11 dépôts
Provides credentials and focus areas to tailor vulnerability research.
Distinct from Vulnerability Scanning: Distinct from general vulnerability scanning: focuses on user-provided guidance and context.
Explore 11 awesome GitHub repositories matching security & cryptography · Scan Contextualization. Refine with filters or upvote what's useful.
Strix is an automated security research and vulnerability scanning platform that leverages language models to orchestrate complex security analysis tasks. It functions as a comprehensive framework for penetration testing and continuous security integration, allowing users to embed automated vulnerability research directly into development pipelines or execute it within isolated, containerized environments. The platform distinguishes itself through a multi-agent orchestration engine that coordinates specialized autonomous agents to perform parallel security assessments. By integrating LLM-agno
Provides context, credentials, and focus areas to the analysis engine to tailor the scope of vulnerability research.
OWASP ZAP is a dynamic application security testing tool and intercepting HTTP proxy used to find vulnerabilities in web applications. It functions as a penetration testing framework that enables both automated security scanning and manual security testing of running web services. The tool provides a suite of capabilities for analyzing web applications from the outside in, including the ability to capture and modify traffic between a browser and a target application. It is designed to integrate into DevSecOps pipelines to provide consistent security checks across different environments.
Implements an active scanning engine that sends malicious payloads to identify web vulnerabilities.
Prowler is a multi-cloud security posture management platform and vulnerability scanner. It provides tools for automating security audits, evaluating cloud infrastructure against regulatory compliance frameworks, and managing security assessments through a dedicated analysis dashboard. The project distinguishes itself by providing an AI-driven security context server that feeds structured data to AI assistants for automated risk analysis. It also employs graph-based attack path mapping to visualize potential lateral movement and exploitation routes across cloud inventories. The platform cove
Ships a modular scanning engine that executes a library of security checks to identify multi-cloud misconfigurations.
testssl.sh is a suite of diagnostic tools and a network security auditor used to scan network ports for supported encryption protocols, ciphers, and vulnerabilities in TLS and SSL configurations. It functions as a security scanner that evaluates the cryptographic strength of a server by testing all available cipher suites. The tool analyzes server encryption strength and identifies security vulnerabilities or weak settings through TLS and SSL security auditing. It verifies that encryption is properly implemented on specific network ports and evaluates whether only strong and modern encryption
Implements a modular engine to execute sequential security checks for protocol and vulnerability detection.
Tsunami Security Scanner is a network vulnerability scanner and security auditor designed to identify high-severity flaws across network assets. It functions as an asynchronous security probe engine that utilizes automated probes and specialized detection logic to find critical weaknesses and prioritize remediation efforts. The project is distinguished by a plugin-based scanning engine, which uses a modular architecture of interchangeable detection plugins to identify vulnerabilities. This extensibility allows for the development and integration of custom security plugins to expand the variet
Utilizes a modular engine that executes interchangeable detection plugins for vulnerability identification.
Nettacker est un framework de test d'intrusion automatisé conçu pour orchestrer la reconnaissance, le scan de ports et la détection de vulnérabilités. Il fonctionne comme un outil de reconnaissance réseau et un scanner de vulnérabilités qui identifie les ports ouverts, empreinte les services et vérifie les systèmes par rapport à des bases de données de failles de sécurité connues. Le framework se distingue en combinant un crawler d'applications web pour découvrir des chemins cachés via le fuzzing, avec un système de gestion des vulnérabilités qui persiste les résultats des scans dans une base de données pour suivre les évaluations historiques. Il inclut également des capacités spécialisées pour l'énumération de sous-domaines, le brute forcing d'identifiants et la possibilité d'acheminer le trafic via des proxys pour l'anonymisation. Le système couvre une large surface de capacités de sécurité, incluant la découverte d'actifs réseau, l'audit de services multi-protocoles et l'audit de configuration. Il prend en charge le scan multi-cibles sur des plages IP et des blocs CIDR, et fournit des outils pour générer des rapports de sécurité dans plusieurs formats. Un contrôle programmatique est disponible via une interface REST, permettant au framework d'être intégré dans des pipelines de sécurité et des flux d'automatisation.
Implements a network scanning tool that identifies active devices and services across a target network.
Hooker est une boîte à outils pour l'instrumentation dynamique, l'analyse mémoire et la dés-obfuscation d'applications Android. Il fonctionne comme un framework de rétro-ingénierie qui utilise Frida pour injecter des scripts dans des processus en cours d'exécution, surveiller les appels natifs et extraire des fichiers DEX exécutables. Le projet fournit des utilitaires spécialisés pour contourner les contrôles de sécurité, notamment des outils pour désactiver la validation des certificats SSL et le pinning BoringSSL afin de permettre l'interception du trafic HTTPS. Il inclut des capacités pour détecter le packing d'applications, extraire des clés cryptographiques en hookant les algorithmes de chiffrement et contourner les vérifications d'environnement root ou de débogage. Le framework couvre un large éventail de capacités d'analyse, incluant le scan mémoire pour la détection de composants actifs, la configuration de proxy SOCKS5 pour le routage du trafic réseau et l'analyse d'interaction UI. Il prend également en charge la collecte d'empreintes numériques d'appareils et le débogage de WebViews intégrées.
A toolkit for scanning application memory to detect active services and map component addresses.
Kube-hunter est un scanner de sécurité et un chasseur de vulnérabilités pour les clusters Kubernetes. Il opère comme un outil de pénétration cloud-native conçu pour identifier les faiblesses de sécurité, les mauvaises configurations d'infrastructure et les lacunes exploitables en simulant des techniques d'attaquants. L'outil se distingue par un moteur de scan en mode dual qui exécute à la fois des sondes externes distantes et des scans réseau internes. Il dispose d'une usurpation d'identité, lui permettant d'utiliser des jetons de compte de service et des identités de pod pour simuler l'accès de sécurité à partir de rôles de cluster spécifiques et déterminer le rayon d'explosion potentiel d'un compromis de conteneur. Le projet couvre une large surface de capacités d'évaluation de sécurité, incluant le scan de vulnérabilités de cluster, la cartographie de topologie réseau interne et la vérification de conformité. Il peut détecter des secrets exposés, analyser des templates d'infrastructure pour des mauvaises configurations et effectuer des tentatives d'exploitation actives pour vérifier que les vulnérabilités découvertes sont exploitables. L'application est packagée sous forme d'exécutable autonome pour supprimer les dépendances runtime pendant le déploiement.
Implements an active scanning engine that executes both remote probes and internal network scans to identify vulnerabilities.
Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t
Injects cookies or custom headers to scan protected or stateful application areas.
ShuiZe_0x727 is an open-source intelligence gathering framework and attack surface management tool. It functions as an asset discovery engine and cyber intelligence aggregator designed to identify internet-facing assets, map network infrastructure, and visualize total network exposure. The project integrates vulnerability scanning and sensitive data leak detection to identify security weaknesses and unauthorized access points. It employs a combination of network space API queries, certificate log analysis, and public repository scanning to extract leaked credentials, API keys, and internal ad
Employs a modular scanning engine to execute isolated vulnerability tests and port scanning routines.
Cloudsploit is a cloud security posture management tool and multi-cloud security auditor. It audits cloud infrastructure for misconfigurations and compliance risks across multiple providers, specifically AWS and Azure, by evaluating resource configurations against a set of security plugins. The project functions as a cloud compliance scanner that maps infrastructure scan results to regulatory frameworks and security policy standards. It also serves as an automated cloud remediation tool, executing corrective actions to fix detected misconfigurations via SDK calls. The system covers resource
Uses a modular engine to execute a library of security check plugins across cloud environments.