This is a collection of setup scripts to create an install of various security research tools. Of course, this isn't a hard problem, but it's really nice to have them in one place that's easily deployable to new machines and so forth. The install-scripts for these tools are checked regularly, the results can be found on the build status page. Installers for the following tools are included: - afl: State-of-the-art fuzzer. - angr: Next-generation binary analysis engine from Shellphish. - barf: Binary Analysis and Reverse-engineering Framework. - bindead: A static analysis tool for binaries. - capstone: Multi-architecture disassembly framework. - checksec: Check binary hardening settings. - codereason: Semantic Binary Code Analysis Framework. - crosstool-ng: Cross-compilers and cross-architecture tools. - cross2: A set of cross-compilation tools from a Japanese book on C. - elfkickers: A set of utilities for working with ELF files. - elfparser: Quickly determine the capabilities of an ELF bin
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A comprehensive server cryptographic protocol analyzer with API and CLI interface.
A tool for SSH server auditing with comprehensive analysis capabilities.
A collection of writeups of CTF challenges I solved, including explanations of the challenges and how I solved them.
A tool for scraping CTF writeups from ctftime.org and organizing them for easy access.
Certificate Transparency Monitor that alerts you when an SSL/TLS certificate is issued for your domains.
SecGen creates vulnerable virtual machines and hacking challenges for learning security penetration testing techniques.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.