Showing 524 open source projects for "research"

View related business solutions
  • Veeam Data Platform v13.1 - Get Your Free Trial Icon
    Veeam Data Platform v13.1 - Get Your Free Trial

    Secure by design, portable by default. Recover clean, fast, anywhere. Start a free trial.

    Try Veeam Data Platform today. Experience the unified platform that's secure by design, portable by default, and proven to recover clean, fast, and anywhere.
    Try it Free
  • One Monitoring Tool for IT, OT and Cloud | Free Trial Icon
    One Monitoring Tool for IT, OT and Cloud | Free Trial

    Vendor-agnostic monitoring across on-prem servers, cloud platforms and OT devices, all in one dashboard. No more tool sprawl.

    Modern infrastructure spans data centers, cloud platforms and factory floors, and every blind spot between them is a risk. PRTG supports SNMP, WMI, SSH and other standard protocols to monitor IT, OT and hybrid environments through one customizable dashboard. Build the views your team needs, from network health to application performance, without switching tools. Try PRTG free for 30 days now.
    Try PRTG Free
  • 1
    YellowKey

    YellowKey

    YellowKey Bitlocker Bypass Vulnerability

    YellowKey is a security research repository documenting a reported BitLocker bypass vulnerability affecting modern Windows recovery environments. The project is not a general-purpose application, but a proof-of-concept disclosure intended for vulnerability awareness, defensive research, and incident response discussion. It highlights how recovery tooling and boot-adjacent components can create serious risks even when full-disk encryption is enabled.
    Downloads: 157 This Week
    Last Update:
    See Project
  • 2
    Exploitarium

    Exploitarium

    A single archive of public exploit PoCs and vulnerability research

    Exploitarium is a consolidated archive of public proof-of-concept vulnerability research and exploit writeups. It gathers older standalone research repositories into one place while also adding newer entries as self-contained folders. The project includes tracked examples involving software such as 7-Zip, AnyDesk, c-ares, curl, Discourse, Docker, and other targets. Its purpose is research visibility, vulnerability study, and educational review rather than normal application deployment. ...
    Downloads: 6 This Week
    Last Update:
    See Project
  • 3
    OSIRIS

    OSIRIS

    Open Source Global Intelligence Platform

    OSIRIS is an open-source global intelligence platform for real-time situational awareness across multiple data domains. It is designed as a web dashboard that brings together aviation, maritime, CCTV, seismic, fire, weather, space, news, and cyber-related data into one interface. The project uses modern web technologies to render large numbers of entities visually and interactively on maps and dashboards. It positions itself as a transparent alternative to closed intelligence platforms by...
    Downloads: 330 This Week
    Last Update:
    See Project
  • 4
    MalwareSourceCode

    MalwareSourceCode

    Collection of malware source code for a variety of platforms

    ...The structure makes it easier for security researchers to locate examples from different eras and ecosystems. Because the repository contains potentially dangerous code, it is intended to be handled only in controlled research environments with appropriate security precautions.
    Downloads: 3 This Week
    Last Update:
    See Project
  • MongoDB Atlas runs apps anywhere Icon
    MongoDB Atlas runs apps anywhere

    Deploy in 115+ regions with the modern database for every enterprise.

    MongoDB Atlas gives you the freedom to build and run modern applications anywhere—across AWS, Azure, and Google Cloud. With global availability in over 115 regions, Atlas lets you deploy close to your users, meet compliance needs, and scale with confidence across any geography.
    Start Free
  • 5
    H4X-Tools

    H4X-Tools

    A modular, terminal-based toolkit for OSINT, reconnaissance

    H4X-Tools is a modular, terminal-based toolkit for OSINT, reconnaissance, and scraping workflows. It is built in Python and runs on Linux and Windows. The project organizes multiple research utilities behind an interactive menu and direct command-line options. Its tools cover areas such as Instagram profile research, web reconnaissance, phone lookup, IP lookup, username search, email search, leak intelligence, port scanning, WHOIS lookup, web scraping, directory discovery, Bluetooth scanning, and local user enumeration. ...
    Downloads: 3 This Week
    Last Update:
    See Project
  • 6
    Mobile Verification Toolkit

    Mobile Verification Toolkit

    Helps with conducting forensics of mobile devices

    ...It has been developed and released by the Amnesty International Security Lab in July 2021 in the context of the Pegasus project along with a technical forensic methodology and forensic evidence. MVT is a forensic research tool intended for technologists and investigators. Using it requires understanding the basics of forensic analysis and using command-line tools. This is not intended for end-user self-assessment. If you are concerned with the security of your device please seek expert assistance. Compare extracted records to a provided list of malicious indicators in STIX2 format. ...
    Downloads: 38 This Week
    Last Update:
    See Project
  • 7
    Cloud Security Attacks

    Cloud Security Attacks

    Azure and AWS Attacks

    Cloud Security Attacks is a curated reference collection focused on offensive and defensive security research for major cloud platforms. Its primary sections organize material around Amazon Web Services and Microsoft Azure. The repository links to research on identity and access management, privilege escalation, cloud storage, containers, authentication, and common configuration weaknesses. It also includes material on cloud-specific attack paths, security testing methodologies, and documented vulnerabilities. ...
    Downloads: 0 This Week
    Last Update:
    See Project
  • 8
    Skitter Creek Bath Salts

    Skitter Creek Bath Salts

    Unlocking _everything_ on the CPU with DRAM scrambling

    Skitter Creek Bath Salts is a security research project exploring how low-level DRAM address translation affects processor security boundaries. It demonstrates that changing memory-controller translation behavior can expose physical memory regions normally hidden from the operating system. The research targets AMD Family 16h processors, whose documentation describes relevant DRAM translation registers.
    Downloads: 0 This Week
    Last Update:
    See Project
  • 9
    PentestGPT

    PentestGPT

    Automated Penetration Testing Agentic Framework Powered by LLMs

    ...It offers real-time feedback and live walkthroughs, allowing users to observe each step of the testing process as it unfolds. Built with a modular and extensible architecture, PentestGPT supports cloud and local LLMs, making it suitable for research, education, and authorized security testing.
    Downloads: 209 This Week
    Last Update:
    See Project
  • Build Securely on AWS with Proven Frameworks Icon
    Build Securely on AWS with Proven Frameworks

    Lay a foundation for success with Tested Reference Architectures developed by Fortinet’s experts. Learn more in this white paper.

    Moving to the cloud brings new challenges. How can you manage a larger attack surface while ensuring great network performance? Turn to Fortinet’s Tested Reference Architectures, blueprints for designing and securing cloud environments built by cybersecurity experts. Learn more and explore use cases in this white paper.
    Download Now
  • 10
    WhatsApp Beacon

    WhatsApp Beacon

    OSINT tool for tracking WhatsApp online status via Web automation

    ...WhatsApp Beacon is designed to run across multiple operating systems and can operate in the background using headless browser automation. It is intended for educational and research purposes related to open-source intelligence (OSINT) and digital investigation.
    Downloads: 71 This Week
    Last Update:
    See Project
  • 11
    HackBrowserData

    HackBrowserData

    Decrypt passwords/cookies/history/bookmarks from the browser

    HackBrowserData is an open-source tool that could help you decrypt data ( password|bookmark|cookie|history|credit card|download|localStorage|extension ) from the browser. It supports the most popular browsers on the market and runs on Windows, macOS and Linux. This tool is limited to security research only, and the user assumes all legal and related responsibilities arising from its use! The author assumes no legal responsibility! Installation of HackBrowserData is dead-simple, just download the release for your system and run the binary.
    Downloads: 24 This Week
    Last Update:
    See Project
  • 12
    RoguePlanet

    RoguePlanet

    https://github.com/MSNightmare/RoguePlanet

    ...The repository includes a C++ source file, a compiled executable, a license, and a short explanation of the vulnerability behavior. Because the project concerns privilege escalation behavior, it should be treated strictly as security research material for authorized testing, defensive validation, or vendor analysis. It is not a general-purpose utility, and it should not be used against systems without explicit permission.
    Downloads: 3 This Week
    Last Update:
    See Project
  • 13
    T3MP3ST

    T3MP3ST

    Autonomous red teaming platform

    ...Its stated target areas include web apps, CTF challenges, source-code review, OSS vulnerability hunting, smart contracts, and embedded or robotics research. Because it automates offensive workflows, it must only be used on systems where the user has explicit written permission.
    Downloads: 4 This Week
    Last Update:
    See Project
  • 14
    Toutatis

    Toutatis

    Extract public Instagram account information from usernames

    ...The utility is implemented in Python and runs through a simple command-line interface, making it easy to integrate into OSINT workflows and automation scripts. Toutatis is commonly used in open source intelligence investigations, research tasks, and security analysis that involve collecting publicly available social media data.
    Downloads: 63 This Week
    Last Update:
    See Project
  • 15
    Instaloader

    Instaloader

    Download pictures (or videos) along with their captions

    ...It enables users to retrieve posts, stories, reels, highlights, profile pictures, and associated information such as captions, comments, timestamps, and geotags. The tool supports both public and permitted private content when proper authentication is provided, making it useful for research, digital archiving, and social media analysis. Instaloader can be run as a simple command-line tool or used programmatically through its Python module, offering flexibility for automation workflows. It includes smart update mechanisms that resume interrupted downloads and fetch only new media to maintain efficient archives. The project is widely adopted by investigators and analysts who need structured Instagram data collection. ...
    Downloads: 42 This Week
    Last Update:
    See Project
  • 16
    Splunk Attack Range

    Splunk Attack Range

    Tool to simulate attacks and collect the data

    Attack Range Log The Splunk Attack Range is an open-source project maintained by the Splunk Threat Research Team. It builds instrumented cloud (AWS, Azure) and local environments (Virtualbox), simulates attacks, and forwards the data into a Splunk instance. This environment can then be used to develop and test the effectiveness of detections.
    Downloads: 4 This Week
    Last Update:
    See Project
  • 17
    Cryptol

    Cryptol

    Cryptol: The Language of Cryptography

    ...Developed by Galois, Cryptol provides a high-level mathematical syntax for describing cryptographic primitives and enables formal verification of algorithm properties. It is used in academic, research, and defense sectors to validate correctness and security through symbolic execution and model checking, ensuring critical cryptographic code is free of design flaws.
    Downloads: 4 This Week
    Last Update:
    See Project
  • 18
    BadUSB

    BadUSB

    Flipper Zero badusb payload library

    ...It typically contains firmware examples, payloads, and explanations showing how a device presenting as a Human Interface Device (HID) can inject keystrokes, open shells, or orchestrate data exfiltration when plugged into a machine. The codebase is frequently intended for security research and defensive testing: defenders and red teams use it to validate endpoint controls, USB whitelisting, and user training. Due to the dual-use nature of such techniques, responsible repositories emphasize lab-only experiments, consent-based testing, and mitigations like disabling autorun, enforcing device policies, and using endpoint detection.
    Downloads: 12 This Week
    Last Update:
    See Project
  • 19
    reverse-skill

    reverse-skill

    Reverse Engineering and Authorized Penetration Testing

    reverse-skill is a cybersecurity skill router for AI coding agents working on authorized reverse engineering, penetration testing, CTF, and security research tasks. It analyzes the target type and directs the agent to an appropriate methodology instead of relying on improvised commands. Its playbooks cover Android and iOS applications, native binaries, .NET, JavaScript, firmware, malware, APIs, supply chains, and other specialized scenarios. The package checks locally available tools and can bootstrap supporting scripts, MCP servers, and utilities when needed. ...
    Downloads: 6 This Week
    Last Update:
    See Project
  • 20
    Open Semantic Search

    Open Semantic Search

    Open source semantic search and text analytics for large document sets

    Open Semantic Search is an open source research and analytics platform designed for searching, analyzing, and exploring large collections of documents using semantic search technologies. It provides an integrated search server combined with a document processing pipeline that supports crawling, text extraction, and automated analysis of content from many different sources. Open Semantic Search includes an ETL framework that can ingest documents, process them through analysis steps, and enrich the data with extracted information such as named entities and metadata. ...
    Downloads: 6 This Week
    Last Update:
    See Project
  • 21
    Claude BugHunter

    Claude BugHunter

    A Claude Code skill bundle for bug hunting

    Claude-BugHunter is a Claude Code skill bundle focused on bug hunting, security testing, and external red-team research workflows. It packages a large collection of specialized skills, slash commands, and disclosed-report patterns so Claude Code can reason through common vulnerability classes more systematically. The project is meant to help authorized testers structure reconnaissance, triage, hypothesis building, exploitation reasoning, and reporting.
    Downloads: 2 This Week
    Last Update:
    See Project
  • 22
    Mrphish

    Mrphish

    All In One Social Accounts Phishing With Otp Bypass In Termux

    ...The project is designed for Android environments running Termux and emphasizes ease of use for beginners. Because its central capability is credential harvesting, it should be treated as a controlled security-awareness or research artifact and never used against accounts or users without explicit permission.
    Downloads: 2 This Week
    Last Update:
    See Project
  • 23
    Hacklock

    Hacklock

    Hack Android Pattern From Termux With This Tool

    ...The project includes support for exposing the imitation page through tunneling services and displaying the captured pattern in a numbered representation. Its interface also includes update, information, and exit functions. The tool is suitable only for controlled awareness testing or research with explicit authorization because using it to obtain another person's unlock pattern would be credential theft.
    Downloads: 2 This Week
    Last Update:
    See Project
  • 24
    Splunk Attack Range

    Splunk Attack Range

    A tool that allows you to create vulnerable environments

    The Splunk Attack Range is an open-source project maintained by the Splunk Threat Research Team. It builds instrumented cloud (AWS, Azure) and local environments (Virtualbox), simulates attacks, and forwards the data into a Splunk instance. This environment can then be used to develop and test the effectiveness of detections.
    Downloads: 1 This Week
    Last Update:
    See Project
  • 25
    Xteam

    Xteam

    All-in-one command-line toolkit for security testing and OSINT tools

    Xteam is a command-line security toolkit designed to provide multiple penetration testing and information-gathering utilities in a single interface. It combines several modules and external tools to help users perform security research tasks related to mobile devices, wireless networks, and online services. It acts as a centralized launcher that integrates scripts and third-party tools, allowing users to access different testing functions through a menu-based command line workflow. Xteam includes features such as Instagram information gathering, phishing utilities, wireless attack tools, and Android security testing capabilities. ...
    Downloads: 3 This Week
    Last Update:
    See Project
  • Previous
  • You're on page 1
  • 2
  • 3
  • 4
  • 5
  • Next