awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to hahwul/jwt-hack

Open-source alternatives to Jwt Hack

30 open-source projects similar to hahwul/jwt-hack, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Jwt Hack alternative.

  • brendan-rius/c-jwt-crackerbrendan-rius avatar

    brendan-rius/c-jwt-cracker

    2,548View on GitHub↗

    JWT brute force cracker written in C

    Cbrute-forcecrackerjwt-authentication
    View on GitHub↗2,548
  • hashcat/hashcathashcat avatar

    hashcat/hashcat

    26,200View on GitHub↗

    Hashcat is a high-performance hash cracking software and OpenCL compute application used to recover plain-text passwords from hashed data. It functions as a GPU-accelerated recovery tool and distributed password cracker, leveraging CPUs and GPUs to perform intensive cryptographic computations. The system differentiates itself through a distributed cracking workflow that coordinates tasks across multiple machines via an overlay network to share computational load. It further optimizes recovery speed using Markov chain keyspace optimization to prioritize the most likely password candidates. Th

    C
    View on GitHub↗26,200
  • xmendez/wfuzzxmendez avatar

    xmendez/wfuzz

    6,519View on GitHub↗

    Wfuzz is a web application fuzzing framework that automates the injection of payloads into HTTP requests to discover hidden resources, parameters, and vulnerabilities. It functions as a content discovery scanner, a brute-force tool for credential guessing, and a plugin-based vulnerability scanner, all within a single modular system. The tool distinguishes itself through its plugin-based extensibility, allowing custom Python modules to add new payload sources, output printers, or scanning logic without modifying core code. It supports concurrent request dispatch using thread-based parallelism

    Python
    View on GitHub↗6,519
  • vanhauser-thc/thc-hydravanhauser-thc avatar

    vanhauser-thc/thc-hydra

    11,943View on GitHub↗

    Hydra is a network login password cracker and authentication tester designed to identify valid usernames and passwords through automated brute-force and dictionary attacks. It serves as a multi-protocol authentication tester capable of verifying credentials across a wide range of remote network services, including SSH, SMB, FTP, and various database listeners. The project is distinguished by its ability to execute parallelized password attacks against multiple servers and protocols simultaneously. It features a modular system for implementing diverse network authentication schemes, allowing f

    C
    View on GitHub↗11,943

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • lmammino/jwt-crackerlmammino avatar

    lmammino/jwt-cracker

    1,172View on GitHub↗

    Simple HS256, HS384 & HS512 JWT token brute force cracker.

    JavaScript
    View on GitHub↗1,172
  • ffuf/ffufffuf avatar

    ffuf/ffuf

    15,618View on GitHub↗

    This tool is a command-line utility designed for automated web resource discovery, fuzzing, and application structure mapping. It functions as a security-focused scanner that identifies hidden files, directories, parameters, and virtual hosts by injecting payloads into HTTP requests. By systematically testing how servers handle various inputs, it assists in mapping the architecture of web applications and uncovering potential security vulnerabilities. The tool distinguishes itself through a highly concurrent engine that manages asynchronous request execution and recursive job orchestration. I

    Gofuzzerinfosecpentesting
    View on GitHub↗15,618
  • swisskyrepo/ssrfmapswisskyrepo avatar

    swisskyrepo/SSRFmap

    3,571View on GitHub↗

    Automatic SSRF fuzzer and exploitation tool

    Python
    View on GitHub↗3,571
  • vladko312/sstimapvladko312 avatar

    vladko312/SSTImap

    1,538View on GitHub↗

    Automatic SSTI detection tool with interactive interface

    Python
    View on GitHub↗1,538
  • bo0om/parampampamBo0oM avatar

    Bo0oM/ParamPamPam

    277View on GitHub↗

    This tool for brute discover GET and POST parameters.

    Python
    View on GitHub↗277
  • devanshbatham/headerpwnD

    devanshbatham/headerpwn

    0View on GitHub↗
    View on GitHub↗0
  • beefproject/beefbeefproject avatar

    beefproject/beef

    10,728View on GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    View on GitHub↗10,728
  • dvyukov/go-fuzzdvyukov avatar

    dvyukov/go-fuzz

    4,853View on GitHub↗

    go-fuzz is a coverage-guided randomized testing tool for identifying crashes and logic bugs in Go code. It consists of a fuzzer that evolves random inputs based on code execution paths, an instrumentation tool that produces binaries for tracking coverage, and a seed corpus manager. The tool utilizes compile-time binary instrumentation to monitor branch coverage and employs a feedback-driven mutation loop to prioritize inputs that reach new sections of the codebase. It includes capabilities for comparative differential testing to identify logic errors by executing different implementations of

    Go
    View on GitHub↗4,853
  • dwisiswant0/crlfuzzdwisiswant0 avatar

    dwisiswant0/crlfuzz

    1,543View on GitHub↗

    A fast tool to scan CRLF vulnerability written in Go

    Go
    View on GitHub↗1,543
  • dwisiswant0/findom-xssdwisiswant0 avatar

    dwisiswant0/findom-xss

    863View on GitHub↗

    A fast DOM based XSS vulnerability scanner with simplicity.

    Shell
    View on GitHub↗863
  • antirez/hpingantirez avatar

    antirez/hping

    1,701View on GitHub↗

    hping network tool

    C
    View on GitHub↗1,701
  • dariusztytko/jwt-key-id-injectordariusztytko avatar

    dariusztytko/jwt-key-id-injector

    51View on GitHub↗

    Simple python script to check against hypothetical JWT vulnerability.

    Python
    View on GitHub↗51
  • galkan/crowbargalkan avatar

    galkan/crowbar

    1,517View on GitHub↗

    Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supported by thc-hydra and other popular brute forcing tools.

    Python
    View on GitHub↗1,517
  • danmcinerney/xsscrapyDanMcInerney avatar

    DanMcInerney/xsscrapy

    1,742View on GitHub↗

    XSS spider - 66/66 wavsep XSS detected

    Python
    View on GitHub↗1,742
  • assetnote/kiterunnerassetnote avatar

    assetnote/kiterunner

    3,204View on GitHub↗

    Contextual Content Discovery Tool

    Go
    View on GitHub↗3,204
  • google/gofuzzgoogle avatar

    google/gofuzz

    1,495View on GitHub↗

    Fuzz testing for go.

    Go
    View on GitHub↗1,495
  • google/syzkallergoogle avatar

    google/syzkaller

    6,232View on GitHub↗

    Syzkaller is an unsupervised, coverage-guided kernel fuzzer that automatically generates and mutates system call sequences to find bugs in operating system kernels. It operates without human intervention, using a closed feedback loop of input generation, execution, crash detection, and corpus refinement to continuously explore kernel code paths. The fuzzer distinguishes itself by supporting multiple operating system kernels, including Linux, FreeBSD, and Windows, through per-platform syscall harnesses that abstract system call interfaces behind a common driver. It uses declarative description

    Go
    View on GitHub↗6,232
  • h4ckforjob/dirmapH4ckForJob avatar

    H4ckForJob/dirmap

    3,366View on GitHub↗

    @Author: xxlin @Date: 2019-04-11 20:34:14 @LastEditors: ttttmr @LastEditTime: 2019-06-03 23:49:33 -->

    Python
    View on GitHub↗3,366
  • hacktricks-wiki/hacktricksHackTricks-wiki avatar

    HackTricks-wiki/hacktricks

    11,700View on GitHub↗

    HackTricks is a comprehensive cybersecurity knowledge base and wiki designed to support ethical hacking, penetration testing, and infrastructure security auditing. It serves as a structured reference guide for security professionals, providing detailed documentation on common vulnerabilities, attack vectors, and remediation strategies across diverse software and network environments. The project distinguishes itself by offering actionable methodologies for identifying and analyzing security flaws. It functions as a centralized repository for security research, enabling practitioners to study

    CSShackinghacktrickspeass
    View on GitHub↗11,700
  • hahwul/dalfoxhahwul avatar

    hahwul/dalfox

    4,846View on GitHub↗

    Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t

    Gobugbountybugbounty-toolcicd-pipeline
    View on GitHub↗4,846
  • hansmach1ne/lfimaphansmach1ne avatar

    hansmach1ne/lfimap

    334View on GitHub↗

    Local File Inclusion discovery and exploitation tool

    Python
    View on GitHub↗334
  • evilsocket/legbaevilsocket avatar

    evilsocket/legba

    1,899View on GitHub↗

    The fastest and more comprehensive multiprotocol credentials bruteforcer / password sprayer and enumerator. 🥷

    Rust
    View on GitHub↗1,899
  • hashpals/name-that-hashHashPals avatar

    HashPals/Name-That-Hash

    1,658View on GitHub↗

    The Modern Hash Identification System pip3 install name-that-hash && nth Web App with no install needed

    Python
    View on GitHub↗1,658
  • jaeles-project/gospiderjaeles-project avatar

    jaeles-project/gospider

    2,973View on GitHub↗

    Gospider - Fast web spider written in Go

    Go
    View on GitHub↗2,973
  • jtpereyda/boofuzzjtpereyda avatar

    jtpereyda/boofuzz

    2,338View on GitHub↗

    A fork and successor of the Sulley Fuzzing Framework

    Python
    View on GitHub↗2,338
  • chenjj/corscannerchenjj avatar

    chenjj/CORScanner

    1,160View on GitHub↗

    🎯 Fast CORS misconfiguration vulnerabilities scanner

    Pythoncorscors-misconfigurationscors-policy
    View on GitHub↗1,160