Open Source Cybersecurity Projects
Discover 47 open source Cybersecurity repositories from GitHub, each with an analysis of what it does, key features, use cases and alternatives. Cybersecurity projects here are most often combined with Security, Python and Security Tools. Last updated October 4, 2026.
47 repositories · updated October 4, 2026

Azure-Sentinel: Security Detections and Hunting Content
Azure-Sentinel is a community repository of security content for Microsoft Sentinel and Microsoft 365 Defender. Security teams can use its detections, KQL queries, workbooks, and playbooks to onboard, monitor environments, and investigate threats.

awesome-threat-modelling: Find Threat Modeling Learning Resources
A curated directory of threat modeling books, courses, videos, tutorials, examples, and tools. It helps developers and security practitioners find learning material and practical references for security reviews.

awesome-osint: Find Open-Source Intelligence Tools and Resources
A curated directory of OSINT tools and resources for security researchers, threat hunters, and investigators. Browse categories spanning search, social networks, people research, geospatial intelligence, and threat intelligence.

openaev: Plan and Run Cyber Adversary Simulations
OpenAEV helps security teams plan, schedule, and run adversary simulation campaigns and exercises. Use it to coordinate teams, monitor activity, and review security gaps in relation to current threats.

Damn-Vulnerable-RESTaurant-API-Game: Practice API Security
A deliberately insecure Python API for practicing vulnerability discovery, exploitation, and remediation. Developers, ethical hackers, and security engineers can run it locally with Docker as a controlled training environment.

PayloadsAllTheThings: Find Web Security Payloads and Bypass Techniques
A community-maintained reference of payloads and bypass techniques for web application security testing. Use it to research vulnerability scenarios, support authorized penetration tests, and find ready-to-use Burp Intruder files.

Darkus: Search Onion Websites Across Search Engines
Darkus is a Python tool that sends a search term to deep- and dark-web search engines and returns matching links. It also offers a local database and an Ahmia blacklist check for research and educational use.

wake: Test and Analyze Solidity Smart Contracts
Wake is a Python-based framework for testing, fuzzing, and static analysis of Solidity smart contracts. It suits Solidity developers and security teams that want automated checks, custom detectors, and IDE support in one tool.

mitaka: Search and Scan OSINT Indicators from Your Browser
Mitaka is a browser extension for looking up and scanning OSINT indicators from selected text. It identifies and refangs common indicators, then routes them to relevant search and scan services.

CloakQuest3r: Check for Exposed Origin IP Addresses
CloakQuest3r is a Python security research tool that checks whether websites behind Cloudflare or similar proxies may expose their origin IP. It combines subdomain scanning with historical IP and SSL certificate analysis for authorized defensive assessments.

agentic_security: Scan LLMs and Agent Workflows for Vulnerabilities
Agentic Security is a Python toolkit for probing LLMs and agent workflows with jailbreaks, fuzzing, and multimodal inputs. It fits developers and security teams who want to run configurable scans against an API and use the results in CI.

Sirius: Discover Network Hosts and Scan for Vulnerabilities
Sirius is a self-hosted vulnerability scanner that discovers hosts and services, then identifies CVEs and presents results in a web dashboard. It suits teams that want a Docker-based scanning stack with remote agents and an API for security workflows.