
Open source. Open possibilities.
Discover quality open-source projects, submit projects anonymously, and claim and edit your own project.
A little curiosity. A world of open source.
THE FIRST COLLECTIONA curated collection of Web Application Security payloads and bypasses for pentesting and CTFs, covering vulnerability descriptions, exploitation techniques, and Burp Intruder file sets.
hackingtool is an AI-guided all-in-one toolkit offering 215 curated penetration testing and security assessment tools across 21 categories. It maps plain-English goals to the right tools and exact commands, plans objectives step by step, and supports headless engagements — built for authorized security testing only.
Strix is an open-source AI-powered penetration testing tool that uses autonomous agents to identify, validate, and fix application vulnerabilities through real proof-of-concept exploits.
A curated collection of awesome GitHub lists covering cybersecurity topics for hackers, pentesters, and security researchers — including bug bounty, OSINT, reverse engineering, CTF, malware analysis, web security, IoT, AI security, and more.
A transparency archive collecting extracted system prompts and guidelines from major AI models and agents, including OpenAI, Google, Anthropic, xAI, Perplexity, Cursor, and others, for public inspection.
bettercap is a Go-based, extensible security framework for reconnaissance and MITM attacks across WiFi, BLE, HID, CAN-bus, and IPv4/IPv6 networks, with a REST API, web UI, and JavaScript plugins.
Zentra is an AI-powered CLI security scanner for developers, combining SAST, DAST, supply-chain, API, and IaC analysis with LLM orchestration, CI integration, and an authorized pentest mode.
A curated collection of 150+ tools and techniques for red teaming and penetration testing, organized by MITRE ATT&CK framework categories covering reconnaissance, initial access, execution, privilege escalation, defense evasion, credential access, lateral movement, command and control, exfiltration, and impact.
ImHex is a feature-rich, cross-platform hex editor built for reverse engineers, programmers, and anyone doing binary analysis. It offers a custom pattern language, data inspector, diffing, disassembler, YARA scanning, node-based data processing, theming, and plugin support.
OWASP Web Security Testing Guide is an open-source reference for testing web applications and services, with structured scenarios, versioned identifiers, stable documentation, and community contributions.