-
cargo-auditable
Make production Rust binaries auditable
-
rustsec
Client library for the RustSec security advisory database
-
zizmor
Static analysis for GitHub Actions
-
cargo-vet
Supply-chain security for Rust
-
rustdllproxy
ease the development of proxy DLLs in Rust
-
cosmian_kmip
Cosmian KMIP library
-
clamav-client
ClamAV client library with optional support for async-std, smol, and Tokio
-
cargo-ddd
A cargo subcommand for inspecting what changes brings dependency version update into your project
-
cargo-crev
Distibuted Code REView system for verifying security and quality of Cargo dependencies
-
idalib
Idiomatic bindings to IDA SDK
-
libscemu
x86 32/64bits and system internals emulator, for securely emulating malware and other stuff
-
dinvk
Dynamically invoke arbitrary code in Rust (Dinvoke)
-
walker-common
Common functionality for SBOM and CSAF walker
-
auditable-extract
Extract the dependency trees embedded in binaries by
cargo auditable -
pyscan
python dependency vulnerability scanner
-
aws-sdk-codegurusecurity
AWS SDK for Amazon CodeGuru Security
-
frida-build
Rust bindings for Frida
-
polycvss
CVSS v2, v3, and v4 vector string parser and score calculator
-
aws-sdk-inspector2
AWS SDK for Inspector2
-
endpoint-sec
High-level Rust wrappers around the Endpoint Security Framework
-
codeprism-analysis
Language-agnostic code analysis tools for CodePrism
-
hakoniwa
Process isolation for Linux using namespaces, resource limits, landlock and seccomp
-
hipcheck
Automatically assess and score software packages for supply chain risk
-
lazynmap
A TUI for interactively generating nmap commands
-
skeld
a TUI tool for opening projects inside a restricted sandbox
-
attestation-validator
Validates attestation certificate chains and inspects attestation certificates
-
rhabdomancer
Vulnerability research assistant that locates calls to potentially insecure API functions in a binary file
-
virustotal-rs
Rust SDK for VirusTotal API v3
-
injectum
The modern, type-safe process injection framework for Red Teams and Offensive Security in Rust
-
cargo-sbom
Create software bill of materials (SBOM) for Rust
-
dearxan
Static analyzer and patcher for the Arxan anti-debug/DRM as found in FromSoftware titles
-
secure-types
Secure data types that protect sensitive data in memory via locking and zeroization
-
pysentry
Security vulnerability auditing for Python packages
-
osv
parsing the OSV schema and client API
-
cvssrust
Common Vulnerability Scoring System (v2 / v3.0 / v3.1)
-
cosmian_kms_interfaces
exposing APIs for plugins to the Cosmian KMS
-
dz6
A vim-inspired, TUI-based hexadecimal editor
-
drupal_cracker
This project is a very basic password cracker that cracks Drupal 7, 8, 9, 10, and 11 password hashes from a dictionary of passwords
-
dmg-cracker
performing dictionary attacks on encrypted DMG images on OSX
-
vaas
Check files and hashes for malicious content
-
frida
Rust bindings for Frida
-
firewall_audit
Cross-platform firewall audit tool (YAML/JSON rules, CSV/HTML/JSON export)
-
rattler_sandbox
run executables in a sandbox
-
crevette
Converter for using cargo-crev reviews with cargo-vet
-
ocsf-types
Strongly typed Rust structs for the OCSF (Open Cybersecurity Schema Framework)
-
llm-security
Comprehensive LLM security layer to prevent prompt injection and manipulation attacks
-
aimds-response
Adaptive response layer with meta-learning for AIMDS threat mitigation
-
subhunter
Ferramenta avançada de enumeração de subdomínios para Bug Bounty e Pentest
-
birdcage
Cross-platform embeddable sandbox
-
repl-core
Core REPL engine for the Symbi platform
-
cargo-caps
Audit what a crate is capable of by analyzing what linker symbols it emits
-
microsandbox
Rust SDK for microsandbox - secure self-hosted sandboxes for your AI agents
-
parascope
Weggli ruleset scanner for source code and binaries
-
cargo-audit
Audit Cargo.lock for crates with security vulnerabilities
-
miss-demeanor
Fast, parallel, pluggable process compliance checker
-
ghastoolkit
GitHub Advanced Security Toolkit in Rust
-
dicgen
Generate a list with all combinations for given characters, like in brute force attacks
-
xmtool
Binding
-
judger
A sandboxed environment for running untrusted code safely
-
csaf-validator
A validator for the CSAF standard written in Rust
-
project-absence
👁️ Uncover the unseen
-
hypnus
Memory Obfuscation in Rust
-
panic-analyzer
an audit tool to scan your crate or workspace searching for potential panic points in your codebase
-
goran
CLI tool for analyzing domains and IP addresses
-
threat-intel
Comprehensive threat intelligence framework with multi-source aggregation, CVE integration, and risk assessment
-
linux-audit-parser
Parser for Linxu Audit logs
-
antivirus
not enough! you need PROTOGENT
-
ssec-cli
command-line interface for reading and writing the SSEC file format
-
xgadget
Fast, parallel, cross-variant ROP/JOP gadget search for x86/x64 binaries
-
kindly-guard-cli
Command-line security scanner and monitoring tool for threat detection
-
unicop
scanning source code for potentially malicious unicode code points. Helps prevent Trojan source bidi attacks, homoglyph attacks, invisible character attacks etc. Intended to run manually…
-
fugue-fspec
A binary analysis framework written in Rust
-
threatflux-string-analysis
Advanced string analysis and categorization library for security applications
-
auditable
Audit Rust binaries for known bugs or vulnerabilities in production with zero bookkeeping
-
leucite
sandboxing and limiting command execution
-
process_hollowing
Creates a process and overwrites the entry point with shellcode (default to a reverse shell on localhost:4444)
-
process_migration
Overwrites a running process' next instruction(s) with shellcode (default to a reverse shell on localhost:4444)
-
assemblyline-markings
using access control strings with the Assemblyline malware analysis platform
-
lockb-xray
CLI tool to audit Bun bun.lockb for supply chain risks
-
euvd
API for querying recent vulnerabilities from the ENISA EUVD database
-
passgenz
A secure password generator CLI tool for macOS with clipboard integration
-
actix-web-ratelimit
highly customizable rate limiter for actix-web 4
-
mwemu
x86 32/64bits and system internals emulator, for securely emulating malware and other stuff
-
sbom-walker
work with SBOM data
-
fw-rs
A forensic-grade file destruction utility for securely overwriting and deleting files/directories
-
malwaredb-virustotal-bin
VirusTotal command line client
-
haruspex
Vulnerability research assistant that extracts pseudocode from IDA Hex-Rays decompiler
-
rusty-sandbox
-
oneiromancer
Reverse engineering assistant that uses a locally running LLM to aid with pseudocode analysis
-
jsrs
fast and flexible command-line tool for scanning JavaScript files
-
codeprism-mcp
MCP (Model Context Protocol) compliant server for codeprism
-
cosmian_kms_cli
Command Line Interface used to manage the KMS server If any assistance is needed, please either visit the Cosmian technical documentation at https://docs.cosmian.com or contact the…
-
hexora
Static analysis of malicous Python scripts
-
krater
Reconnaissance orchestrator for offensive security
-
shellcode-loader
shellcode加载器,通过多种方式加载shellcode并对抗EDR检测
-
falco_plugin_api
Autogenerated bindings for the Falco plugin API
-
deepterra
parse terraform and generate a resource dependency graph
-
falco_plugin_runner
Pure-Rust runner for Falco plugins
-
reoxide
Rust-bindings for the ReOxide decompiler extension framework
-
ripgen
A rust-based version of the popular dnsgen python utility
-
cosmian_findex_cli
Command Line Interface used to manage the Findex server. If any assistance is needed, please either visit the Cosmian technical documentation at https://docs.cosmian.com or contact…
-
pathbuster
A path-normalization pentesting tool
-
leguichet
One way diodes with antiviral and yara scanning
-
hakoniwa-cli
Process isolation for Linux using namespaces, resource limits, landlock and seccomp
-
uwd
Call Stack Spoofing for Rust
-
assemblyline-filestore
A blob storage layer for the Assemblyline malware analysis platform
-
cvss
Common Vulnerability Scoring System parser/serializer
-
idalib-sys
Idiomatic bindings to IDA SDK
-
runas-rs
A runas implementation with extra features written in Rust
-
cosmian_findex_server
Cosmian Findex server
-
catsploit
An open-source modern exploitation framework inspired by Metasploit
-
clamav-async
Async ClamAV bindings for Rust
-
steve
Search Technical Evidence Very Easily
-
rust-metasploit
Rust wrapper for metasploit
-
utimaco_pkcs11_loader
Utimaco HSM PKCS#11 loader
-
idalib-build
Idiomatic bindings to IDA SDK
-
sentinel-sdk
Rust SDK for Sentinel LLM Security Gateway
-
tayvo_clamav-client
ClamAV client library
-
wpscan-analyze
Analyzes wpscan json output and checks for vulnerabilities
-
bun-xray-core
Core parsing and security scanning logic for bun.lockb forensic analysis
-
ppfuzz
| x | x | / _..___ | | | | | |/ // / || || ||`//_/ Prototype Pollution Fuzzer @dwisiswant0
-
http_desync_guardian
HTTP/1.1 request analysis to prevent HTTP Desync attacks
-
u-siem-sqlite-store
be used to build a custom SIEM with the framework uSIEM
-
u-siem-paloalto
be used to build a custom SIEM with the framework uSIEM
-
pwn
Pwntools written in Rust
-
auditable2cdx
Command-line tool to recover
cargo auditabledata in CycloneDX format -
u-siem-sonicwall
be used to build a custom SIEM with the framework uSIEM
-
riskcalc
risk analysis and Monte Carlo simulation
-
osintrs
application for OSINT (Open Source Intelligence) gathering and analysis
-
top_level_crate
level
-
coffeeldr
A COFF (Common Object File Format) loader written in Rust
-
nessus-parser
A parser for
.nessus(v2) XML reports -
r2api
rust bindings for the radare2 native APIs
-
reverse_engineering_lib
reverse engineering tasks, including entropy calculation, color-based hex visualization, and PE file analysis
-
abcdict
A better customization password dictionary generator implementation by Rust
-
totally-safe
that allows you to bypass Rust's safety guarantees with totally safe patterns, featuring arbitrary lifetimes, aliasing, and more!
-
rustclr
Host CLR and run .NET binaries using Rust
-
cosmian_kms_client
Cosmian KMS REST Client
-
pmsf
Polymorphic Malware Stage Framework (PMSF): a research-grade Rust framework for simulating and analyzing modular malware stages
-
revolt_clamav-client
ClamAV client library
-
soos-sample-project
SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this package…
-
envy-rs
Generate obfuscated Windows PowerShell payloads that resolve to paths by globbing environment variables
-
libsla-sys
System crate for Ghidra Sleigh library libsla
-
mantid
multitool for security research and development
-
foundyou
A powerful command-line application for OSINT and social engineering
-
u-siem-apache2
be used to build a custom SIEM with the framework uSIEM
-
shinchina
tester
-
keystone-cli
Quick assembler using keystone-engine for CTF
-
rinzler-core
Core library for Rinzler - API scanner data models and database
-
mini-vet
A client for the cargo-vet registry. Fetches security reviews for Rust/Cargo crates.
-
cvss_tools
working with CVSS
-
kmip-derive
Cosmian KMIP Derive Macros
-
clamd-client
Rust async tokio client for clamd. Works with a tcp socket or with the unix socket. At the moment it will open a new socket for each command. Work in progress.
-
bw-picker
CLI tool used to fetch passwords and more from Bitwarden using their Vault API
-
panda-re-sys
The official *-sys library for interfacing with PANDA (Platform for Architecture-Neutral Dynamic Analysis)
-
ShellcodeGenerator
A shellcode generator for quickly exploit development
-
jopcall
Dynamically executed Windows Syscalls via JOP/ROP
-
carbon_14
OSINT dating tool for web pages
-
Malware_Rhapsody
Small researching of Linux's security for fun and education.. don't be silly to use it in wild. Have a great day, Dear Researcher/Scholar 💯❤️
-
yara-forge
A powerful Rust library for crafting, validating, and managing YARA rules
-
fuguex
A binary analysis framework written in Rust
-
fuguex-machine
A binary analysis framework written in Rust
-
augur
Reverse engineering assistant that extracts strings and related pseudocode from a binary file
-
fuguex-loader
A binary analysis framework written in Rust
-
usiem-notioner
Send Alerts to Notion. Library to be used to build a custom SIEM with the framework uSIEM
-
cargo-pants
cargo subcommand application that provides a bill of materials and a list of which dependencies have a vulnerability, powered by Sonatype OSSIndex
-
auditable-serde
Serialize/deserialize data encoded by
cargo auditable -
ExploitBuilder
A exploit builder for quick exploit development
-
debian-repro-status
Check the reproducibility status of your installed Debian packages
-
smtpeek
A state-of-the-art SMTP user enumeration tool that efficiently tests for valid email accounts on SMTP servers while evading detection mechanisms
-
fuguex-microx
A binary analysis framework written in Rust
-
fuguex-intrinsics
A binary analysis framework written in Rust
-
pulsesecurity
Pulse Security SDK
-
whad
Wireless hacking tools
-
io-tubes
functionality like pwntools tube for async io in rust
-
u-siem-opnsense
be used to build a custom SIEM with the framework uSIEM
-
mace
Automated extration of malware configuration, focusing on C2 communication
-
nessus
Vulnerability Scanner API client
-
secbox
Sensitive data container
-
unicode-security
Detect possible security problems with Unicode usage according to Unicode Technical Standard #39 rules
-
mewt
Mutation testing framework with multi-language support
-
version-checker
A clean, easy to use version checker built to help you track problems with your dependencies
-
bp3d-os
Operating System tools designed for BlockProject3D
-
hardened-malloc
Global allocator using GrapheneOS allocator
-
path_ratchet
Prevent path traversal attacks at type level
-
rust-mcp-server-syncable-cli
High-performance Model Context Protocol (MCP) server for code analysis, security scanning, and project insights
-
dictator
structural linter framework with native and WASM decree support
-
supply_poc_again
useless code to test supply chain attacks with cargo and crates.io
-
airgorah
A WiFi security auditing software mainly based on aircrack-ng tools suite
-
u-siem-datasetmanager-sqlite
be used to build a custom SIEM with the framework uSIEM
-
sddl
parse and analyse SDDL Strings
-
yara-x-cli
A command-line interface for YARA-X
-
libsyd
Rust-based C library for syd interaction via /dev/syd
-
rappct
Rust AppContainer / LPAC toolkit for Windows (profiles, capabilities, process launch, diagnostics)
-
reoxide-proc
Proc-macro utility create for the ReOxide Rust-bindings
-
dlna-dmr
An extensible DLNA DMR (Digital Media Renderer) implementation
-
obfustring
Procedural macro that obfuscates string literals with RNG at compile time
-
winaudit
Advanced Windows auditing and security assessment Crate in Rust
-
sublime_node_tools
Node.js bindings for Sublime Workspace CLI Tools via napi-rs
-
ief
Cross-platform binary import/export search