15 Repos
Software environments used to simulate cyber attacks for identifying system vulnerabilities.
Explore 15 awesome GitHub repositories matching security & cryptography · Penetration Testing Frameworks. Refine with filters or upvote what's useful.
This project is a comprehensive cybersecurity tool collection designed to support security research, penetration testing, and vulnerability assessment. It functions as a unified penetration testing suite, providing a centralized environment where professionals can access a wide range of offensive security utilities to identify system weaknesses and study attack vectors. The platform distinguishes itself through a modular architecture that aggregates disparate security scripts into a single, hierarchical command-line interface. It simplifies the management of these utilities by integrating ext
Simulates cyber attacks through a collection of integrated frameworks to identify potential system weaknesses.
Strix is an automated security research and vulnerability scanning platform that leverages language models to orchestrate complex security analysis tasks. It functions as a comprehensive framework for penetration testing and continuous security integration, allowing users to embed automated vulnerability research directly into development pipelines or execute it within isolated, containerized environments. The platform distinguishes itself through a multi-agent orchestration engine that coordinates specialized autonomous agents to perform parallel security assessments. By integrating LLM-agno
Coordinates multi-agent workflows, browser automation, and traffic analysis to automate penetration testing and vulnerability validation.
DVWA is a vulnerable web application sandbox and PHP security training environment. It serves as a deployable penetration testing target and an OWASP Top 10 lab designed for practicing exploits and simulating common web security vulnerabilities. The application allows users to adjust security difficulty levels to match their skill level and toggle between different SQL database engines to test how various systems handle injection attacks. It includes a mechanism to disable authentication, enabling automated security tools to interact directly with the environment. The project provides capabi
Creates a safe, isolated environment for testing security tools and manual attack methods against known flaws.
fsociety is a penetration testing framework and security tool orchestrator designed to conduct full security audits. It functions as a wrapper that integrates external security binaries into a unified, menu-driven interface, providing a centralized system for command-line parameter mapping and execution. The project distinguishes itself by organizing specialized utilities into domain-specific collections for structured navigation. It automates the transition between different phases of an audit by chaining reconnaissance and exploitation tools through sequential workflow automation. The fram
Conducting a full security audit from initial reconnaissance and vulnerability scanning to exploiting services and maintaining system access.
Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It serves as a centralized platform for coordinating remote agent communication and automating the delivery of security testing payloads to target systems. The project provides a suite of modules for host reconnaissance, lateral movement, and credential harvesting across corporate environments. It functions as a remote administration tool to maintain persistence and execute commands on compromised hosts. The framework incorporates capabilities for agent orchestration and the executio
Serves as a comprehensive software environment for simulating cyber attacks to identify system vulnerabilities.
Commando-VM is a Windows penetration testing distribution and offensive security toolkit. It provides a specialized virtual machine environment loaded with a curated suite of security auditing and exploitation tools designed for red teaming operations. The project facilitates the creation of red team infrastructure and security audit environments. It focuses on windows security auditing and penetration testing to help simulate adversary behavior and identify exploitable security flaws. The environment is established through script-based provisioning and modular toolset deployment. This proce
Ships a pre-configured environment for simulating cyber attacks to identify vulnerabilities within Windows systems.
Nettacker ist ein automatisiertes Penetration-Testing-Framework zur Orchestrierung von Reconnaissance, Port-Scanning und Schwachstellenerkennung. Es fungiert als Tool zur Netzwerkaufklärung und als Schwachstellenscanner, der offene Ports identifiziert, Services fingerprintet und Systeme gegen Datenbanken bekannter Sicherheitslücken prüft. Das Framework kombiniert einen Web-Application-Crawler zur Entdeckung versteckter Pfade via Fuzzing mit einem Vulnerability-Management-System, das Scan-Ergebnisse in einer Datenbank speichert, um historische Assessments nachzuverfolgen. Es bietet zudem spezialisierte Funktionen für Subdomain-Enumeration, Credential-Brute-Forcing und die Möglichkeit, Traffic zur Anonymisierung über Proxys zu leiten. Das System deckt ein breites Spektrum an Sicherheitsfunktionen ab, darunter Network-Asset-Discovery, Multi-Protokoll-Service-Auditing und Konfigurations-Audits. Es unterstützt Multi-Target-Scans über IP-Bereiche und CIDR-Blöcke hinweg und bietet Tools zur Generierung von Sicherheitsberichten in verschiedenen Formaten. Die programmatische Steuerung erfolgt über ein REST-basiertes Interface, wodurch das Framework in Security-Pipelines und Automatisierungs-Flows integriert werden kann.
Provides a complete software environment to automate the discovery and exploitation of network security weaknesses.
Kube-hunter ist ein Sicherheitsscanner und Schwachstellen-Jäger für Kubernetes-Cluster. Es arbeitet als Cloud-natives Penetrationstool, das entwickelt wurde, um Sicherheitsschwachstellen, Fehlkonfigurationen der Infrastruktur und ausnutzbare Lücken durch die Simulation von Angreifertechniken zu identifizieren. Das Tool zeichnet sich durch eine Dual-Mode-Scan-Engine aus, die sowohl externe Remote-Probes als auch interne Netzwerk-Scans ausführt. Es verfügt über identitätsbasierte Identitätswechsel, die es ermöglichen, Service-Account-Token und Pod-Identitäten zu verwenden, um Sicherheitszugriffe von spezifischen Cluster-Rollen zu simulieren und den potenziellen Explosionsradius einer Container-Kompromittierung zu bestimmen. Das Projekt deckt ein breites Spektrum an Sicherheitsbewertungsfunktionen ab, einschließlich Cluster-Schwachstellen-Scanning, Mapping der internen Netzwerktopologie und Compliance-Verifizierung. Es kann offengelegte Geheimnisse erkennen, Infrastruktur-Templates auf Fehlkonfigurationen analysieren und aktive Ausnutzungsversuche durchführen, um zu verifizieren, ob entdeckte Schwachstellen ausnutzbar sind. Die Anwendung wird als eigenständige ausführbare Datei verpackt, um Laufzeitabhängigkeiten während des Deployments zu entfernen.
Simulates attacker techniques and pod compromises to identify lateral movement paths and exploitability.
AntSword ist ein plattformübergreifender Web-Manager und ein Penetration-Testing-Framework für die zentrale Verwaltung mehrerer Remote-Website-Umgebungen. Es fungiert als Tool für die Remote-Website-Administration und als Web-Shell-Management-Tool, mit dem Benutzer diverse Webserver von einer einzigen Schnittstelle aus organisieren und steuern können. Das Projekt bietet ein Toolkit für Sicherheitsforscher, um autorisierte Sicherheitsaudits durchzuführen und Schwachstellen zu identifizieren. Es unterstützt Workflows für Web-Penetrationstests und Sicherheitsforschung, um das Verhalten von Webanwendungen zu analysieren und potenzielle Exploits zu entdecken. Das System deckt umfassende Funktionen in der Remote-Website-Administration und dem plattformübergreifenden Web-Management ab und ermöglicht die Ausführung administrativer Aufgaben und Sicherheitsüberprüfungen über verschiedene Betriebssysteme und Hosting-Plattformen hinweg.
Serves as a software environment for simulating attacks to identify vulnerabilities during authorized audits.
Nexphisher is a command-line security utility and social engineering simulation framework designed for capturing credentials during authorized security audits. It functions as a tool for credential harvesting and penetration testing to evaluate organizational resilience against phishing attacks. The system orchestrates the deployment of realistic login pages and integrates network tunneling to expose local web servers to the public internet. This allows for remote security testing and the execution of controlled social engineering simulations. The framework provides capabilities for template
Provides a framework for conducting authorized security audits by deploying temporary deceptive web interfaces.
RED_HAWK is a penetration testing framework and reconnaissance suite designed for information gathering and vulnerability assessment. It provides a toolkit for infrastructure reconnaissance, technology stack detection, automated web spidering, and security scanning. The project distinguishes itself through a multi-stage reconnaissance pipeline that maps attack surfaces. This includes DNS-based infrastructure mapping to resolve network layouts and pattern-based detection to identify specific content management systems and server stacks. The system covers a broad range of capabilities includin
Provides a comprehensive software environment for simulating attacks and identifying system vulnerabilities.
WinPwn is a Windows penetration testing framework designed for conducting internal security assessments and privilege escalation. It functions as a suite for Active Directory security auditing, credential extraction, and the execution of privilege escalation scripts. The toolset enables the automation of SMB relay attacks to intercept and reuse authentication hashes. It provides specialized capabilities for retrieving passwords and hashes from system memory, registries, and browsers using obfuscated techniques to avoid detection. The framework covers broad capability areas including domain a
Provides a comprehensive framework for conducting internal security assessments and privilege escalation on Windows environments.
Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili
Provides a comprehensive framework for simulating cyberattacks across the full lifecycle from scanning to covering tracks.
Nexmon is a suite of operational tools designed for firmware patching, ROM extraction, frame injection, and enabling monitor mode on wireless hardware. It provides utilities to modify wireless chip firmware to unlock low-level hardware capabilities not supported by official drivers. The project enables the activation of monitor mode for capturing raw network packets with radiotap headers and allows for the transmission of custom-crafted wireless frames. It includes tools for dumping the read-only memory of wireless chips to facilitate reverse engineering and analysis of hardware behavior. Th
Enables the injection of custom wireless frames to test network security vulnerabilities.
Lockdoor-Framework ist eine modulare Penetration-Testing-Suite, die darauf ausgelegt ist, umfassende Sicherheitsbewertungen über eine zentrale Befehlszeilenschnittstelle zu erleichtern. Sie fungiert als integrierte Plattform für Aufklärung, Schwachstellen-Scanning und die Ausnutzung von Zielsystemen und bietet eine einheitliche Umgebung für die Verwaltung komplexer Sicherheitsworkflows. Das Framework zeichnet sich durch eine modulare Plugin-Architektur aus, die die Erweiterung der Kernfunktionen ohne Modifikation der zugrunde liegenden Codebasis ermöglicht. Es integriert eine automatisierte Aufklärungspipeline zur Abbildung von Angriffsflächen und nutzt externe Tool-Integrationen, um branchenübliche Dienstprogramme zu kapseln, wodurch Benutzer diverse Sicherheitsoperationen innerhalb eines einzigen, kohärenten Systems ausführen können. Das Tool deckt eine breite Palette an Fähigkeiten ab, einschließlich Binäranalyse und Reverse Engineering zur Untersuchung kompilierter Software sowie automatisiertes Webanwendungs-Scanning zur Identifizierung von Injektionsfehlern und Konfigurationsfehlern. Es unterstützt zudem Tests auf Systemebene, wie Privilegieneskalation und Passwort-Auditing, und enthält eine dedizierte Engine zur Aggregation von Ergebnissen in standardisierte Sicherheitsberichte.
Provides a modular suite for executing comprehensive security assessments, reconnaissance, and exploitation workflows within a unified command-line environment.