awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to espreto/wpsploit

Open-source alternatives to Wpsploit

30 open-source projects similar to espreto/wpsploit, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Wpsploit alternative.

  • fuzzdb-project/fuzzdbالصورة الرمزية لـ fuzzdb-project

    fuzzdb-project/fuzzdb

    8,819عرض على GitHub↗

    fuzzdb is a collection of datasets designed for web application penetration testing and dynamic fuzzing. It provides a fuzzing payload dictionary, a resource discovery wordlist, and a fault injection dataset containing corrupted Unicode, null bytes, and escape codes to trigger application crashes and logic errors. The project includes a security filter bypass list featuring polyglots and encoded strings to evade web application firewalls and input validation filters. It also provides a comprehensive web application penetration testing dataset specifically for identifying flaws such as cross-s

    PHP
    عرض على GitHub↗8,819
  • tijme/angularjs-csti-scannerالصورة الرمزية لـ tijme

    tijme/angularjs-csti-scanner

    324عرض على GitHub↗

    Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.

    Python
    عرض على GitHub↗324
  • manisso/fsocietyالصورة الرمزية لـ Manisso

    Manisso/fsociety

    12,136عرض على GitHub↗

    fsociety is a penetration testing framework and security tool orchestrator designed to conduct full security audits. It functions as a wrapper that integrates external security binaries into a unified, menu-driven interface, providing a centralized system for command-line parameter mapping and execution. The project distinguishes itself by organizing specialized utilities into domain-specific collections for structured navigation. It automates the transition between different phases of an audit by chaining reconnaissance and exploitation tools through sequential workflow automation. The fram

    Pythonbrute-force-attacksdesktopexploitation
    عرض على GitHub↗12,136
  • andresriancho/w3afالصورة الرمزية لـ andresriancho

    andresriancho/w3af

    4,850عرض على GitHub↗

    w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities in web applications. It functions as a vulnerability scanner that crawls targets to find injection points and a fuzzer used to discover hidden endpoints and test input validation. The project distinguishes itself by providing an intercepting HTTP proxy for capturing and modifying traffic, combined with a knowledge-base driven exploitation system. It enables the execution of security exploits to gain remote shell access and supports post-exploitation activities, such as routing

    Pythonappseccross-site-scriptingscanner
    عرض على GitHub↗4,850

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Find more with AI search
  • alichtman/strongholdالصورة الرمزية لـ alichtman

    alichtman/stronghold

    1,190عرض على GitHub↗

    Easily configure macOS security settings from the terminal.

    Pythoncommand-linecommand-line-toolhardening
    عرض على GitHub↗1,190
  • almandin/fuxploiderA

    almandin/fuxploider

    0عرض على GitHub↗

    fuxploider is an open source penetration testing tool that automates the process of detecting and exploiting file upload forms flaws. This tool is able to detect the file types allowed to be uploaded and is able to detect which technique will work best tu upload web shells or any malicious file…

    عرض على GitHub↗0
  • aflplusplus/aflplusplusالصورة الرمزية لـ AFLplusplus

    AFLplusplus/AFLplusplus

    6,605عرض على GitHub↗

    AFL++ is a coverage-guided fuzzing framework that discovers crashes and hangs in software by mutating inputs while tracking which code paths are exercised. It functions as both a fuzzing engine and a campaign manager, supporting targets with or without source code through compile-time instrumentation, dynamic binary instrumentation, and emulation. The framework includes tools for crash triage and analysis, test case minimization, and campaign deployment across local or distributed environments. The framework distinguishes itself through its breadth of instrumentation backends, allowing users

    C
    عرض على GitHub↗6,605
  • archerysec/archerysecالصورة الرمزية لـ archerysec

    archerysec/archerysec

    2,461عرض على GitHub↗

    ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

    JavaScript
    عرض على GitHub↗2,461
  • alexanderyastrebov/age-vanity-keygenالصورة الرمزية لـ AlexanderYastrebov

    AlexanderYastrebov/age-vanity-keygen

    8عرض على GitHub↗

    This tool generates age X25519 identity with a recipient that has a specified prefix. The output is identical to age-keygen.

    Go
    عرض على GitHub↗8
  • assetnote/kiterunnerالصورة الرمزية لـ assetnote

    assetnote/kiterunner

    3,204عرض على GitHub↗

    Contextual Content Discovery Tool

    Go
    عرض على GitHub↗3,204
  • aws-samples/aws-serverless-security-workshopالصورة الرمزية لـ aws-samples

    aws-samples/aws-serverless-security-workshop

    543عرض على GitHub↗

    In this workshop, you will learn techniques to secure a serverless application built with AWS Lambda, Amazon API Gateway and RDS Aurora. We will cover AWS services and features you can leverage to improve the security of a serverless applications in 5 domains:

    JavaScript
    عرض على GitHub↗543
  • bad-antics/nullsec-linuxالصورة الرمزية لـ bad-antics

    bad-antics/nullsec-linux

    60عرض على GitHub↗

    🐧 Security-focused Linux distribution with 140+ tools, custom kernel 6.17.13, AI assistant | 5 editions | Cloud, AI/ML, Automotive, Hardware hacking

    Shell
    عرض على GitHub↗60
  • bad-antics/nullsec-webfuzzالصورة الرمزية لـ bad-antics

    bad-antics/nullsec-webfuzz

    6عرض على GitHub↗

    Rust web fuzzer - async/await, Tokio, directory brute-force

    Makefile
    عرض على GitHub↗6
  • beefproject/beefالصورة الرمزية لـ beefproject

    beefproject/beef

    10,728عرض على GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    عرض على GitHub↗10,728
  • bjeborn/basic-auth-potالصورة الرمزية لـ bjeborn

    bjeborn/basic-auth-pot

    54عرض على GitHub↗

    bap - http Basic Authentication honeyPot

    Python
    عرض على GitHub↗54
  • biox/paالصورة الرمزية لـ biox

    biox/pa

    562عرض على GitHub↗

    pa a simple password manager https://passwordass.org

    Shell
    عرض على GitHub↗562
  • berzerk0/probable-wordlistsالصورة الرمزية لـ berzerk0

    berzerk0/Probable-Wordlists

    9,289عرض على GitHub↗

    Probable-Wordlists is a collection of curated data resources providing password frequency lists, character masks, and common identity identifiers for security research. These resources serve as credential analysis tools to identify popular password trends and support the creation of secure credentials. The project provides password frequency wordlists and security research wordlists, including common usernames and top-level domains. It includes password recovery datasets featuring character masks and rule sets designed to analyze vulnerability patterns. The repository covers a broad range of

    dictionarydictionary-attackpassword
    عرض على GitHub↗9,289
  • blessedrebus/krawlالصورة الرمزية لـ BlessedRebuS

    BlessedRebuS/Krawl

    545عرض على GitHub↗

    Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging vulnerabilities using realistic, randomly generated decoy data and AI-generated HTML templates.

    Python
    عرض على GitHub↗545
  • bountyyfi/lonkeroالصورة الرمزية لـ bountyyfi

    bountyyfi/lonkero

    929عرض على GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    عرض على GitHub↗929
  • clong/detectionlabالصورة الرمزية لـ clong

    clong/DetectionLab

    4,904عرض على GitHub↗

    DetectionLab is a reproducible Windows Active Directory security lab designed for testing detection capabilities. It uses an automation framework based on Vagrant and Packer to provision virtualized networks across multiple hypervisors and cloud platforms. The project utilizes Ansible for the declarative installation and configuration of domain services and endpoint security tools. It incorporates a browser-based remote access interface via Apache Guacamole to manage laboratory hosts without requiring standalone remote desktop clients. The environment includes a telemetry pipeline that aggre

    HTMLansibledetectiondetectionlab
    عرض على GitHub↗4,904
  • cn0xroot/rfsec-toolkitالصورة الرمزية لـ cn0xroot

    cn0xroot/RFSec-ToolKit

    1,705عرض على GitHub↗

    RFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools.无线通信协议相关的工具集,可借助SDR硬件+相关工具对无线通信进行研究。Collect with ♥ by HackSmith

    bladerfcommunicationfuzzing
    عرض على GitHub↗1,705
  • commixproject/commixالصورة الرمزية لـ commixproject

    commixproject/commix

    5,757عرض على GitHub↗

    Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It probes user-supplied input vectors with heuristic test payloads, analyzes response differences to identify injection points, and then automates the execution of arbitrary operating system commands on the target server. The tool distinguishes itself through a multi-layer filter bypass engine that evaluates input constraints independently per filter type and composes tailored evasion strategies into a single payload. A modular payload tamper pipeline transforms raw injection str

    Python
    عرض على GitHub↗5,757
  • cugu/awesome-forensicsالصورة الرمزية لـ cugu

    cugu/awesome-forensics

    4,911عرض على GitHub↗
    computer-forensicsdfirdigital-forensics
    عرض على GitHub↗4,911
  • cujanovic/ssrf-testingالصورة الرمزية لـ cujanovic

    cujanovic/SSRF-Testing

    2,501عرض على GitHub↗

    SSRF (Server Side Request Forgery) testing resources

    Pythonpentestpentest-toolpentesting
    عرض على GitHub↗2,501
  • danmcinerney/dnsspoofالصورة الرمزية لـ DanMcInerney

    DanMcInerney/dnsspoof

    294عرض على GitHub↗

    DNS spoofer. Drops DNS responses from the router and replaces it with the spoofed DNS response

    Python
    عرض على GitHub↗294
  • davidprobinsky/redteam-physical-toolsالصورة الرمزية لـ DavidProbinsky

    DavidProbinsky/RedTeam-Physical-Tools

    583عرض على GitHub↗

    Red Team Toolkit - A curated list of tools that are commonly used in the field for Physical Security, Red Teaming, and Tactical Covert Entry.

    edcethicalhackinghacking
    عرض على GitHub↗583
  • denispodgurskii/pentestkitالصورة الرمزية لـ DenisPodgurskii

    DenisPodgurskii/pentestkit

    220عرض على GitHub↗

    OWASP PTK - application security browser extension.

    JavaScript
    عرض على GitHub↗220
  • ebookfoundation/free-programming-booksالصورة الرمزية لـ EbookFoundation

    EbookFoundation/free-programming-books

    390,347عرض على GitHub↗

    This project is a centralized, open-access repository that serves as a structured directory for technical education and professional development. It functions as a community-driven knowledge base, aggregating high-quality learning materials to support global accessibility to computer science and software engineering resources. The platform distinguishes itself through a collaborative governance model that utilizes peer-reviewed workflows for all content additions and modifications. By leveraging structured text files and decentralized version control, the repository maintains a searchable, hu

    Pythonbookseducationhacktoberfest
    عرض على GitHub↗390,347
  • enjoiz/xxeinjectorالصورة الرمزية لـ enjoiz

    enjoiz/XXEinjector

    1,754عرض على GitHub↗

    Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.

    Ruby
    عرض على GitHub↗1,754
  • ambionics/phpggcالصورة الرمزية لـ ambionics

    ambionics/phpggc

    3,832عرض على GitHub↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    عرض على GitHub↗3,832