Skip to content

Tools

Offensive & Pentesting tools 19 tools

Submit tool
Health

19 tools

Prowler Healthy open source

Tool based on AWS-CLI commands for Amazon Web Services account security assessment and hardening.

Anubis Mixed open source

Web AI firewall utility which protects upstream resources from scraper bots.

cap Healthy open source

The privacy-first, self-hosted CAPTCHA for the modern web.

sysreptor Healthy open source

A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automate your pentest reports with ease.

Apktool Healthy open source

A tool for reverse engineering Android apk files

Recog Healthy open source

Pattern recognition for hosts, services, and content

OWASP Mobile Security Testing Guide Healthy open source

A comprehensive manual for mobile app security testing and reverse engineering.

Stratus Red Team | DataDog Healthy open source

cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

pentest-ai Healthy open source

Offensive-security MCP server with 205 wrapped tools, 17 specialist agents, and 60 SPA-aware probes for OWASP Top 10. CLI + MCP, BYO LLM. No API key needed on MCP path.

jadx Healthy open source

Dex to Java decompiler

shellfirm Mixed open source

Safety guardrails for ai coding agents and human terminal commands

FlareSolverr Mixed open source

Proxy server to bypass Cloudflare protection

cyntrisec/cyntrisec-cli Mixed open source

Local-first AWS security analyzer that discovers attack paths and generates remediations using graph theory.

NullSec Linux At Risk open source

Security-focused Linux distribution with 140+ pre-installed forensic and offensive security tools, custom hardened kernel, and integrated incident response workflows.

frida At Risk open source

Clone this repo to build Frida

Lonkero At Risk open source

Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

AI-Infra-Guard by Tencent Zhuque Lab Healthy open source

A full-stack AI Red Teaming platform securing AI ecosystems via OpenClaw Security Scan, Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

Amass At Risk open source

In-depth attack surface mapping and asset discovery

mitmproxy Mixed open source

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Beta — feedback welcome: [email protected]