awesome-repositories.com
ब्लॉग
MCP
awesome-repositories.com

AI-संचालित खोज के साथ बेहतरीन ओपन-सोर्स रिपॉजिटरी खोजें।

एक्सप्लोर करेंक्यूरेटेड खोजेंओपन-सोर्स विकल्पसेल्फ-होस्टेड सॉफ्टवेयरब्लॉगसाइटमैप
प्रोजेक्टMCP सर्वरहमारे बारे मेंहम रैंकिंग कैसे करते हैंप्रेस
कानूनीगोपनीयताशर्तें
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

17 रिपॉजिटरी

Awesome GitHub RepositoriesOffensive Security

Tools and resources for penetration testing and exploitation.

Explore 17 awesome GitHub repositories matching part of an awesome list · Offensive Security. Refine with filters or upvote what's useful.

Awesome Offensive Security GitHub Repositories

AI के साथ बेहतरीन रिपॉजिटरी खोजें।हम AI का उपयोग करके सबसे सटीक रिपॉजिटरी खोजेंगे।
  • swisskyrepo/payloadsallthethingsswisskyrepo का अवतार

    swisskyrepo/PayloadsAllTheThings

    78,434GitHub पर देखें↗

    This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers. It functions as a centralized repository of offensive security techniques, providing a structured collection of exploit payloads, attack vectors, and methodologies for conducting vulnerability assessments and penetration testing. The repository distinguishes itself through a cross-platform payload taxonomy that categorizes exploitation methods by vulnerability type and target environment, enabling rapid lookup during security assessments. It maintains high standards of data i

    Collection of payloads and bypasses for web application security.

    Pythonbountybugbountybypass
    GitHub पर देखें↗78,434
  • trustedsec/social-engineer-toolkittrustedsec का अवतार

    trustedsec/social-engineer-toolkit

    14,984GitHub पर देखें↗

    The Social-Engineer Toolkit is a social engineering framework and penetration testing suite designed to simulate human-centric security attacks. It serves as a phishing simulation tool and credential harvesting utility to evaluate personnel awareness and organizational resilience. The toolkit provides specialized tooling for phishing campaign testing and credential theft simulation. It enables the creation of deceptive emails and landing pages to identify vulnerabilities in how users handle sensitive account information. The system includes capabilities for security awareness training and br

    Advanced framework for simulating social engineering and phishing attacks.

    Python
    GitHub पर देखें↗14,984
  • s0md3v/xsstrikes0md3v का अवतार

    s0md3v/XSStrike

    14,752GitHub पर देखें↗

    XSStrike is an automated security scanning engine designed for web application discovery, input

    Fuzzes and bruteforces parameters to detect and bypass XSS.

    Pythonwaf-detectionxssxss-bruteforce
    GitHub पर देखें↗14,752
  • beefproject/beefbeefproject का अवतार

    beefproject/beef

    10,728GitHub पर देखें↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    Framework for browser-based exploitation and control.

    JavaScript
    GitHub पर देखें↗10,728
  • offensive-security/exploitdboffensive-security का अवतार

    offensive-security/exploitdb

    7,845GitHub पर देखें↗

    ExploitDB is a curated archive of exploit code and vulnerability data designed for penetration testing and security research. It serves as an offensive security knowledge base and a repository of publicly available proof-of-concept code used to validate software flaws. The project provides a searchable collection of historical and current exploit vectors. It supports security threat intelligence by tracking public releases and aids in vulnerability research by providing a reference library for analyzing how specific systems can be compromised. The archive is managed through a curated input p

    Provides real-world exploit examples for studying how to discover and leverage software vulnerabilities.

    GitHub पर देखें↗7,845
  • bc-security/empireBC-SECURITY का अवतार

    BC-SECURITY/Empire

    5,045GitHub पर देखें↗

    Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each

    Post-exploitation framework for managing compromised systems.

    PowerShellc2empirehacktoberfest
    GitHub पर देखें↗5,045
  • cobbr/covenantcobbr का अवतार

    cobbr/Covenant

    4,699GitHub पर देखें↗

    Covenant, रेड टीम ऑपरेशंस और एडवर्सरी सिमुलेशन के लिए डिज़ाइन किया गया एक .NET-आधारित कमांड एंड कंट्रोल फ्रेमवर्क है। यह सुरक्षा असेसमेंट के समन्वय, रिमोट इम्प्लांट्स को मैनेज करने, और एक सेंट्रलाइज्ड सर्वर के माध्यम से समझौता किए गए सिस्टम पर कार्यों को निष्पादित करने के लिए एक सहयोगी प्लेटफॉर्म के रूप में कार्य करता है। यह प्रोजेक्ट अपने डायनामिक पेलोड जनरेटर द्वारा प्रतिष्ठित है, जो डिटेक्शन को बायपास करने के लिए एग्जीक्यूटेबल बाइनरीज और स्क्रिप्ट्स को ऑन-द-फ्लाई कंपाइल और ऑबफस्केट (obfuscate) करता है। यह एक सहयोगी वातावरण के माध्यम से खुद को अलग करता है जो कई प्रमाणित ऑपरेटरों को एक सिंक्रोनाइज़्ड स्टेट साझा करने, परिचालन संकेतकों को ट्रैक करने, और एक ही इंटरफेस के भीतर संयुक्त जुड़ाव को मैनेज करने की अनुमति देता है। यह फ्रेमवर्क ट्रैफिक ऑबफस्केशन के लिए व्यापक क्षमताएं प्रदान करता है, जिसमें कस्टम नेटवर्क प्रोफाइल्स, डेटा ट्रांसफॉर्मेशन पाइपलाइन्स, और संचार को मास्क करने के लिए ब्रिज-आधारित प्रोटोकॉल ट्रांसलेशन का उपयोग शामिल है। यह रिमोट फाइल रिट्रीवल, सेंट्रलाइज्ड क्रेडेंशियल कलेक्शन, और प्लग-इन एक्सटेंशन मॉडल का उपयोग करके कस्टम रिमोट टास्क मॉड्यूल्स के विकास जैसी पोस्ट-एक्सप्लॉइटेशन आवश्यकताओं को भी कवर करता है। यह सिस्टम फॉरवर्ड सीक्रेसी सुनिश्चित करने के लिए SSL सर्टिफिकेट पिनिंग और एन्क्रिप्टेड की-एक्सचेंज का उपयोग करके सर्वर और एजेंट्स के बीच संचार को सुरक्षित करता है।

    Collaborative .NET command and control framework for red teaming.

    C#
    GitHub पर देखें↗4,699
  • securestate/king-phishersecurestate का अवतार

    securestate/king-phisher

    2,551GitHub पर देखें↗

    Phishing Campaign Toolkit

    Toolkit for managing and tracking phishing campaign simulations.

    Python
    GitHub पर देखें↗2,551
  • evilcos/xssor2evilcos का अवतार

    evilcos/xssor2

    2,222GitHub पर देखें↗

    XSS'OR - Hack with JavaScript.

    JavaScript-based XSS exploitation framework.

    JavaScript
    GitHub पर देखें↗2,222
  • h3xduck/triplecrossh3xduck का अवतार

    h3xduck/TripleCross

    1,962GitHub पर देखें↗

    A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.

    Linux rootkit with backdoor and stealth capabilities.

    Cbackdoorebpfkernel
    GitHub पर देखें↗1,962
  • vxunderground/vxug-papersvxunderground का अवतार

    vxunderground/VXUG-Papers

    1,393GitHub पर देखें↗

    This project is a centralized repository and research database dedicated to the collection of technical documentation and source code concerning offensive security, malware development, and system exploitation. It serves as an archive for security professionals and researchers to study threat actor methodologies and historical security research. The repository functions as a static, version-controlled archive that organizes research papers and code samples into a flat-file directory structure. This approach ensures long-term availability and offline access to the materials, while a decentrali

    Offers technical documentation and source code examples to support professional development in offensive security.

    Cmalwaremalware-developmentmalware-research
    GitHub पर देखें↗1,393
  • gui774ume/ebpfkitGui774ume का अवतार

    Gui774ume/ebpfkit

    848GitHub पर देखें↗

    ebpfkit is a rootkit powered by eBPF

    Rootkit leveraging eBPF for offensive techniques.

    C
    GitHub पर देखें↗848
  • pathtofile/bad-bpfpathtofile का अवतार

    pathtofile/bad-bpf

    690GitHub पर देखें↗

    A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29

    Collection of malicious eBPF programs.

    C
    GitHub पर देखें↗690
  • s0md3v/jshells0md3v का अवतार

    s0md3v/JShell

    532GitHub पर देखें↗

    JShell - Get a JavaScript shell with XSS.

    Provides a JavaScript shell via XSS vulnerabilities.

    Python
    GitHub पर देखें↗532
  • gui774ume/ebpfkit-monitorGui774ume का अवतार

    Gui774ume/ebpfkit-monitor

    141GitHub पर देखें↗

    ebpfkit-monitor is a tool that detects and protects against eBPF powered rootkits

    Utility for detecting suspicious eBPF activity.

    C
    GitHub पर देखें↗141
  • cyberh3x/booksC

    cyberh3x/books

    0GitHub पर देखें↗

    Comprehensive collection of security and penetration testing literature.

    GitHub पर देखें↗0
  • wtsxdev/exploit-developmentW

    wtsxDev/Exploit-Development

    0GitHub पर देखें↗

    A curated list of resources (books, tutorials, courses, tools and vulnerable applications) for learning about Exploit Development

    Resources and tutorials for learning exploit development techniques.

    GitHub पर देखें↗0
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Offensive Security

सब-टैग एक्सप्लोर करें

  • Learning ResourcesEducational materials and real-world examples used to teach offensive security techniques. **Distinct from Offensive Security:** Distinct from general offensive security tools by focusing on the educational study of examples.