GitStar
GitHub TrendingTopicsLanguages
/

Security Tools GitHub Repositories

Explore popular GitHub repositories tagged “security-tools”.

Compare stars, forks, and programming language using the same GitStar view as GitHub Trending.

RepositoriesGitHub topic
Ranked by:Stars

Trending Repositories

x64dbg/x64dbg

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

C++49,1872,817
KeygraphHQ/shannon

Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.

TypeScript46,9145,413
aquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Go37,470607
lissy93/web-check

🕵️‍♂️ All-in-one OSINT tool for analysing any website

TypeScript34,5292,829
Infisical/infisical

Infisical is the open-source platform for secrets, certificates, and privileged access management.

TypeScript28,8202,208
gitleaks/gitleaks

Find secrets with Gitleaks 🔑

Go28,7962,196
trufflesecurity/trufflehog

Find, verify, and analyze leaked credentials

Go27,5052,539
qeeqbox/social-analyzer

API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites

JavaScript23,7732,290
lissy93/personal-security-checklist

🔒 A compiled checklist of 300+ tips for protecting digital security and privacy in 2026

TypeScript22,1231,457
vxcontrol/pentagi

Fully autonomous AI Agents system capable of performing complex penetration testing tasks

Go21,8862,901
smicallef/spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Python21,1723,403
motdotla/dotenv

Loads environment variables from .env for nodejs projects.

JavaScript20,518954
bee-san/RustScan

🤖 The Modern Port Scanner 🤖

Rust20,2891,374
fail2ban/fail2ban

Daemon to ban hosts that cause multiple authentication errors

Python18,4101,493
wazuh/wazuh

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

C++16,5892,445
CISOfy/lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Shell16,1721,617
NVIDIA/SkillSpector

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.

Python14,7361,226
prowler-cloud/prowler

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment. Connect your agents now and build on the Agentic Cloud Defender.

Python14,6122,324
shadow1ng/fscan

一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。(An intranet comprehensive scanning tool, enabling one-click automated, all-round vulnerability scanning)

Go14,3381,927
secdev/scapy

Scapy: the Python-based interactive packet manipulation program & library.

Python12,4742,236
future-architect/vuls

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

Go12,2321,241
BishopFox/sliver

Adversary Emulation Framework

Go11,6951,572
jason5ng32/MyIP

The best IP Toolbox. Check your IP address & geolocation, test IP for WebRTC and DNS IP leaks, run an IP quality check, browser fingerprint check, website availability check, network speed test, global latency test, MTR test, Whois search, and more.

JavaScript11,6361,218
edoardottt/awesome-hacker-search-engines

A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more

Shell11,0441,055
google/osv-scanner

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Go10,851763
1N3/Sn1per

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Shell10,7802,147
A-poc/RedTeam-Tools

Tools and Techniques for Red Team / Penetration Testing

9,6311,286
toniblyx/my-arsenal-of-aws-security-tools

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

Shell9,4991,578
securego/gosec

Go security checker

Go8,922705
yogeshojha/rengine

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.

HTML8,7811,339
GitStar

See what the GitStar community is most excited about today.

Trending

GitHub Trending TodayGitHub Trending WeeklyGitHub Trending Monthly

Languages

Browse all languagesTrending PythonTrending JavaScript

Explore

Browse GitHub topicsAI repositoriesDeveloper tools
© 2026 GitStarGitHub Trending source