Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
- 
            Updated
            Oct 23, 2025 
- Shell
Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
A static analysis security vulnerability scanner for Ruby on Rails applications
syzkaller is an unsupervised coverage-guided kernel fuzzer
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
🎯 Command Injection Payload List
🔐 Security advisories as a simple composer exclusion list, updated daily
Create randomly insecure VMs
OWASP Web Application Security Testing Checklist
Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected.
Checklist of security precautions for Ruby on Rails applications.
kunpeng是一个Golang编写的开源POC框架/库,以动态链接库的形式提供各种语言调用,通过此项目可快速开发漏洞检测类的系统。
Subdomain takeover vulnerability checker
Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
RockYou2021.txt is a MASSIVE WORDLIST compiled of various other wordlists. RockYou2021.txt DOES NOT CONTAIN USER:PASS logins!
Open-Source Security Architecture | 开源安全架构
Automatic SQL injection with Charles and sqlmap api
Example of using revealed "Spectre" exploit (CVE-2017-5753 and CVE-2017-5715)
Tracking CVEs for the linux Kernel