awesome-repositories.com
Blog
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

76 repositorios

Awesome GitHub RepositoriesPenetration Testing Toolkits

Comprehensive collections of tools and frameworks for security assessments.

Explore 76 awesome GitHub repositories matching part of an awesome list · Penetration Testing Toolkits. Refine with filters or upvote what's useful.

Awesome Penetration Testing Toolkits GitHub Repositories

Encuentra los mejores repositorios con IA.Buscaremos los repositorios que mejor coincidan usando IA.
  • hack-with-github/awesome-hackingAvatar de Hack-with-Github

    Hack-with-Github/Awesome-Hacking

    114,503Ver en GitHub↗

    This project is a community-maintained, open-source knowledge base that serves as a structured index for cybersecurity resources. It provides a centralized directory of tools, frameworks, and documentation designed to assist security researchers, penetration testers, and developers in hardening digital infrastructure and navigating the security tooling ecosystem. The repository distinguishes itself through a collaborative curation model that relies on distributed user contributions to maintain an accurate and up-to-date registry of technical assets. By organizing information into structured m

    A broad collection of hacking tutorials, tools, and resources.

    androidawesomebug-bounty
    Ver en GitHub↗114,503
  • swisskyrepo/payloadsallthethingsAvatar de swisskyrepo

    swisskyrepo/PayloadsAllTheThings

    78,434Ver en GitHub↗

    This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers. It functions as a centralized repository of offensive security techniques, providing a structured collection of exploit payloads, attack vectors, and methodologies for conducting vulnerability assessments and penetration testing. The repository distinguishes itself through a cross-platform payload taxonomy that categorizes exploitation methods by vulnerability type and target environment, enabling rapid lookup during security assessments. It maintains high standards of data i

    A comprehensive list of payloads and bypasses for web security.

    Pythonbountybugbountybypass
    Ver en GitHub↗78,434
  • minimaxir/big-list-of-naughty-stringsAvatar de minimaxir

    minimaxir/big-list-of-naughty-strings

    47,686Ver en GitHub↗

    This project is a standardized repository of malicious and malformed character sequences designed to stress-test data parsing and sanitization routines. It serves as a security testing corpus and a language-neutral reference for auditing software robustness against injection flaws and unexpected data handling errors across diverse platforms. The dataset functions as a benchmark for input validation, providing a curated collection of edge-case strings that allow developers to identify potential crashes and security vulnerabilities. By decoupling these test vectors from application logic, the r

    A list of strings that cause issues in software.

    Python
    Ver en GitHub↗47,686
  • rapid7/metasploit-frameworkAvatar de rapid7

    rapid7/metasploit-framework

    38,415Ver en GitHub↗

    The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures. The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to

    The industry-standard framework for penetration testing.

    Rubyhacktoberfest
    Ver en GitHub↗38,415
  • alebcay/awesome-shellAvatar de alebcay

    alebcay/awesome-shell

    37,110Ver en GitHub↗

    This project is a community-driven directory that serves as a comprehensive index of command-line tools, frameworks, and resources. It functions as a curated knowledge base designed to help users discover software for enhancing terminal environments and streamlining daily development tasks. The collection is maintained through an open-source contribution model, where community members manually verify and organize resources into structured categories. This collaborative approach ensures the directory remains a reliable reference for finding specialized utilities, alternative shell implementati

    A curated list of command-line frameworks and tools.

    awesomeawesome-listbash
    Ver en GitHub↗37,110
  • bayandin/awesome-awesomenessAvatar de bayandin

    bayandin/awesome-awesomeness

    33,490Ver en GitHub↗

    This project is a community-driven directory that aggregates and categorizes high-quality technical resources, tools, and learning materials. It functions as a centralized knowledge management repository, designed to help developers navigate the software development landscape by providing structured access to curated lists and external project references. The directory relies on a collaborative, peer-reviewed workflow where external contributors submit and maintain links through a version-controlled system. This community-maintained approach ensures that the information remains current and re

    A meta-list of curated awesome lists.

    Ruby
    Ver en GitHub↗33,490
  • ziadoz/awesome-phpAvatar de ziadoz

    ziadoz/awesome-php

    32,573Ver en GitHub↗

    This project is a community-driven directory and knowledge base for the PHP ecosystem. It serves as a comprehensive index of high-quality libraries, frameworks, tools, and educational materials, designed to help developers navigate the landscape and select appropriate solutions for their software projects. The directory distinguishes itself through a hierarchical taxonomy that organizes vast amounts of technical information into a logical, human-readable structure. By relying on distributed contributions from the developer community, it maintains a current and vetted collection of references

    A list of PHP resources, including security tools.

    awesomeawesome-listsphp
    Ver en GitHub↗32,573
  • herrbischoff/awesome-macos-command-lineAvatar de herrbischoff

    herrbischoff/awesome-macos-command-line

    30,263Ver en GitHub↗

    This project is a community-driven repository that serves as a comprehensive reference guide for mastering the command line interface on macOS. It functions as a curated index of high-quality tools, documentation, and best practices designed to assist users in navigating terminal environments and optimizing their development workflows. The directory distinguishes itself through a decentralized, peer-reviewed curation model. By leveraging a structured submission workflow, the content is continuously updated and vetted by contributors to ensure the accuracy and relevance of the listed resources

    Tools and tips for using the macOS terminal.

    awesomeawesome-listlist
    Ver en GitHub↗30,263
  • enaqx/awesome-pentestAvatar de enaqx

    enaqx/awesome-pentest

    26,410Ver en GitHub↗

    A collection of awesome penetration testing resources, tools and other shiny things

    A comprehensive list of penetration testing resources and tools.

    awesomeawesome-list
    Ver en GitHub↗26,410
  • wsargent/docker-cheat-sheetAvatar de wsargent

    wsargent/docker-cheat-sheet

    22,529Ver en GitHub↗

    This project is an administrative reference for Docker, providing guides and command references for system maintenance, image building, network configuration, and security hardening. It serves as a comprehensive manual for managing the container lifecycle and performing general system administration. The reference covers the construction and optimization of images through build files, layering strategies, and registry integration. It also provides instructions for configuring isolated virtual networks, mapping ports, and implementing security hardening using Linux capabilities and read-only f

    A cheat sheet for Docker security and management.

    Ver en GitHub↗22,529
  • vitalysim/awesome-hacking-resourcesAvatar de vitalysim

    vitalysim/Awesome-Hacking-Resources

    17,128Ver en GitHub↗

    A collection of hacking / penetration testing resources to make you better!

    A collection of hacking and penetration testing resources.

    buffer-overflowctfexploit
    Ver en GitHub↗17,128
  • mre/awesome-static-analysisAvatar de mre

    mre/awesome-static-analysis

    14,627Ver en GitHub↗

    ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.

    A list of static analysis tools for various languages.

    Rust
    Ver en GitHub↗14,627
  • qazbnm456/awesome-web-securityAvatar de qazbnm456

    qazbnm456/awesome-web-security

    13,097Ver en GitHub↗

    This project serves as a comprehensive cybersecurity training platform and resource repository focused on web application security. It functions as a centralized hub for security practitioners, providing both a curated collection of technical documentation and research, and a system for deploying isolated, containerized environments to practice security analysis and exploitation techniques. The platform distinguishes itself by integrating automated data aggregation with hands-on, container-based orchestration. It maintains a current knowledge base of industry research and digital threats whil

    Resources dedicated to web application security testing.

    awesomeawesome-listlist
    Ver en GitHub↗13,097
  • brannondorsey/wifi-crackingAvatar de brannondorsey

    brannondorsey/wifi-cracking

    12,399Ver en GitHub↗

    This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar

    Resources for cracking WPA/WPA2 wireless networks.

    aircrack-ngcrackinghacking
    Ver en GitHub↗12,399
  • jopohl/urhAvatar de jopohl

    jopohl/urh

    12,212Ver en GitHub↗

    This project is an integrated software suite and graphical workbench designed for capturing, visualizing, and reverse engineering wireless communication protocols and digital waveforms. It functions as a platform for software-defined radio analysis, enabling the recording of raw radio frequency data from hardware devices to facilitate the investigation of unknown or proprietary communication logic. The software distinguishes itself through a protocol-agnostic data modeling approach that represents radio transmissions as abstract bitstreams, decoupling analysis tools from specific modulation o

    A software-defined radio tool for investigating wireless protocols.

    Pythonairspybladerfhacking
    Ver en GitHub↗12,212
  • redcanaryco/atomic-red-teamAvatar de redcanaryco

    redcanaryco/atomic-red-team

    12,089Ver en GitHub↗

    Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors. It functions as a security control testing framework that uses a library of portable tests to verify if security monitoring and alerting systems correctly identify specific malicious techniques. The project serves as a MITRE ATT&CK emulation framework, mapping individual test executions to a standardized industry taxonomy of adversary behaviors. This mapping allows for the validation of security controls against the MITRE ATT&CK matrix to identify gaps in detection and respon

    A library of tests mapped to the MITRE ATT&CK framework.

    Cmitremitre-attack
    Ver en GitHub↗12,089
  • k4m4/movies-for-hackersAvatar de k4m4

    k4m4/movies-for-hackers

    11,794Ver en GitHub↗

    🎬 A curated list of movies every hacker & cyberpunk must watch.

    A list of movies relevant to hackers and cyberpunk culture.

    Shellawesomeawesome-listcollection
    Ver en GitHub↗11,794
  • apsdehal/awesome-ctfAvatar de apsdehal

    apsdehal/awesome-ctf

    11,614Ver en GitHub↗

    This project is a comprehensive directory of software utilities, frameworks, and educational resources designed for cybersecurity competitions and offensive security research. It serves as a centralized index for tools used in cryptography, forensics, reverse engineering, and web exploitation, while providing structured materials for training and skill development. The repository distinguishes itself through a community-driven maintenance model that aggregates and organizes technical resources into a searchable, hierarchical structure. It facilitates knowledge transfer by cataloging expert pr

    Resources and frameworks for Capture The Flag competitions.

    JavaScriptawesomectfpenetration
    Ver en GitHub↗11,614
  • paralax/awesome-honeypotsAvatar de paralax

    paralax/awesome-honeypots

    10,354Ver en GitHub↗

    an awesome list of honeypot resources

    A list of honeypot resources and tools.

    Pythonawesomeawesome-listhoneyd
    Ver en GitHub↗10,354
  • infosecn1nja/red-teaming-toolkitAvatar de infosecn1nja

    infosecn1nja/Red-Teaming-Toolkit

    10,140Ver en GitHub↗

    Curated collection of tools for red team operations.

    hackinginfosecpentesting
    Ver en GitHub↗10,140
Ant.123…4Siguiente
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Penetration Testing Toolkits