Awesome List

Awesome Hacking Resources

A collection of hacking / penetration testing resources to make you better!

vitalysim/Awesome-Hacking-Resources #buffer-overflow #ctf #exploit #hacking #malware #mitm #owasp #penetration-testing #privilege-escalation #privilege-escalation-linux #reverse-engineering #windows-privilege-escalation
List stars
17,427
README repos
55
Indexed repos
50
List commits
298
Forks
2,223
Open issues
29

Tracked list growth

GitHub stars and default-branch commits for vitalysim/Awesome-Hacking-Resources.

Latest scan 2026-09-20 10:49

Likes history

GitHub stars

Commits history

Default branch commits

Indexed repositories

50 repos currently saved from this list.

No filters applied
Latest repo push 2026-09-11

Filter this list

Search within Awesome Hacking Resources or narrow by ecosystem and project health.

Search mode
Tune results
More filters Topics, generated tags, stack, files, age, archive status, and growth.
Ecosystem
Files

Choose a suggestion or use commas to require multiple files.

Health

Uses known first-commit dates.

Momentum
Filters by observed commit-count growth over the repository's latest 7-day capture window. Repositories without a recent baseline are excluded.
Filters by observed GitHub star growth over the repository's latest 7-day capture window. Repositories without a recent baseline are excluded.
Reset filters
Highlighted

Open highlighted repo slot

Put your repository first

Promote a GitHub repo at the top of Awesome repository list views for 7 days.

promptfoo/promptfoo

Test your prompts, agents, and RAGs. Red teaming/pentesting/vulnerability scanning for AI. Compare performance of GPT, Claude, Gemini, DeepSeek, and more. Simple declarative configs with command line and CI/CD integration. Used by OpenAI and Anthropic.

AI dev
Updated
2026-08-22
Lists
8 list mentions
First commit
2023-03-31
License
MIT
Issues
517 open
Forks
2,220
Commits
9,424 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
smicallef/spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Updated
2026-04-13
Lists
3 list mentions
First commit
2012-04-28
License
MIT
Issues
315 open
Forks
3,470
Commits
3,742 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
sundowndev/phoneinfoga

Information gathering framework for phone numbers

Updated
2026-01-06
Lists
1 list mention
First commit
2018-10-25
License
GPL-3.0
Issues
122 open
Forks
5,633
Commits
1,795 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
megadose/holehe

holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.

Updated
2024-09-10
Lists
2 list mentions
First commit
2020-08-22
License
GPL-3.0
Issues
113 open
Forks
1,801
Commits
434 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
juice-shop/juice-shop

OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

AI dev
Updated
2026-08-21
Lists
2 list mentions
First commit
2014-09-19
License
MIT
Issues
4 open
Forks
19,299
Commits
23,312 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
six2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

AI dev
Updated
2026-08-20
Lists
2 list mentions
First commit
2020-12-30
License
MIT
Issues
3 open
Forks
1,221
Commits
2,363 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
Trusted-AI/adversarial-robustness-toolbox

Adversarial Robustness Toolbox (ART) - Python Library for Machine Learning Security - Evasion, Poisoning, Extraction, Inference - Red and Blue Teams

Updated
2025-12-12
Lists
2 list mentions
First commit
2017-05-09
License
MIT
Issues
18 open
Forks
1,335
Commits
13,057 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
RPISEC/MBE

Course materials for Modern Binary Exploitation by RPISEC

Stack
GitHub topics
Updated
2021-12-09
Lists
1 list mention
First commit
2015-06-20
License
BSD-2-Clause
Issues
11 open
Forks
911
Commits
33 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
lanmaster53/recon-ng

Open Source Intelligence gathering tool aimed at reducing the time spent harvesting information from open sources.

Stack
Updated
2024-11-01
Lists
4 list mentions
First commit
2012-10-24
License
GPL-3.0
Issues
38 open
Forks
916
Commits
1,028 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
intelowlproject/IntelOwl

IntelOwl: manage your Threat Intelligence at scale

Updated
2026-08-20
Lists
1 list mention
First commit
2019-12-31
License
AGPL-3.0
Issues
70 open
Forks
659
Commits
3,178 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
RPISEC/Malware

Course materials for Malware Analysis by RPISEC

Updated
2022-08-26
Lists
1 list mention
First commit
2016-01-13
License
Unknown
Issues
1 open
Forks
799
Commits
5 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
netbiosX/Checklists

Red Teaming & Pentesting checklists for various engagements

Updated
2025-07-27
Lists
1 list mention
First commit
2016-09-18
License
Unknown
Issues
1 open
Forks
515
Commits
346 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
confident-ai/deepteam

DeepTeam is a framework to red team LLMs and AI agents.

Updated
2026-08-21
Lists
3 list mentions
First commit
2025-03-05
License
Apache-2.0
Issues
56 open
Forks
422
Commits
1,187 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
protectai/ai-exploits

A collection of real world AI/ML exploits for responsibly disclosed vulnerabilities

Stack
Updated
2024-10-23
Lists
1 list mention
First commit
2023-11-16
License
NOASSERTION
Issues
3 open
Forks
166
Commits
47 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
stamparm/DSVW

Damn Small Vulnerable Web

Stack
Updated
2026-08-19
Lists
2 list mentions
First commit
2015-11-20
License
Unlicense
Issues
1 open
Forks
375
Commits
78 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
aaaguirrep/offensive-docker

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

Updated
2022-03-11
Lists
1 list mention
First commit
2020-02-25
License
MIT
Issues
2 open
Forks
158
Commits
106 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
mnns/LLMFuzzer

🧠 LLMFuzzer - Fuzzing Framework for Large Language Models 🧠 LLMFuzzer is the first open-source fuzzing framework specifically designed for Large Language Models (LLMs), especially for their integrations in applications via LLM APIs. 🚀💥

Updated
2024-02-12
Lists
1 list mention
First commit
2023-05-20
License
MIT
Issues
3 open
Forks
63
Commits
29 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
chuckfw/owaspbwa

OWASP Broken Web Applications Project

Stack
PHP
Updated
2024-03-13
Lists
1 list mention
First commit
2010-03-19
License
Unknown
Issues
25 open
Forks
124
Commits
234 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
momenbasel/htb-writeups

The most comprehensive Hack The Box writeup collection - 500+ machines, 400+ challenges, interactive knowledge graph, skill trees, attack path diagrams, ProLabs, Sherlocks, OSCP/CPTS/CRTO prep. Browse: momenbasel.github.io/htb-writeups

Updated
2026-07-18
Lists
1 list mention
First commit
2026-04-10
License
MIT
Issues
0 open
Forks
44
Commits
28 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
Lazza/Carbon14

OSINT dating tool for web pages

AI dev
Stack
Updated
2026-05-21
Lists
1 list mention
First commit
2017-12-31
License
GPL-3.0
Issues
0 open
Forks
13
Commits
18 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history
Azure/PyRIT

The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to proactively identify risks in generative AI systems.

Archived
Updated
2026-03-25
Lists
1 list mention
First commit
2026-03-25
License
MIT
Issues
Disabled
Forks
25
Commits
7 commits
Star growth, last 7 days
No 7-day history
Commit velocity, last 7 days
No 7-day history