awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to markcyber/badusb

Open-source alternatives to BadUSB

30 open-source projects similar to markcyber/badusb, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best BadUSB alternative.

  • aflplusplus/aflplusplusAFLplusplus avatar

    AFLplusplus/AFLplusplus

    6,605View on GitHub↗

    AFL++ is a coverage-guided fuzzing framework that discovers crashes and hangs in software by mutating inputs while tracking which code paths are exercised. It functions as both a fuzzing engine and a campaign manager, supporting targets with or without source code through compile-time instrumentation, dynamic binary instrumentation, and emulation. The framework includes tools for crash triage and analysis, test case minimization, and campaign deployment across local or distributed environments. The framework distinguishes itself through its breadth of instrumentation backends, allowing users

    C
    View on GitHub↗6,605
  • alebcay/awesome-shellalebcay avatar

    alebcay/awesome-shell

    37,110View on GitHub↗

    This project is a community-driven directory that serves as a comprehensive index of command-line tools, frameworks, and resources. It functions as a curated knowledge base designed to help users discover software for enhancing terminal environments and streamlining daily development tasks. The collection is maintained through an open-source contribution model, where community members manually verify and organize resources into structured categories. This collaborative approach ensures the directory remains a reliable reference for finding specialized utilities, alternative shell implementati

    awesomeawesome-listbash
    View on GitHub↗37,110
  • aleff-github/my-flipper-shitsaleff-github avatar

    aleff-github/my-flipper-shits

    1,770View on GitHub↗

    Free and libre source BadUSB payloads for Flipper Zero. Windows, GNU/Linux, iOS

    HTMLbadusbbadusb-payloadsduckyscript
    View on GitHub↗1,770

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • alexanderyastrebov/age-vanity-keygenAlexanderYastrebov avatar

    AlexanderYastrebov/age-vanity-keygen

    8View on GitHub↗

    This tool generates age X25519 identity with a recipient that has a specified prefix. The output is identical to age-keygen.

    Go
    View on GitHub↗8
  • alichtman/strongholdalichtman avatar

    alichtman/stronghold

    1,190View on GitHub↗

    Easily configure macOS security settings from the terminal.

    Pythoncommand-linecommand-line-toolhardening
    View on GitHub↗1,190
  • archerysec/archerysecarcherysec avatar

    archerysec/archerysec

    2,461View on GitHub↗

    ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

    JavaScript
    View on GitHub↗2,461
  • assetnote/kiterunnerassetnote avatar

    assetnote/kiterunner

    3,204View on GitHub↗

    Contextual Content Discovery Tool

    Go
    View on GitHub↗3,204
  • aws-samples/aws-serverless-security-workshopaws-samples avatar

    aws-samples/aws-serverless-security-workshop

    543View on GitHub↗

    In this workshop, you will learn techniques to secure a serverless application built with AWS Lambda, Amazon API Gateway and RDS Aurora. We will cover AWS services and features you can leverage to improve the security of a serverless applications in 5 domains:

    JavaScript
    View on GitHub↗543
  • bad-antics/nullsec-linuxbad-antics avatar

    bad-antics/nullsec-linux

    60View on GitHub↗

    🐧 Security-focused Linux distribution with 140+ tools, custom kernel 6.17.13, AI assistant | 5 editions | Cloud, AI/ML, Automotive, Hardware hacking

    Shell
    View on GitHub↗60
  • bad-antics/nullsec-webfuzzbad-antics avatar

    bad-antics/nullsec-webfuzz

    6View on GitHub↗

    Rust web fuzzer - async/await, Tokio, directory brute-force

    Makefile
    View on GitHub↗6
  • beefproject/beefbeefproject avatar

    beefproject/beef

    10,728View on GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    View on GitHub↗10,728
  • berzerk0/probable-wordlistsberzerk0 avatar

    berzerk0/Probable-Wordlists

    9,289View on GitHub↗

    Probable-Wordlists is a collection of curated data resources providing password frequency lists, character masks, and common identity identifiers for security research. These resources serve as credential analysis tools to identify popular password trends and support the creation of secure credentials. The project provides password frequency wordlists and security research wordlists, including common usernames and top-level domains. It includes password recovery datasets featuring character masks and rule sets designed to analyze vulnerability patterns. The repository covers a broad range of

    dictionarydictionary-attackpassword
    View on GitHub↗9,289
  • biox/pabiox avatar

    biox/pa

    562View on GitHub↗

    pa a simple password manager https://passwordass.org

    Shell
    View on GitHub↗562
  • bjeborn/basic-auth-potbjeborn avatar

    bjeborn/basic-auth-pot

    54View on GitHub↗

    bap - http Basic Authentication honeyPot

    Python
    View on GitHub↗54
  • blessedrebus/krawlBlessedRebuS avatar

    BlessedRebuS/Krawl

    545View on GitHub↗

    Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging vulnerabilities using realistic, randomly generated decoy data and AI-generated HTML templates.

    Python
    View on GitHub↗545
  • bountyyfi/lonkerobountyyfi avatar

    bountyyfi/lonkero

    929View on GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    View on GitHub↗929
  • clong/detectionlabclong avatar

    clong/DetectionLab

    4,904View on GitHub↗

    DetectionLab is a reproducible Windows Active Directory security lab designed for testing detection capabilities. It uses an automation framework based on Vagrant and Packer to provision virtualized networks across multiple hypervisors and cloud platforms. The project utilizes Ansible for the declarative installation and configuration of domain services and endpoint security tools. It incorporates a browser-based remote access interface via Apache Guacamole to manage laboratory hosts without requiring standalone remote desktop clients. The environment includes a telemetry pipeline that aggre

    HTMLansibledetectiondetectionlab
    View on GitHub↗4,904
  • cn0xroot/rfsec-toolkitcn0xroot avatar

    cn0xroot/RFSec-ToolKit

    1,705View on GitHub↗

    RFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools.无线通信协议相关的工具集,可借助SDR硬件+相关工具对无线通信进行研究。Collect with ♥ by HackSmith

    bladerfcommunicationfuzzing
    View on GitHub↗1,705
  • commixproject/commixcommixproject avatar

    commixproject/commix

    5,757View on GitHub↗

    Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It probes user-supplied input vectors with heuristic test payloads, analyzes response differences to identify injection points, and then automates the execution of arbitrary operating system commands on the target server. The tool distinguishes itself through a multi-layer filter bypass engine that evaluates input constraints independently per filter type and composes tailored evasion strategies into a single payload. A modular payload tamper pipeline transforms raw injection str

    Python
    View on GitHub↗5,757
  • cugu/awesome-forensicscugu avatar

    cugu/awesome-forensics

    4,911View on GitHub↗
    computer-forensicsdfirdigital-forensics
    View on GitHub↗4,911
  • danmcinerney/dnsspoofDanMcInerney avatar

    DanMcInerney/dnsspoof

    294View on GitHub↗

    DNS spoofer. Drops DNS responses from the router and replaces it with the spoofed DNS response

    Python
    View on GitHub↗294
  • davidprobinsky/redteam-physical-toolsDavidProbinsky avatar

    DavidProbinsky/RedTeam-Physical-Tools

    583View on GitHub↗

    Red Team Toolkit - A curated list of tools that are commonly used in the field for Physical Security, Red Teaming, and Tactical Covert Entry.

    edcethicalhackinghacking
    View on GitHub↗583
  • denispodgurskii/pentestkitDenisPodgurskii avatar

    DenisPodgurskii/pentestkit

    220View on GitHub↗

    OWASP PTK - application security browser extension.

    JavaScript
    View on GitHub↗220
  • ebookfoundation/free-programming-booksEbookFoundation avatar

    EbookFoundation/free-programming-books

    390,347View on GitHub↗

    This project is a centralized, open-access repository that serves as a structured directory for technical education and professional development. It functions as a community-driven knowledge base, aggregating high-quality learning materials to support global accessibility to computer science and software engineering resources. The platform distinguishes itself through a collaborative governance model that utilizes peer-reviewed workflows for all content additions and modifications. By leveraging structured text files and decentralized version control, the repository maintains a searchable, hu

    Pythonbookseducationhacktoberfest
    View on GitHub↗390,347
  • espreto/wpsploitespreto avatar

    espreto/wpsploit

    233View on GitHub↗

    WPSploit - Exploiting Wordpress With Metasploit

    Ruby
    View on GitHub↗233
  • falsephilosopher/badusbFalsePhilosopher avatar

    FalsePhilosopher/badusb

    1,914View on GitHub↗

    Flipper Zero badusb payload library

    PowerShell
    View on GitHub↗1,914
  • filosottile/passageFiloSottile avatar

    FiloSottile/passage

    1,157View on GitHub↗

    passage

    Shell
    View on GitHub↗1,157
  • flibustier/jwt-online-crackerflibustier avatar

    flibustier/jwt-online-cracker

    20View on GitHub↗

    Brute-force a JWT HS256, HS384 or HS512 from your browser (online)

    Vue
    View on GitHub↗20
  • future-architect/vulsfuture-architect avatar

    future-architect/vuls

    12,185View on GitHub↗

    Vuls is an agentless vulnerability scanner and CVE intelligence aggregator. It identifies security flaws in operating systems, containers, and network devices without requiring the installation of permanent software agents on target machines. The project distinguishes itself by cross-referencing software versions against multiple vulnerability databases, security advisories, and known exploit catalogs. It utilizes platform-based enumeration and lockfile analysis to detect vulnerabilities in network hardware, programming libraries, and website plugins. The tool covers a broad range of securit

    Go
    View on GitHub↗12,185
  • 1n3/sn1per1N3 avatar

    1N3/Sn1per

    10,049View on GitHub↗

    Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate reconnaissance, vulnerability scanning, and exploit verification. It functions as a dockerized security toolkit that coordinates multiple tools into a unified automated pipeline to identify security flaws across network and web assets. The platform features an attack surface manager for discovering internet-facing assets through OSINT, DNS enumeration, and certificate transparency. It distinguishes itself with an AI-powered security analyzer that uses large language models to summarize scan

    Shellattack-surfaceattack-surface-managementattacksurface
    View on GitHub↗10,049