Showing 960 open source projects for "security tools"

View related business solutions
  • One Monitoring Tool for IT, OT and Cloud | Free Trial Icon
    One Monitoring Tool for IT, OT and Cloud | Free Trial

    Vendor-agnostic monitoring across on-prem servers, cloud platforms and OT devices, all in one dashboard. No more tool sprawl.

    Modern infrastructure spans data centers, cloud platforms and factory floors, and every blind spot between them is a risk. PRTG supports SNMP, WMI, SSH and other standard protocols to monitor IT, OT and hybrid environments through one customizable dashboard. Build the views your team needs, from network health to application performance, without switching tools. Try PRTG free for 30 days now.
    Try PRTG Free
  • Custom VMs From 1 to 96 vCPUs With 99.95% Uptime Icon
    Custom VMs From 1 to 96 vCPUs With 99.95% Uptime

    General-purpose, compute-optimized, or GPU/TPU-accelerated. Built to your exact specs.

    Live migration and automatic failover keep workloads online through maintenance. One free e2-micro VM every month.
    Start Free
  • 1
    Codex Security

    Codex Security

    SDKs and CLI for Codex Security

    Codex Security is an OpenAI command-line tool and TypeScript SDK for discovering, validating, and fixing vulnerabilities in source code. It can scan an entire repository, review code changes, and preserve findings across repeated security assessments. Developers can run it interactively from a terminal or embed it in automated CI workflows. Authentication supports ChatGPT sign-in for local use and API keys for noninteractive environments. The SDK exposes a programmatic interface that...
    Downloads: 21 This Week
    Last Update:
    See Project
  • 2
    Antigravity Tools

    Antigravity Tools

    Professional Antigravity Account Manager & Switcher

    Antigravity Manager is a desktop account manager and switcher for Antigravity tools. It is designed to help users manage multiple Antigravity accounts and switch between them quickly without repetitive manual setup. The application is built with Tauri v2, React, and Rust, giving it a lightweight cross-platform desktop foundation. Its workflow focuses on one-click account switching, cleaner account organization, and smoother use of Antigravity environments. The project is especially useful...
    Downloads: 74 This Week
    Last Update:
    See Project
  • 3
    H4X-Tools

    H4X-Tools

    A modular, terminal-based toolkit for OSINT, reconnaissance

    ...The toolkit is designed to be extensible, so contributors can add new tools by creating modules that follow its BaseTool structure. It is intended for educational and authorized security research only, not for use against systems or accounts without permission.
    Downloads: 3 This Week
    Last Update:
    See Project
  • 4
    Symfony Security Core

    Symfony Security Core

    Symfony Security Component - Core Library

    Part of the Symfony framework, the Security Core component provides the foundational tools for managing authentication, authorization, and access control in PHP applications. It’s framework-agnostic and can be used independently in any PHP project.
    Downloads: 4 This Week
    Last Update:
    See Project
  • MongoDB Atlas runs apps anywhere Icon
    MongoDB Atlas runs apps anywhere

    Deploy in 115+ regions with the modern database for every enterprise.

    MongoDB Atlas gives you the freedom to build and run modern applications anywhere—across AWS, Azure, and Google Cloud. With global availability in over 115 regions, Atlas lets you deploy close to your users, meet compliance needs, and scale with confidence across any geography.
    Start Free
  • 5
    Cyber Security Mindmap

    Cyber Security Mindmap

    This repository will contain many mindmaps for cyber security tech

    Cyber Security Mindmap is a large visual reference collection for cybersecurity tools, technologies, methods, courses, and certifications. It organizes complex subjects into tree-shaped diagrams that show relationships and learning paths at a glance. Topics include penetration testing, red teaming, OSINT, forensics, cloud and container security, compliance, networking, and privilege escalation.
    Downloads: 9 This Week
    Last Update:
    See Project
  • 6
    Cloud Security Attacks

    Cloud Security Attacks

    Azure and AWS Attacks

    ...It also includes material on cloud-specific attack paths, security testing methodologies, and documented vulnerabilities. Separate sections collect security tools and training resources for AWS and Azure environments. Rather than providing a single executable program, the project functions as a centralized research index for studying cloud security techniques and risks.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 7
    secator

    secator

    Automated framework for running pentesting tools and workflows

    ...By standardizing input parameters and output formats across different tools, Secator simplifies how results are collected and processed during security testing. Secator is built to improve productivity for penetration testers, bug bounty hunters, and security researchers who frequently chain multiple tools together during assessments.
    Downloads: 10 This Week
    Last Update:
    See Project
  • 8
    Xteam

    Xteam

    All-in-one command-line toolkit for security testing and OSINT tools

    Xteam is a command-line security toolkit designed to provide multiple penetration testing and information-gathering utilities in a single interface. It combines several modules and external tools to help users perform security research tasks related to mobile devices, wireless networks, and online services. It acts as a centralized launcher that integrates scripts and third-party tools, allowing users to access different testing functions through a menu-based command line workflow. ...
    Downloads: 7 This Week
    Last Update:
    See Project
  • 9
    ZAP

    ZAP

    The OWASP ZAP core project

    The OWASP Zed Attack Proxy (ZAP) is one of the world’s most popular free security tools and is actively maintained by a dedicated international team of volunteers. It can help you automatically find security vulnerabilities in your web applications while you are developing and testing your applications. It's also a great tool for experienced pentesters to use for manual security testing. ZAP is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. ...
    Downloads: 148 This Week
    Last Update:
    See Project
  • Ship Agents Faster Icon
    Ship Agents Faster

    Transform your applications and workflows into powerful agentic systems at global scale.

    Gemini Enterprise Agent Platform lets you rapidly build, scale, govern and optimize production-ready agents grounded in your organization's data. The platform enables developers to build custom or pre-built agents for virtually any use case. New customers get $300 in free credits.
    Start Free
  • 10
    Obscura

    Obscura

    The headless browser for AI agents and web scraping

    Obscura is a security-focused project aimed at providing tools and techniques for enhancing privacy, anonymity, and operational security in digital environments. It is designed for users who need to obscure their digital footprint and reduce traceability across systems. The project typically includes utilities for masking identity, managing secure communication, and mitigating surveillance risks.
    Downloads: 67 This Week
    Last Update:
    See Project
  • 11
    OSINT Framework

    OSINT Framework

    OSINT Framework

    OSINT-Framework is a web-based intelligence resource map designed to help investigators and researchers quickly locate free open-source intelligence tools and data sources. Rather than functioning as an automated scanner, it organizes hundreds of OSINT resources into a structured, navigable interface grouped by investigation type, such as usernames, email addresses, domains, and social media. The project was originally created from an information security perspective but has since expanded to support journalists, analysts, and digital investigators across many disciplines. ...
    Downloads: 126 This Week
    Last Update:
    See Project
  • 12
    Nikto

    Nikto

    Web server vulnerability scanner for security assessments

    Nikto is an open-source web server scanner that performs comprehensive tests to detect potentially dangerous files, outdated server software, and configuration issues. It’s widely used by penetration testers and security professionals for auditing web applications and infrastructure. Nikto supports multiple output formats and can integrate with other tools for automated scanning workflows.
    Downloads: 110 This Week
    Last Update:
    See Project
  • 13
    MobileHackersWeapons

    MobileHackersWeapons

    Collection of cool tools used by Mobile hackers

    MobileHackersWeapons is a curated collection of tools for Android and iOS security analysis, testing, and reverse engineering. The catalog groups projects by purpose rather than bundling them into a single executable toolkit. Categories include application analysis, penetration testing, proxies, reverse engineering, scanners, monitoring, device utilities, NFC, Bluetooth, jailbreak research, and certificate-unpinning tools.
    Downloads: 11 This Week
    Last Update:
    See Project
  • 14
    Sippts

    Sippts

    Set of tools to audit SIP based VoIP Systems

    Sippts is a set of tools to audit VoIP servers and devices using SIP protocol. Sippts is programmed in Python and it allows us to check the security of a VoIP server using SIP protocol. You can freely use, modify and distribute. If modified, please put a reference to this site. Most security tools can be used for illegal purposes, but the purpose of this tool is to check the security of your own servers and not to use to do bad things.
    Downloads: 3 This Week
    Last Update:
    See Project
  • 15
    DefectDojo

    DefectDojo

    DefectDojo is a DevSecOps and vulnerability management tool

    ...DefectDojo integrates with 85+ security tools. DefectDojo has bi-directional integration with JIRA to manage vulnerabilities in developer's natural backlogs. DefectDojo has smart features that learn over time and can automatically tune results. DefectDojo has everything you need to track projects, personnel, metrics, and tasks. DefectDojo allows you to focus on what you actually enjoy doing, rather than reports and metrics.
    Downloads: 5 This Week
    Last Update:
    See Project
  • 16
    Telegram-OSINT

    Telegram-OSINT

    https://github.com/The-Osint-Toolbox/Telegram-OSINT

    Telegram-OSINT is an extensive open source repository that compiles tools, techniques, and resources for conducting open source intelligence investigations on the Telegram platform. It serves as a central reference for analysts, researchers, and investigators who want to discover, analyze, and collect publicly available information from Telegram channels, groups, and bots. It organizes a wide variety of utilities that interact with Telegram’s API to gather data such as channel details,...
    Downloads: 32 This Week
    Last Update:
    See Project
  • 17
    CyberStrikeAI

    CyberStrikeAI

    CyberStrikeAI is an AI-native security testing platform built in Go

    CyberStrikeAI is an AI-native security testing platform built in Go that brings autonomous penetration testing, vulnerability discovery, and attack chain analysis into a unified interface. The platform integrates over 100 security tools out of the box and pairs them with an intelligent orchestration engine that can be directed via natural language or policy definitions, allowing users to automate reconnaissance, scanning, exploitation, and reporting without manual sequencing of tools.
    Downloads: 11 This Week
    Last Update:
    See Project
  • 18
    Shuffle Automation

    Shuffle Automation

    A general purpose security automation platform

    Shuffle is an open-source security automation platform built for security teams, MSSPs, and service providers. It helps teams connect tools, automate repetitive security operations, and coordinate workflows through a visual editor. The platform includes a workflow engine, app integrations, OpenAPI-based app creation, and premade apps for common security tools. It can be self-hosted or used through the cloud, giving teams flexibility based on their operational needs. ...
    Downloads: 14 This Week
    Last Update:
    See Project
  • 19
    Hackingtool

    Hackingtool

    ALL IN ONE Hacking Tool For Hackers

    HackingTool by Z4nzu is a large collection (“all-in-one”) of tools and scripts for penetration testing / hacking / OSINT etc. It bundles many utilities (port scanners, payload injectors, web attack tools, phishing tools, wireless attack tools, reverse engineering, etc.) into a menu interface. Includes many individual tools, often wrappers or aggregations of existing well-known tools (e.g. port scanners, web attack tools, steganography, hash cracking etc.). A menu interface offering...
    Downloads: 42 This Week
    Last Update:
    See Project
  • 20
    reconFTW

    reconFTW

    Automated framework for domain reconnaissance and vulnerability scans.

    reconFTW is an open source automated reconnaissance framework created for security researchers, penetration testers, and bug bounty hunters. The tool streamlines the reconnaissance phase of security assessments by orchestrating numerous specialized tools to gather intelligence about a target domain. It performs multiple discovery and analysis tasks such as subdomain enumeration, OSINT collection, and vulnerability scanning in an automated workflow.
    Downloads: 5 This Week
    Last Update:
    See Project
  • 21
    fleet

    fleet

    Open-source platform for IT, security, and infrastructure teams

    Fleet exposes familiar concepts from traditional MDMs like custom attributes and dynamic grouping, but in a way that lets you work directly with data and events from each native operating system. A device management platform for managing and monitoring endpoints, specifically designed for IT security and compliance teams.
    Downloads: 4 This Week
    Last Update:
    See Project
  • 22
    HexStrike AI MCP Agents

    HexStrike AI MCP Agents

    HexStrike AI MCP Agents is an advanced MCP server

    HexStrike AI is an MCP server that lets LLM agents autonomously operate a large catalog of offensive-security tools. Its goal is to bridge “language models” and practical pentest workflows—enumeration, exploitation, vulnerability discovery, and bug bounty reconnaissance—under safe, auditable controls. The server exposes typed tools and guardrails so agent prompts translate to concrete, parameterized actions rather than brittle shell strings.
    Downloads: 7 This Week
    Last Update:
    See Project
  • 23
    A.I.G (AI-Infra-Guard)

    A.I.G (AI-Infra-Guard)

    A full-stack AI Red Teaming platform securing AI ecosystems

    ...Jailbreak evaluation tests language models against multiple prompt-based attack methods and enables cross-model comparison. The platform also provides a web interface, standalone scanning tools, APIs, Docker deployment, and integrations for incorporating security checks into AI workflows.
    Downloads: 27 This Week
    Last Update:
    See Project
  • 24
    PentestGPT

    PentestGPT

    Automated Penetration Testing Agentic Framework Powered by LLMs

    PentestGPT is an AI-powered autonomous penetration testing agent designed to perform intelligent, end-to-end security assessments using large language models. Published at USENIX Security 2024, it combines advanced reasoning with an agentic workflow to automate tasks traditionally handled by human pentesters. The platform supports multiple penetration testing categories, including web security, cryptography, reversing, forensics, privilege escalation, and binary exploitation. PentestGPT runs...
    Downloads: 198 This Week
    Last Update:
    See Project
  • 25
    RedAmon

    RedAmon

    AI-powered framework for automated penetration testing and red teaming

    RedAmon is an AI-powered red team framework designed to automate offensive cybersecurity operations from reconnaissance to exploitation and post-exploitation. It combines artificial intelligence with traditional penetration testing tools to create a fully autonomous pipeline capable of discovering vulnerabilities and executing security assessments without human intervention. It begins with a multi-phase reconnaissance engine that maps the entire attack surface of a target, collecting information such as subdomains, open ports, services, and potential vulnerabilities. ...
    Downloads: 11 This Week
    Last Update:
    See Project
  • Previous
  • You're on page 1
  • 2
  • 3
  • 4
  • 5
  • Next