Security

Authentication, cryptography, vulnerability tooling, and security research projects.

72 tracked repositories, ranked by stars.

Filter by topic

72 of 72 repositories

  • affaan-m/ECC

    The agent harness performance optimization system. Skills, instincts, memory, security, and research-first development for Claude Code, Codex, Opencode, Cursor and beyond.

    AI summary: A C-based educational implementation of Elliptic Curve Cryptography illustrating core cryptographic principles.

    272,795securityJavaScriptMIT
  • sherlock-project/sherlock

    Hunt down social media accounts by username across social networks

    AI summary: A powerful command-line tool to hunt down social media accounts by username across hundreds of networks.

    93,231securityPythonMIT
  • NationalSecurityAgency/ghidra

    Ghidra is a software reverse engineering (SRE) framework

    AI summary: A highly extensible software reverse engineering framework created by the NSA for deep binary analysis.

    80,555securityJavaApache-2.0
  • Z4nzu/hackingtool

    ALL IN ONE Hacking Tool For Hackers

    AI summary: An AI-guided, all-in-one toolkit consolidating over 200 cybersecurity tools for authorized penetration testing.

    80,088securityPythonMIT
  • asgeirtj/system_prompts_leaks

    Documented system prompts from Anthropic - Claude Fable 5.1, Opus 5.5, Claude Design, Claude Code. OpenAI - ChatGPT GPT-6-Astra, Codex. Google - Gemini 3.8 Flash, 3.1 Pro, Antigravity. xAI - Grok, Grok Bot, Cursor, Kimi and more! Updated regularly.

    AI summary: An analytical archive of leaked system prompts from major commercial AI applications.

    68,725securityJavaScriptCC0-1.0
  • usestrix/strix

    Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

    AI summary: An open-source AI penetration testing tool utilizing autonomous agents to find and exploit app vulnerabilities.

    66,273securityPythonApache-2.0
  • bannedbook/fanqiang

    翻墙-科学上网

    AI summary: A comprehensive repository of circumvention tools, pre-configured clients, and deployment tutorials for bypassing internet censorship.

    53,839securityKotlin
  • zhaoxuya520/reverse-skill

    Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端

    AI summary: A comprehensive cybersecurity skill routing package that provides structured playbooks and toolchains for AI coding agents.

    39,500securityPowerShellMIT
  • soxoj/maigret

    🕵️‍♂️ Collect a dossier on a person by username from 6K websites

    AI summary: An OSINT tool that collects a dossier on a person by username across 3000+ sites.

    38,217securityPythonMIT
  • mukul975/Anthropic-Cybersecurity-Skills

    817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0

    AI summary: A vast library of structured cybersecurity skills for AI agents, mapped to multiple industry frameworks.

    33,715securityPythonApache-2.0
  • imthenachoman/How-To-Secure-A-Linux-Server

    An evolving how-to guide for securing a Linux server.

    AI summary: A comprehensive, step-by-step guide and reference for hardening and securing internet-facing Linux servers.

    31,747securityCC-BY-SA-4.0
  • vxcontrol/pentagi

    Fully autonomous AI Agents system capable of performing complex penetration testing tasks

    AI summary: An autonomous penetration testing platform powered by a multi-agent system for continuous security validation.

    25,219securityGoMIT
  • cloudflare/security-audit-skill

    A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

    AI summary: An AI agent skill that orchestrates structured, multi-phase security audits to discover vulnerabilities.

    24,130securityJavaScriptMIT
  • smicallef/spiderfoot

    SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

    AI summary: An open-source OSINT automation tool that integrates over 200 data sources for comprehensive threat intelligence and reconnaissance.

    22,742securityPythonMIT
  • m1k1o/neko

    A self hosted virtual browser that runs in docker and uses WebRTC.

    AI summary: A self-hosted virtual browser running in Docker with WebRTC streaming.

    22,440securityGoApache-2.0
  • simplex-chat/simplex-chat

    SimpleX - the first messaging network operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!

    AI summary: A hyper-secure messaging platform operating without user identifiers of any kind to guarantee absolute privacy.

    19,517securityHaskellAGPL-3.0
  • NVIDIA/SkillSpector

    Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.

    AI summary: A specialized security scanner that detects vulnerabilities and malicious patterns in AI agent skills.

    19,325securityPythonApache-2.0
  • ifixai-ai/iFixAi

    Independent Auditing of AI Agents. Run by human or the agent itself, to answer the most crucial question in the AI Agent Economy. Is the agent doing what is supposed to do? With iFixAi you can have this answer in less than 120 seconds.

    AI summary: A specialized CLI tool for evaluating the security vulnerabilities of AI agents.

    18,942securityPythonApache-2.0
  • HunxByts/GhostTrack

    Useful tool to track location or mobile number

    AI summary: A lightweight, Python-based OSINT framework for tracking digital footprints via usernames, phone numbers, and IPs.

    16,985securityPython
  • amnezia-vpn/amnezia-client

    Amnezia VPN Client (Desktop+Mobile)

    AI summary: A multi-platform VPN client designed to seamlessly deploy and connect to self-hosted, obfuscated private networks.

    15,320securityC++GPL-3.0
  • mvt-project/mvt

    MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

    AI summary: A forensic tool for automating the gathering of traces to identify potential compromises of mobile devices.

    15,165securityPythonOther
  • megadose/holehe

    holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.

    AI summary: An OSINT tool that accurately checks if an email address is associated with accounts across over 120 distinct websites.

    15,064securityPythonGPL-3.0
  • TencentCloud/CubeSandbox

    Instant, Concurrent, Secure & Lightweight Sandbox for AI Agents.

    AI summary: A secure, lightweight sandbox environment for safely executing untrusted code in cloud environments.

    12,798securityGoOther
  • nearai/ironclaw

    IronClaw is an Agent OS focused on privacy, security and extensibility

    AI summary: A secure, privacy-focused Agent Operating System designed as an extensible personal AI assistant.

    12,634securityRustApache-2.0
  • jo-inc/camofox-browser

    Stealth headless browser for AI agents — bypass Cloudflare, bot detection, and anti-scraping. Drop-in Puppeteer/Playwright replacement.

    AI summary: An anti-detection browser server that provides fingerprint spoofing at the C++ level for AI agents.

    11,343securityJavaScriptMIT
  • BigBodyCobain/Shadowbroker

    Open-source intelligence for the global theater. Track everything from the corporate/private jets of the wealthy, and spy satellites, to seismic events in one unified interface. Hook an AI agent up to have it parse through data and find previously unseen correlations. The knowledge is available to all but rarely aggregated in the open, until now.

    AI summary: A decentralized geospatial intelligence platform providing real-time OSINT telemetry via a unified map interface.

    11,275securityPythonAGPL-3.0
  • QuipNetwork/hashsigs-rs

    Hash-based post quantum signatures in Rust

    AI summary: A Rust implementation of hash-based, post-quantum cryptographic signatures with Solana integration.

    11,213securityRustAGPL-3.0
  • QuipNetwork/hashsigs-solidity

    Solidity contracts implementing hash based post quantum signatures

    AI summary: A Solidity implementation of the Winternitz One-Time Signature Plus scheme providing post-quantum security.

    11,209securitySolidityAGPL-3.0
  • QuipNetwork/hashsigs-ts

    Hash-based signatures in typescript, WOTS+

    AI summary: TypeScript library for hash-based post-quantum signatures, enabling WOTS+ and SHRinCS signing.

    11,189securityTypeScriptAGPL-3.0
  • QuipNetwork/hashsigs-py

    AI summary: Python implementation of the WOTS+ post-quantum signature scheme with optional Rust acceleration.

    11,182securityPythonAGPL-3.0
  • NoeFabris/opencode-antigravity-auth

    Enable Opencode to authenticate against Antigravity (Google's IDE) via OAuth so you can use Antigravity rate limits and access models like gemini-3-pro and claude-opus-4-5-thinking with your Google credentials.

    AI summary: A secure authentication module built for OpenCode that utilizes Antigravity technology to manage sessions and zero-knowledge proofs.

    10,961securityTypeScriptMIT
  • simplifaisoul/osiris

    Open Source Global Intelligence Platform - Real-Time OSINT Dashboard - A Palantir Alternative - 2nZNHm3Lr9umG3DVrzYwHgktwkuKuJRXqqRqs3ewpump

    AI summary: A GPU-accelerated global OSINT dashboard integrating live flight tracking, CCTV, conflict zones, and crypto tracing.

    10,408securityTypeScriptMIT
  • MDX-Tom/gpt-instruct

    A Codex jailbreak prompt and test pack for gpt. 针对 gpt 系列的 Codex 破甲提示词与测试包。

    AI summary: A comprehensive jailbreak prompt and testing suite specifically targeting the gpt-5.6-sol model's safety filters.

    9,136securityPythonMIT
  • reconurge/flowsint

    A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.

    AI summary: An open-source OSINT graph exploration tool designed for ethical investigation and transparency.

    9,090securityTypeScriptApache-2.0
  • x4gKing/X4G

    AI summary: A fast modern gateway for VLESS tunneling over WebSocket and XHTTP with comprehensive management features.

    8,552securityPython
  • openbao/openbao

    OpenBao is a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys.

    AI summary: An open-source identity-based secrets and encryption management system, forked from HashiCorp Vault.

    8,286securityGoMPL-2.0
  • vercel-labs/deepsec

    Deepsec is a security harness for finding vulnerabilities in your codebase powered by coding agents

    AI summary: An agent-powered vulnerability scanner designed for deep, on-demand review of large-scale codebases.

    8,085securityTypeScriptApache-2.0
  • anthropics/defending-code-reference-harness

    Skills for threat modeling, scanning, triage, patching, plus an autonomous scanning harness you can /customize

    AI summary: A reference implementation for evaluating and defending against vulnerabilities in AI-generated code.

    7,546securityPythonOther
  • trailofbits/skills

    Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

    AI summary: A Claude Code plugin marketplace providing advanced skills for AI-assisted security analysis and code auditing.

    7,348securityPythonCC-BY-SA-4.0
  • SnailSploit/Claude-Red

    claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.

    AI summary: A curated library of offensive security skills that turns Claude into a context-aware red team operator.

    7,234securityPythonMIT