工具说明为英文。

技术工具雷达: Cybersecurity

雷达筛选条件

工具排名

按实测增长排序,并在不同来源间归一化。 原始值保留各自的数据窗口;计算变化需要 7 天内至少两次测量。

  1. 1

    其他
    活跃

    发现藏在前端代码里的 API,验证未授权访问风险 · 动态浏览器追踪 × JavaScript 静态分析

    github实测增长打开来源 ↗

    344GitHub 星标+82 (+31.3 %)
  2. 2
    活跃

    AI-powered bug bounty hunting toolkit that works with or without subscription.

    github实测增长打开来源 ↗

    4 693GitHub 星标+127 (+2.8 %)
  3. 3
    活跃

    OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm: https://www.npmjs.com/package/@openai/codex-security

    github实测增长打开来源 ↗

    10 359GitHub 星标+111 (+1.1 %)
  4. 4

    其他
    活跃

    Cyberful is an open-source AI Red Team for discovering, exploiting, verifying, and remediating vulnerabilities.

    github实测增长打开来源 ↗

    120GitHub 星标+9 (+8.1 %)
  5. 5

    其他
    活跃

    An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

    github实测增长打开来源 ↗

    44 902GitHub 星标+62 (+0.14 %)
  6. 6

    其他
    活跃

    KeePassXC is a cross-platform community-driven port of the Windows application “KeePass Password Safe”.

    github实测增长打开来源 ↗

    28 659GitHub 星标+57 (+0.20 %)
  7. 7

    其他
    活跃

    The Single Sign-On Multi-Factor portal for web apps, now OpenID Certified™

    github实测增长打开来源 ↗

    28 789GitHub 星标+56 (+0.19 %)
  8. 8

    其他
    活跃

    Chrome/Edge 浏览器扩展,5 规则实时检测银狐木马钓鱼仿冒网站。域名仿冒 · ICP备案核查 · 下载拦截 · 链接分析 · 代码工程化 — 零依赖 Manifest V3。

    github实测增长打开来源 ↗

    259GitHub 星标+12 (+4.9 %)
  9. 9

    其他
    活跃

    An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

    github实测增长打开来源 ↗

    49 390GitHub 星标+53 (+0.11 %)
  10. 10

    其他
    活跃

    the LLM vulnerability scanner

    github实测增长打开来源 ↗

    9 106GitHub 星标+40 (+0.44 %)
  11. 11

    其他
    活跃

    PoCs and exploits for CVEs discovered by NebuSec.

    github实测增长打开来源 ↗

    1 472GitHub 星标+23 (+1.6 %)
  12. 12

    其他
    活跃

    Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh

    github实测增长打开来源 ↗

    1 227GitHub 星标+21 (+1.7 %)
  13. 13

    其他
    活跃

    Fully autonomous AI Agents system capable of performing complex penetration testing tasks

    github实测增长打开来源 ↗

    22 272GitHub 星标+40 (+0.18 %)
  14. 14

    其他
    活跃

    🕵️‍♂️ All-in-one OSINT tool for analysing any website

    github实测增长打开来源 ↗

    34 652GitHub 星标+36 (+0.10 %)
  15. 15

    其他
    活跃

    EMBA - The firmware security analyzer

    github实测增长打开来源 ↗

    3 640GitHub 星标+23 (+0.64 %)
  16. 16

    其他
    活跃

    一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。(An intranet comprehensive scanning tool, enabling one-click automated, all-round vulnerability scanning)

    github实测增长打开来源 ↗

    14 503GitHub 星标+30 (+0.21 %)
  17. 17

    其他
    活跃

    reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

    github实测增长打开来源 ↗

    8 060GitHub 星标+27 (+0.34 %)
  18. 18

    其他
    活跃

    Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.

    github实测增长打开来源 ↗

    6 603GitHub 星标+25 (+0.38 %)
  19. 19

    其他
    活跃

    PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.

    github实测增长打开来源 ↗

    3 039GitHub 星标+20 (+0.66 %)
  20. 20

    其他
    活跃

    Open Cyber Threat Intelligence Platform

    github实测增长打开来源 ↗

    9 890GitHub 星标+25 (+0.25 %)

学习与参考资源

按实测增长排序,并在不同来源间归一化。 这些资源可单独访问,不参与主要排名。

  1. 1
    活跃打开来源 ↗

    Building 70 Projects ranging from beginner to advanced so anyone can — learn from, build upon, use as a reference, or even copy directly. Gamified Cybersecurity learning 👇

    github资源实测增长
    6 690GitHub 星标+207 (+3.2 %)
  2. 2
    活跃打开来源 ↗

    OSINT & recon toolkit // 100+ tools, one-command installer, SOCMINT, GEOINT, network recon, dark web, forensics & more.

    github资源实测增长
    2 682GitHub 星标+47 (+1.8 %)
  3. 3
    活跃打开来源 ↗

    This document curates open-source projects, academic papers, capability benchmarks, and commercial solutions (international & China) in AI penetration testing, LLM red teaming, autonomous offensive agents, and vulnerability discovery—aimed…

    github资源实测增长
    254GitHub 星标+12 (+5.0 %)
  4. 4

    h4cker

    其他
    活跃打开来源 ↗

    This repository is maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), AI security, vulnerability research, exploit…

    github资源实测增长
    29 264GitHub 星标+48 (+0.16 %)
  5. 5
    活跃打开来源 ↗

    🛡️ Comprehensive Cybersecurity Arsenal, Bug Bounty Payloads & Security Audit Tools by IKONA ONI

    github资源实测增长
    117GitHub 星标+7 (+6.4 %)