-
cargo-auditable
Make production Rust binaries auditable
-
zizmor
Static analysis for GitHub Actions
-
rustsec
Client library for the RustSec security advisory database
-
cargo-vet
Supply-chain security for Rust
-
rustdllproxy
ease the development of proxy DLLs in Rust
-
clamav-client
ClamAV client library with optional support for async-std, smol, and Tokio
-
idalib
Idiomatic bindings to IDA SDK
-
cosmian_kmip
Cosmian KMIP library
-
project-absence
👁️ Uncover the unseen
-
libscemu
x86 32/64bits and system internals emulator, for securely emulating malware and other stuff
-
rma-common
Common types and utilities for Rust Monorepo Analyzer
-
cargo-ddd
A cargo subcommand for inspecting what changes brings dependency version update into your project
-
dinvk
Dynamically invoke arbitrary code in Rust (Dinvoke)
-
cargo-crev
Distibuted Code REView system for verifying security and quality of Cargo dependencies
-
pyscan
python dependency vulnerability scanner
-
aws-sdk-codegurusecurity
AWS SDK for Amazon CodeGuru Security
-
walker-common
Common functionality for SBOM and CSAF walker
-
polycvss
CVSS v2, v3, and v4 vector string parser and score calculator
-
ghidra-version-manager
Ghidra Version Manager
-
aws-sdk-inspector2
AWS SDK for Inspector2
-
periodic-audit
run cargo-audit periodically and send email reports
-
hakoniwa
Process isolation for Linux using namespaces, resource limits, cgroups, landlock and seccomp
-
endpoint-sec
High-level Rust wrappers around the Endpoint Security Framework
-
codeprism-analysis
Language-agnostic code analysis tools for CodePrism
-
process_hollowing
Creates a process and overwrites the entry point with shellcode (default to a reverse shell on localhost:4444)
-
dearxan
Static analyzer and patcher for the Arxan anti-debug/DRM as found in FromSoftware titles
-
cve-data
Request CVE data from different sources
-
csaf-validator
A validator for the CSAF standard written in Rust
-
rhabdomancer
Vulnerability research assistant that locates calls to potentially insecure API functions in a binary file
-
frida-build
Rust bindings for Frida
-
attestation-validator
Validates attestation certificate chains and inspects attestation certificates
-
lazynmap
A TUI for interactively generating nmap commands
-
hipcheck
Automatically assess and score software packages for supply chain risk
-
injectum
The modern, type-safe process injection framework for Red Teams and Offensive Security in Rust
-
spotspoof-cli
Domain spoofing & IDN/Punycode detection for security automation workflows
-
cargo-sbom
Create software bill of materials (SBOM) for Rust
-
cosmian_kms_interfaces
exposing APIs for plugins to the Cosmian KMS
-
virustotal-rs
Rust SDK for VirusTotal API v3
-
dz6
A vim-inspired, TUI-based hexadecimal editor
-
codemode-rs
A secure V8 JavaScript sandbox with MCP (Model Context Protocol) tool integration
-
osv
parsing the OSV schema and client API
-
fsm_governance_engine_lib
Declarative, validation-only FSM library with invariants and deterministic auditability
-
secure-types
Secure data types that protect sensitive data in memory via locking and zeroization
-
skeld
a TUI tool for opening projects inside a restricted sandbox
-
frida
Rust bindings for Frida
-
cvssrust
Common Vulnerability Scoring System (v2 / v3.0 / v3.1)
-
auditable-extract
Extract the dependency trees embedded in binaries by
cargo auditable -
dmg-cracker
performing dictionary attacks on encrypted DMG images on OSX
-
cargo-audit
Audit Cargo.lock for crates with security vulnerabilities
-
ntoseye
Windows kernel debugger for Linux hosts running Windows under KVM/QEMU
-
firewall_audit
Cross-platform firewall audit tool (YAML/JSON rules, CSV/HTML/JSON export)
-
floss-cli
在 Rust 中以子进程方式调用 FLARE FLOSS CLI,并可选解析 -j JSON 输出
-
rattler_sandbox
run executables in a sandbox
-
drupal_cracker
This project is a very basic password cracker that cracks Drupal 7, 8, 9, 10, and 11 password hashes from a dictionary of passwords
-
crevette
Converter for using cargo-crev reviews with cargo-vet
-
security-mcp
MCP (Model Context Protocol) server providing security screening, injection detection, and threat analysis
-
repl-core
Core REPL engine for the Symbi platform
-
process_migration
Overwrites a running process' next instruction(s) with shellcode (default to a reverse shell on localhost:4444)
-
birdcage
Cross-platform embeddable sandbox
-
hash-hunter
Find files with specified hashes
-
llm-security
Comprehensive LLM security layer to prevent prompt injection and manipulation attacks
-
secretscan
A blazing-fast secret scanner for your codebase
-
subhunter
Ferramenta avançada de enumeração de subdomínios para Bug Bounty e Pentest
-
aimds-response
Adaptive response layer with meta-learning for AIMDS threat mitigation
-
miss-demeanor
Fast, parallel, pluggable process compliance checker
-
ocsf-types
Strongly typed Rust structs for the OCSF (Open Cybersecurity Schema Framework)
-
cargo-caps
Audit what a crate is capable of by analyzing what linker symbols it emits
-
swage-dummy
Dummy hammerer module for Swage
-
parascope
Weggli ruleset scanner for source code and binaries
-
passcore
lightweight Rust library that scores password strength
-
dicgen
Generate a list with all combinations for given characters, like in brute force attacks
-
judger
A sandboxed environment for running untrusted code safely
-
xmtool
Binding
-
ghastoolkit
GitHub Advanced Security Toolkit in Rust
-
vaas
Check files and hashes for malicious content
-
assemblyline-markings
using access control strings with the Assemblyline malware analysis platform
-
goran
CLI tool for analyzing domains and IP addresses
-
hypnus
Memory Obfuscation in Rust
-
linux-audit-parser
Parser for Linxu Audit logs
-
antivirus
not enough! you need PROTOGENT
-
microsandbox
Rust SDK for microsandbox - secure self-hosted sandboxes for your AI agents
-
xgadget
Fast, parallel, cross-variant ROP/JOP gadget search for x86/x64 binaries
-
tauri-dumper
dump assets from a Tauri app
-
utimaco_pkcs11_loader
Utimaco HSM PKCS#11 loader
-
threat-intel
Comprehensive threat intelligence framework with multi-source aggregation, CVE integration, and risk assessment
-
leucite
sandboxing and limiting command execution
-
kindly-guard-cli
Command-line security scanner and monitoring tool for threat detection
-
panic-analyzer
an audit tool to scan your crate or workspace searching for potential panic points in your codebase
-
euvd
API for querying recent vulnerabilities from the ENISA EUVD database
-
passgenz
A secure password generator CLI tool for macOS with clipboard integration
-
actix-web-ratelimit
highly customizable rate limiter for actix-web 4
-
unicop
scanning source code for potentially malicious unicode code points. Helps prevent Trojan source bidi attacks, homoglyph attacks, invisible character attacks etc. Intended to run manually…
-
haruspex
Vulnerability research assistant that extracts pseudocode from IDA Hex-Rays decompiler
-
ssec-cli
command-line interface for reading and writing the SSEC file format
-
mine
High-assurance IPC and private Unix Domain Socket (UDS) orchestration. Provides exclusive data ownership and sandboxing for the Honest-Classified security ecosystem.
-
mwemu
x86 32/64bits and system internals emulator, for securely emulating malware and other stuff
-
malwaredb-virustotal-bin
VirusTotal command line client
-
rusty-sandbox
-
oneiromancer
Reverse engineering assistant that uses a locally running LLM to aid with pseudocode analysis
-
jsrs
fast and flexible command-line tool for scanning JavaScript files
-
sbom-walker
work with SBOM data
-
codeprism-mcp
MCP (Model Context Protocol) compliant server for codeprism
-
fw-rs
A forensic-grade file destruction utility for securely overwriting and deleting files/directories
-
falco_plugin_api
Autogenerated bindings for the Falco plugin API
-
sublime_pkg_tools
Package and version management toolkit for Node.js projects with changeset support
-
krater
Reconnaissance orchestrator for offensive security
-
hexora
Static analysis of malicous Python scripts
-
threatflux-string-analysis
Advanced string analysis and categorization library for security applications
-
fugue-fspec
A binary analysis framework written in Rust
-
reoxide
Rust-bindings for the ReOxide decompiler extension framework
-
ripgen
A rust-based version of the popular dnsgen python utility
-
shellcode-loader
shellcode加载器,通过多种方式加载shellcode并对抗EDR检测
-
cvss
Common Vulnerability Scoring System parser/serializer
-
leguichet
One way diodes with antiviral and yara scanning
-
uwd
Call Stack Spoofing for Rust
-
deepterra
parse terraform and generate a resource dependency graph
-
catsploit
An open-source modern exploitation framework inspired by Metasploit
-
clamav-async
Async ClamAV bindings for Rust
-
owi
Bindings to the C symbolic API of the owi bug finding tool
-
rust-metasploit
Rust wrapper for metasploit
-
steve
Search Technical Evidence Very Easily
-
lockb-xray
CLI tool to audit Bun bun.lockb for supply chain risks
-
cosmian_kms_client
Cosmian KMS REST Client
-
sentinel-sdk
Rust SDK for Sentinel LLM Security Gateway
-
tayvo_clamav-client
ClamAV client library
-
idalib-build
Idiomatic bindings to IDA SDK
-
wpscan-analyze
Analyzes wpscan json output and checks for vulnerabilities
-
mini-vet
A client for the cargo-vet registry. Fetches security reviews for Rust/Cargo crates.
-
raxit-core
Core security scanning engine for AI agent applications
-
falco_plugin_runner
Pure-Rust runner for Falco plugins
-
ppfuzz
| x | x | / _..___ | | | | | |/ // / || || ||`//_/ Prototype Pollution Fuzzer @dwisiswant0
-
assemblyline-filestore
A blob storage layer for the Assemblyline malware analysis platform
-
hakoniwa-cli
Process isolation for Linux using namespaces, resource limits, cgroups, landlock and seccomp
-
http_desync_guardian
HTTP/1.1 request analysis to prevent HTTP Desync attacks
-
u-siem-sqlite-store
be used to build a custom SIEM with the framework uSIEM
-
ricecoder-teams
Team collaboration system for RiceCoder - shared standards, rule promotion, and access control
-
coffeeldr
A COFF (Common Object File Format) loader written in Rust
-
riskcalc
risk analysis and Monte Carlo simulation
-
osintrs
application for OSINT (Open Source Intelligence) gathering and analysis
-
nessus-parser
A parser for
.nessus(v2) XML reports -
auditable2cdx
Command-line tool to recover
cargo auditabledata in CycloneDX format -
reverse_engineering_lib
reverse engineering tasks, including entropy calculation, color-based hex visualization, and PE file analysis
-
abcdict
A better customization password dictionary generator implementation by Rust
-
totally-safe
that allows you to bypass Rust's safety guarantees with totally safe patterns, featuring arbitrary lifetimes, aliasing, and more!
-
r2api
rust bindings for the radare2 native APIs
-
rustclr
Host CLR and run .NET binaries using Rust
-
revolt_clamav-client
ClamAV client library
-
soos-sample-project
SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this package…
-
swage-victim-dev-memcheck
DevMemCheck victim module for Swage
-
u-siem-paloalto
be used to build a custom SIEM with the framework uSIEM
-
envy-rs
Generate obfuscated Windows PowerShell payloads that resolve to paths by globbing environment variables
-
libsla-sys
System crate for Ghidra Sleigh library libsla
-
pmsf
Polymorphic Malware Stage Framework (PMSF): a research-grade Rust framework for simulating and analyzing modular malware stages
-
mantid
multitool for security research and development
-
foundyou
A powerful command-line application for OSINT and social engineering
-
keystone-cli
Quick assembler using keystone-engine for CTF
-
top_level_crate
level
-
rinzler-core
Core library for Rinzler - API scanner data models and database
-
bun-xray-core
Core parsing and security scanning logic for bun.lockb forensic analysis
-
cvss_tools
working with CVSS
-
clamd-client
Rust async tokio client for clamd. Works with a tcp socket or with the unix socket. At the moment it will open a new socket for each command. Work in progress.
-
panda-re-sys
The official *-sys library for interfacing with PANDA (Platform for Architecture-Neutral Dynamic Analysis)
-
ShellcodeGenerator
A shellcode generator for quickly exploit development
-
jopcall
Dynamically executed Windows Syscalls via JOP/ROP
-
carbon_14
OSINT dating tool for web pages
-
auditable
Audit Rust binaries for known bugs or vulnerabilities in production with zero bookkeeping
-
Malware_Rhapsody
Small researching of Linux's security for fun and education.. don't be silly to use it in wild. Have a great day, Dear Researcher/Scholar 💯❤️
-
augur
Reverse engineering assistant that extracts strings and related pseudocode from a binary file
-
yara-forge
A powerful Rust library for crafting, validating, and managing YARA rules
-
cosmian_kms_cli
Command Line Interface used to manage the KMS server If any assistance is needed, please either visit the Cosmian technical documentation at https://docs.cosmian.com or contact the…
-
bw-picker
CLI tool used to fetch passwords and more from Bitwarden using their Vault API
-
cargo-pants
cargo subcommand application that provides a bill of materials and a list of which dependencies have a vulnerability, powered by Sonatype OSSIndex
-
pulsesecurity
Pulse Security SDK
-
rustshell
An educational project to aid in security operations and testing
-
whad
Wireless hacking tools
-
debian-repro-status
Check the reproducibility status of your installed Debian packages
-
io-tubes
functionality like pwntools tube for async io in rust
-
nessus
Vulnerability Scanner API client
-
secbox
Sensitive data container
-
unicode-security
Detect possible security problems with Unicode usage according to Unicode Technical Standard #39 rules
-
mace
Automated extration of malware configuration, focusing on C2 communication
-
version-checker
A clean, easy to use version checker built to help you track problems with your dependencies
-
bp3d-os
Operating System tools designed for BlockProject3D
-
mewt
Mutation testing framework with multi-language support
-
hardened-malloc
Global allocator using GrapheneOS allocator
-
vein-admin
Admin web interface for Vein RubyGems proxy server
-
smtpeek
A state-of-the-art SMTP user enumeration tool that efficiently tests for valid email accounts on SMTP servers while evading detection mechanisms
-
path_ratchet
Prevent path traversal attacks at type level
-
supply_poc_again
useless code to test supply chain attacks with cargo and crates.io
-
airgorah
A WiFi security auditing software mainly based on aircrack-ng tools suite
-
rust-mcp-server-syncable-cli
High-performance Model Context Protocol (MCP) server for code analysis, security scanning, and project insights
-
yara-x-cli
A command-line interface for YARA-X
-
dlna-dmr
An extensible DLNA DMR (Digital Media Renderer) implementation
-
obfustring
Procedural macro that obfuscates string literals with RNG at compile time
-
u-siem-sonicwall
be used to build a custom SIEM with the framework uSIEM
-
swage-thp
THP allocator module for Swage
-
ief
Cross-platform binary import/export search
-
sddl
parse and analyse SDDL Strings
-
judge-core
A judge library for online judge system
-
burn_operation
CLI tool to securely wipe a computer, at the speed of light
-
pctx_executor
TypeScript execution environment orchestration
-
nvd-api
A rust implementation of the nvd-api
-
pysentry
Security vulnerability auditing for Python packages
-
rbacrab
Rust 🦀RBAC🦀 library with some crabby🦀🧙 macro magic! Not so blazingly fast yet, but has all 🚀🚀🚀 chances
-
telnet-sanitizer
Telnet TCP proxy that sanitizes protocol input to mitigate CVE-class vulnerabilities
-
cosmian_kms_server_database
containing the database for the Cosmian KMS server and the supported stores
-
rappct
Rust AppContainer / LPAC toolkit for Windows (profiles, capabilities, process launch, diagnostics)
-
il2cpp_rs
interacting with il2cpp on Windows
-
modseclog
Introspection of ModSecurity log files
-
clam-client
talking to ClamD
-
thehive-client
Rust client for TheHive API, enabling programmatic management of alerts, cases, observables, tasks, and other security incident response entities
-
ankou
An OSINT repo miner focused on high-sev security bug in JS engines
-
cosmian_kms_server
Cosmian Key Management Service - A high-performance, FIPS 140-3 compliant Key Management System
-
fosr
Fos-R (Forger Of Security Records) is an AI-based synthetic network traffic generator
-
winaudit
Advanced Windows auditing and security assessment Crate in Rust
-
cedrus-cedar
Core library for Cedar Policy serialization and type bindings
-
macos-config-check
Checks your macOS machine against various hardened configuration settings
-
skp-validator-actix
Actix Web integration for skp-validator - high-performance validation for Actix services
-
reoxide-proc
Proc-macro utility create for the ReOxide Rust-bindings
-
sublime_node_tools
Node.js bindings for Sublime Workspace CLI Tools via napi-rs
-
cvss-rs
representing and deserializing CVSS (Common Vulnerability Scoring System) data
-
iron_protection
Security hardening and threat protection for iron agent framework
-
pscan
SYN Port Scanner written in Rust, with range and decoy scanning support
-
lancelot
binary analysis framework for x32/x64 PE files
-
ExploitBuilder
A exploit builder for quick exploit development
-
cylo
Secure multi-language code execution service
-
rma-analyzer
Code analysis and security scanning for Rust Monorepo Analyzer
-
sn0int
Semi-automatic OSINT framework and package manager
-
path_jail
A secure filesystem sandbox. Restricts paths to a root directory, preventing traversal attacks.
-
fenir
Tools for CVE managing, exploring and collect some data about their weaknesses and classifications
-
check_txt
A powerful file security checker for TXT and EPUB files with virus scanning capabilities
-
skp-ratelimit
Advanced, modular, extensible rate limiting library with GCRA, per-route quotas, and composite keys
-
purl_validator
Offline PackageURL validator using a prebuilt FST of known packages
-
ferrous-forge
System-wide Rust development standards enforcer
-
polarstego
Steganographic Polar Codes
-
vt3
VirusTotal REST API v3 (Public & Enterprise)
-
ricecoder-github
GitHub integration for repository operations
-
ingredients
Check ingredients of published Rust crates
-
shinchina
tester
-
idalib-sys
Idiomatic bindings to IDA SDK
-
iptr-edge-analyzer
Extract edges and branches in Intel PT traces, and construct AFL++-compatible fuzzing bitmaps
-
nvd_cve
Search for CVEs against a local cached copy of NIST National Vulnerability Database (NVD)
-
obfswire
obfuscating network traffic, designed to resist deep packet inspection (DPI) and active probing of network endpoints
-
codedefender-config
Configuration utilities for CodeDefender, a code obfuscation and protection system
-
safebrowsing-api
Client for Google Safe Browsing API v4
-
misp-client-rs
client library for interacting with MISP (Malware Information Sharing Platform) instances via their REST API
-
radiotap-rs
no_std compatible radiotap header encoder and decoder
-
lazycert
ACME certificate management daemon for Vane
-
cwe-api-cli
Unofficial CLI for the CWE API
-
drop-root-caps
drop 'root' user capabilities on Linux