awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目MCP 服务器关于排名机制媒体报道
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to nccgroup/singularity

Open-source alternatives to Singularity

30 open-source projects similar to nccgroup/singularity, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Singularity alternative.

  • brannondorsey/dns-rebind-toolkitbrannondorsey 的头像

    brannondorsey/dns-rebind-toolkit

    501在 GitHub 上查看↗

    A front-end JavaScript toolkit for creating DNS rebinding attacks.

    JavaScript
    在 GitHub 上查看↗501
  • brannondorsey/whonowbrannondorsey 的头像

    brannondorsey/whonow

    661在 GitHub 上查看↗

    A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)

    JavaScript
    在 GitHub 上查看↗661
  • tarunkant/gopherustarunkant 的头像

    tarunkant/Gopherus

    3,386在 GitHub 上查看↗

    This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

    Python
    在 GitHub 上查看↗3,386
  • mwrlabs/drefmwrlabs 的头像

    mwrlabs/dref

    493在 GitHub 上查看↗

    DNS Rebinding Exploitation Framework

    JavaScript
    在 GitHub 上查看↗493
  • assetnote/surfassetnote 的头像

    assetnote/surf

    755在 GitHub 上查看↗

    Escalate your SSRF vulnerabilities on Modern Cloud Environments. surf allows you to filter a list of hosts, returning a list of viable SSRF candidates.

    Go
    在 GitHub 上查看↗755
  • voorivex/pentest-guideVoorivex 的头像

    Voorivex/pentest-guide

    2,761在 GitHub 上查看↗

    This project is a comprehensive web application penetration testing guide and vulnerability research framework. It provides a structured methodology for identifying and exploiting security flaws through a phased approach involving reconnaissance, analysis, and exploitation. The resource is distinguished by its use of a curated methodology framework that links theoretical vulnerability patterns to real-world bug bounty reports and historical exploit examples. It includes a payload-based testing library and a reference system that maps specific vulnerability categories to recommended third-part

    bugbountybypassowasp-tests
    在 GitHub 上查看↗2,761

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Find more with AI search
  • daffainfo/allaboutbugbountydaffainfo 的头像

    daffainfo/AllAboutBugBounty

    6,644在 GitHub 上查看↗

    AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing. It serves as a reference resource covering common web vulnerabilities and exploitation methods for security researchers, providing a structured approach to identifying and exploiting web application security flaws in bug bounty programs. The repository covers a wide range of attack categories including authentication bypass, cross-site scripting injection, server-side request forgery, web cache poisoning, and business logic abuse. It includes techniques for bypassing access co

    bugbugbountybugbountytips
    在 GitHub 上查看↗6,644
  • aboul3la/sublist3raboul3la 的头像

    aboul3la/Sublist3r

    10,957在 GitHub 上查看↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    在 GitHub 上查看↗10,957
  • anchore/grypeanchore 的头像

    anchore/grype

    12,423在 GitHub 上查看↗

    Grype is a command-line security scanner designed to identify known vulnerabilities within container images, filesystems, and software manifests. It functions as a software composition analysis tool that detects security flaws in application components and open-source libraries to support supply chain security. The tool distinguishes itself by reconstructing the final state of container images through layered filesystem inspection and normalizing diverse package formats into a unified dependency graph. It maintains a local cache of security advisories synchronized from multiple upstream sourc

    Gocontainer-imagecontainerscyclonedx
    在 GitHub 上查看↗12,423
  • 0xinfection/xsrfprobe0xInfection 的头像

    0xInfection/XSRFProbe

    1,288在 GitHub 上查看↗

    The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.

    Pythonauditcrafted-tokenscrawler
    在 GitHub 上查看↗1,288
  • arpsyndicate/kenzerA

    ARPSyndicate/kenzer

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • arthaud/git-dumperarthaud 的头像

    arthaud/git-dumper

    2,553在 GitHub 上查看↗
    Pythongitsecurityweb
    在 GitHub 上查看↗2,553
  • bridgecrewio/checkovbridgecrewio 的头像

    bridgecrewio/checkov

    8,798在 GitHub 上查看↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Python
    在 GitHub 上查看↗8,798
  • b1ack0wl/vulnerability-write-upsB

    b1ack0wl/vulnerability-write-ups

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • archerysec/archerysecarcherysec 的头像

    archerysec/archerysec

    2,461在 GitHub 上查看↗

    ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

    JavaScript
    在 GitHub 上查看↗2,461
  • aquasecurity/trivyaquasecurity 的头像

    aquasecurity/trivy

    36,462在 GitHub 上查看↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    在 GitHub 上查看↗36,462
  • ambionics/phpggcambionics 的头像

    ambionics/phpggc

    3,832在 GitHub 上查看↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    在 GitHub 上查看↗3,832
  • beefproject/beefbeefproject 的头像

    beefproject/beef

    10,728在 GitHub 上查看↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    在 GitHub 上查看↗10,728
  • ben-lichtman/roprB

    Ben-Lichtman/ropr

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • binaryanalysisplatform/qiraBinaryAnalysisPlatform 的头像

    BinaryAnalysisPlatform/qira

    4,071在 GitHub 上查看↗

    Qira is a binary analysis platform and execution tracer that records every instruction and data access during program execution for interactive playback and debugging. It functions as a runtime analysis environment that uses QEMU to trace execution and inspect memory and register states. The system provides a binary static analysis tool that maps program structure and annotates instructions based on captured runtime data. It includes a runtime memory analyzer to monitor reads and writes to specific addresses and an interactive debugger for navigating execution timelines. The platform covers

    C
    在 GitHub 上查看↗4,071
  • bishopfox/gitgotBishopFox 的头像

    BishopFox/GitGot

    1,563在 GitHub 上查看↗

    Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

    Pythonfuzzy-matchinggist-searchgists
    在 GitHub 上查看↗1,563
  • bishopfox/h2csmugglerBishopFox 的头像

    BishopFox/h2csmuggler

    780在 GitHub 上查看↗
    Pythonbugbountyinfosecsecurity-research
    在 GitHub 上查看↗780
  • bishopfox/sliverBishopFox 的头像

    BishopFox/sliver

    10,707在 GitHub 上查看↗

    Sliver is a command and control framework designed for adversary emulation and security assessment operations. It provides a centralized platform for managing remote systems, enabling security professionals to coordinate multi-operator sessions and maintain persistent, secure communication channels across diverse network environments. The framework distinguishes itself through its focus on stealth and infrastructure flexibility. It utilizes dynamic payload obfuscation to generate unique binaries and supports in-memory execution to minimize disk artifacts. Communication is secured through mutu

    Goadversarial-attacksadversary-simulationc2
    在 GitHub 上查看↗10,707
  • bjrjk/cve-2022-4262B

    bjrjk/CVE-2022-4262

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • blasty/lexmarkblasty 的头像

    blasty/lexmark

    207在 GitHub 上查看↗

    This repository contains all the work related to Lexmark printers I've released to the public. Most of you are probably here for the firmware decryption utilities; check the tools folder.

    Python
    在 GitHub 上查看↗207
  • bcoles/kasldbcoles 的头像

    bcoles/kasld

    494在 GitHub 上查看↗

    KASLD derandomises the Linux kernel's virtual and physical memory layout as an unprivileged local user.

    C
    在 GitHub 上查看↗494
  • aquasecurity/kube-hunteraquasecurity 的头像

    aquasecurity/kube-hunter

    5,064在 GitHub 上查看↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    在 GitHub 上查看↗5,064
  • bc-security/empireBC-SECURITY 的头像

    BC-SECURITY/Empire

    5,045在 GitHub 上查看↗

    Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and manages agents written in PowerShell, Python, C#, Go, and C across Windows, Linux, and macOS, using encrypted communication channels over HTTP, HTTPS, and SMB. The framework executes over 400 built-in modules for reconnaissance, privilege escalation, credential theft, and lateral movement, and provides a modular engine for authoring custom attack modules. What sets Empire apart is its multi-language agent deployment system, which allows operators to choose implants that suit each

    PowerShellc2empirehacktoberfest
    在 GitHub 上查看↗5,045
  • brompwnie/botbB

    brompwnie/botb

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • barrracud4/image-upload-exploitsB

    barrracud4/image-upload-exploits

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0