awesome-repositories.comCatégoriesBlog
MCP
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetServeur MCPÀ proposNotre méthodologiePresse
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to nccgroup/singularity

Open-source alternatives to Singularity

30 open-source projects similar to nccgroup/singularity, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Singularity alternative.

  • brannondorsey/dns-rebind-toolkitAvatar de brannondorsey

    brannondorsey/dns-rebind-toolkit

    501Voir sur GitHub↗

    A front-end JavaScript toolkit for creating DNS rebinding attacks.

    JavaScript
    Voir sur GitHub↗501
  • brannondorsey/whonowAvatar de brannondorsey

    brannondorsey/whonow

    661Voir sur GitHub↗

    A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)

    JavaScript
    Voir sur GitHub↗661
  • tarunkant/gopherusAvatar de tarunkant

    tarunkant/Gopherus

    3,386Voir sur GitHub↗

    This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

    Python
    Voir sur GitHub↗3,386
  • mwrlabs/drefAvatar de mwrlabs

    mwrlabs/dref

    493Voir sur GitHub↗

    DNS Rebinding Exploitation Framework

    JavaScript
    Voir sur GitHub↗493
  • assetnote/surfAvatar de assetnote

    assetnote/surf

    755Voir sur GitHub↗

    Escalate your SSRF vulnerabilities on Modern Cloud Environments. surf allows you to filter a list of hosts, returning a list of viable SSRF candidates.

    Go
    Voir sur GitHub↗755
  • voorivex/pentest-guideAvatar de Voorivex

    Voorivex/pentest-guide

    2,761Voir sur GitHub↗

    This project is a comprehensive web application penetration testing guide and vulnerability research framework. It provides a structured methodology for identifying and exploiting security flaws through a phased approach involving reconnaissance, analysis, and exploitation. The resource is distinguished by its use of a curated methodology framework that links theoretical vulnerability patterns to real-world bug bounty reports and historical exploit examples. It includes a payload-based testing library and a reference system that maps specific vulnerability categories to recommended third-part

    bugbountybypassowasp-tests
    Voir sur GitHub↗2,761

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Find more with AI search
  • daffainfo/allaboutbugbountyAvatar de daffainfo

    daffainfo/AllAboutBugBounty

    6,644Voir sur GitHub↗

    AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing. It serves as a reference resource covering common web vulnerabilities and exploitation methods for security researchers, providing a structured approach to identifying and exploiting web application security flaws in bug bounty programs. The repository covers a wide range of attack categories including authentication bypass, cross-site scripting injection, server-side request forgery, web cache poisoning, and business logic abuse. It includes techniques for bypassing access co

    bugbugbountybugbountytips
    Voir sur GitHub↗6,644
  • aboul3la/sublist3rAvatar de aboul3la

    aboul3la/Sublist3r

    10,957Voir sur GitHub↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    Voir sur GitHub↗10,957
  • anchore/grypeAvatar de anchore

    anchore/grype

    12,423Voir sur GitHub↗

    Grype is a command-line security scanner designed to identify known vulnerabilities within container images, filesystems, and software manifests. It functions as a software composition analysis tool that detects security flaws in application components and open-source libraries to support supply chain security. The tool distinguishes itself by reconstructing the final state of container images through layered filesystem inspection and normalizing diverse package formats into a unified dependency graph. It maintains a local cache of security advisories synchronized from multiple upstream sourc

    Gocontainer-imagecontainerscyclonedx
    Voir sur GitHub↗12,423
  • 0xinfection/xsrfprobeAvatar de 0xInfection

    0xInfection/XSRFProbe

    1,288Voir sur GitHub↗

    The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.

    Pythonauditcrafted-tokenscrawler
    Voir sur GitHub↗1,288
  • arpsyndicate/kenzerA

    ARPSyndicate/kenzer

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • arthaud/git-dumperAvatar de arthaud

    arthaud/git-dumper

    2,553Voir sur GitHub↗
    Pythongitsecurityweb
    Voir sur GitHub↗2,553
  • bridgecrewio/checkovAvatar de bridgecrewio

    bridgecrewio/checkov

    8,798Voir sur GitHub↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Python
    Voir sur GitHub↗8,798
  • b1ack0wl/vulnerability-write-upsB

    b1ack0wl/vulnerability-write-ups

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • archerysec/archerysecAvatar de archerysec

    archerysec/archerysec

    2,461Voir sur GitHub↗

    ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

    JavaScript
    Voir sur GitHub↗2,461
  • aquasecurity/trivyAvatar de aquasecurity

    aquasecurity/trivy

    36,462Voir sur GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Voir sur GitHub↗36,462
  • ambionics/phpggcAvatar de ambionics

    ambionics/phpggc

    3,832Voir sur GitHub↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    Voir sur GitHub↗3,832
  • beefproject/beefAvatar de beefproject

    beefproject/beef

    10,728Voir sur GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    Voir sur GitHub↗10,728
  • ben-lichtman/roprB

    Ben-Lichtman/ropr

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • binaryanalysisplatform/qiraAvatar de BinaryAnalysisPlatform

    BinaryAnalysisPlatform/qira

    4,071Voir sur GitHub↗

    Qira is a binary analysis platform and execution tracer that records every instruction and data access during program execution for interactive playback and debugging. It functions as a runtime analysis environment that uses QEMU to trace execution and inspect memory and register states. The system provides a binary static analysis tool that maps program structure and annotates instructions based on captured runtime data. It includes a runtime memory analyzer to monitor reads and writes to specific addresses and an interactive debugger for navigating execution timelines. The platform covers

    C
    Voir sur GitHub↗4,071
  • bishopfox/gitgotAvatar de BishopFox

    BishopFox/GitGot

    1,563Voir sur GitHub↗

    Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

    Pythonfuzzy-matchinggist-searchgists
    Voir sur GitHub↗1,563
  • bishopfox/h2csmugglerAvatar de BishopFox

    BishopFox/h2csmuggler

    780Voir sur GitHub↗
    Pythonbugbountyinfosecsecurity-research
    Voir sur GitHub↗780
  • bishopfox/sliverAvatar de BishopFox

    BishopFox/sliver

    10,707Voir sur GitHub↗

    Sliver is a command and control framework designed for adversary emulation and security assessment operations. It provides a centralized platform for managing remote systems, enabling security professionals to coordinate multi-operator sessions and maintain persistent, secure communication channels across diverse network environments. The framework distinguishes itself through its focus on stealth and infrastructure flexibility. It utilizes dynamic payload obfuscation to generate unique binaries and supports in-memory execution to minimize disk artifacts. Communication is secured through mutu

    Goadversarial-attacksadversary-simulationc2
    Voir sur GitHub↗10,707
  • bjrjk/cve-2022-4262B

    bjrjk/CVE-2022-4262

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • blasty/lexmarkAvatar de blasty

    blasty/lexmark

    207Voir sur GitHub↗

    This repository contains all the work related to Lexmark printers I've released to the public. Most of you are probably here for the firmware decryption utilities; check the tools folder.

    Python
    Voir sur GitHub↗207
  • bcoles/kasldAvatar de bcoles

    bcoles/kasld

    494Voir sur GitHub↗

    KASLD derandomises the Linux kernel's virtual and physical memory layout as an unprivileged local user.

    C
    Voir sur GitHub↗494
  • aquasecurity/kube-hunterAvatar de aquasecurity

    aquasecurity/kube-hunter

    5,064Voir sur GitHub↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    Voir sur GitHub↗5,064
  • bc-security/empireAvatar de BC-SECURITY

    BC-SECURITY/Empire

    5,045Voir sur GitHub↗

    Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each

    PowerShellc2empirehacktoberfest
    Voir sur GitHub↗5,045
  • brompwnie/botbB

    brompwnie/botb

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • barrracud4/image-upload-exploitsB

    barrracud4/image-upload-exploits

    0Voir sur GitHub↗
    Voir sur GitHub↗0