工具说明为英文。

技术工具雷达: Cybersecurity

雷达筛选条件

工具排名

按实测增长排序,并在不同来源间归一化。 原始值保留各自的数据窗口;计算变化需要 7 天内至少两次测量。

  1. 1

    其他
    活跃

    Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding…

    github实测增长打开来源 ↗

    32 155GitHub 星标+3 320 (+11.5 %)
  2. 2

    其他
    活跃

    发现藏在前端代码里的 API,验证未授权访问风险 · 动态浏览器追踪 × JavaScript 静态分析

    github实测增长打开来源 ↗

    324GitHub 星标+95 (+41.5 %)
  3. 3
    活跃

    AI-powered bug bounty hunting toolkit that works with or without subscription.

    github实测增长打开来源 ↗

    4 628GitHub 星标+216 (+4.9 %)
  4. 4

    其他
    活跃

    Cyberful is an open-source AI Red Team for discovering, exploiting, verifying, and remediating vulnerabilities.

    github实测增长打开来源 ↗

    117GitHub 星标+35 (+42.7 %)
  5. 5

    其他
    活跃

    Comfortably monitor your network traffic 🕵️‍♂️

    github实测增长打开来源 ↗

    40 950GitHub 星标+272 (+0.67 %)
  6. 6
    活跃

    OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm: https://www.npmjs.com/package/@openai/codex-security

    github实测增长打开来源 ↗

    10 286GitHub 星标+142 (+1.4 %)
  7. 7

    其他
    活跃

    Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities…

    github实测增长打开来源 ↗

    30 942GitHub 星标+171 (+0.56 %)
  8. 8

    其他
    活跃

    Chrome/Edge 浏览器扩展,5 规则实时检测银狐木马钓鱼仿冒网站。域名仿冒 · ICP备案核查 · 下载拦截 · 链接分析 · 代码工程化 — 零依赖 Manifest V3。

    github实测增长打开来源 ↗

    248GitHub 星标+24 (+10.7 %)
  9. 9

    其他
    活跃

    Test your prompts, agents, and RAGs. Red teaming/pentesting/vulnerability scanning for AI. Compare performance of GPT, Claude, Gemini, DeepSeek, and more. Simple declarative configs with command line and CI/CD integration. Used by OpenAI…

    github实测增长打开来源 ↗

    24 683GitHub 星标+139 (+0.57 %)
  10. 10

    其他
    活跃

    Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

    github实测增长打开来源 ↗

    75 352GitHub 星标+166 (+0.22 %)
  11. 11

    其他
    活跃

    Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

    github实测增长打开来源 ↗

    37 702GitHub 星标+108 (+0.29 %)
  12. 12

    其他
    活跃

    An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

    github实测增长打开来源 ↗

    49 361GitHub 星标+80 (+0.16 %)
  13. 13

    其他
    活跃

    KeePassXC is a cross-platform community-driven port of the Windows application “KeePass Password Safe”.

    github实测增长打开来源 ↗

    28 602GitHub 星标+74 (+0.26 %)
  14. 14

    其他
    活跃

    the LLM vulnerability scanner

    github实测增长打开来源 ↗

    9 079GitHub 星标+56 (+0.62 %)
  15. 15

    其他
    活跃

    The Single Sign-On Multi-Factor portal for web apps, now OpenID Certified™

    github实测增长打开来源 ↗

    28 751GitHub 星标+69 (+0.24 %)
  16. 16

    其他
    活跃

    Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

    github实测增长打开来源 ↗

    16 728GitHub 星标+62 (+0.37 %)
  17. 17

    其他
    活跃

    An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

    github实测增长打开来源 ↗

    44 857GitHub 星标+59 (+0.13 %)
  18. 18

    其他
    活跃

    🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

    github实测增长打开来源 ↗

    54 609GitHub 星标+55 (+0.10 %)

学习与参考资源

按实测增长排序,并在不同来源间归一化。 这些资源可单独访问,不参与主要排名。

  1. 1
    活跃打开来源 ↗

    Building 70 Projects ranging from beginner to advanced so anyone can — learn from, build upon, use as a reference, or even copy directly. Gamified Cybersecurity learning 👇

    github资源实测增长
    6 562GitHub 星标+426 (+6.9 %)
  2. 2
    活跃打开来源 ↗

    OSINT & recon toolkit // 100+ tools, one-command installer, SOCMINT, GEOINT, network recon, dark web, forensics & more.

    github资源实测增长
    2 656GitHub 星标+101 (+4.0 %)
  3. 3

    SecLists

    其他
    活跃打开来源 ↗

    SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads,…

    github资源实测增长
    73 188GitHub 星标+140 (+0.19 %)
  4. 4
    活跃打开来源 ↗

    List of Computer Science courses with video lectures.

    github资源实测增长
    83 304GitHub 星标+130 (+0.16 %)
  5. 5
    活跃打开来源 ↗

    This document curates open-source projects, academic papers, capability benchmarks, and commercial solutions (international & China) in AI penetration testing, LLM red teaming, autonomous offensive agents, and vulnerability discovery—aimed…

    github资源实测增长
    246GitHub 星标+18 (+7.9 %)
  6. 6
    活跃打开来源 ↗

    Community curated list of templates for the nuclei engine to find security vulnerabilities.

    github资源实测增长
    12 889GitHub 星标+54 (+0.42 %)
  7. 7
    活跃打开来源 ↗

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    github资源实测增长
    33 026GitHub 星标+55 (+0.17 %)