
nuclei
Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Capture SSL/TLS plaintext with eBPF—no MITM proxy or custom CA installation. Supports Linux and Android on x86_64 and arm64.

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

Automatic SQL injection and database takeover tool

An egress firewall for untrusted workloads.

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…


This repository contains the scanner component for Greenbone Community Edition.

Web vulnerability scanner written in Python3

Free universal database tool and SQL client

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

CVE-2025-26794: Blind SQL injection in Exim 4.98 (SQLite DBM)- exploit writeup