Stars
- All languages
- ASP.NET
- Assembly
- Batchfile
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Crystal
- Dart
- Dockerfile
- Elixir
- Go
- HCL
- HTML
- Inno Setup
- Java
- JavaScript
- Jupyter Notebook
- Just
- Kotlin
- Lua
- Makefile
- NSIS
- Nim
- Nix
- OCaml
- Objective-C
- PHP
- PLpgSQL
- Pascal
- Perl
- PowerShell
- Python
- Rich Text Format
- Roff
- Ruby
- Rust
- Shell
- Smarty
- Solidity
- Swift
- TypeScript
- VBA
- Verilog
- Vue
- XSLT
- YARA
- Zig
OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws while minimizing both false positives and false…
🧭 Architecture-first system design: 26 bilingual tutorials, 25 architecture templates, and 6 end-to-end cases covering distributed systems, AI-native systems, RAG, coding Agents, and production tra…
Agentic CVE → Docker environment builder: given a CVE ID, builds and verifies a Docker environment running the affected application at its pre-patch version.
Self-hosted AI news digest. Collect RSS feeds, YouTube channels, website diffs, Google News searches, Hacker News, Reddit, GitHub Releases, and podcasts, summarize with a local LLM (Ollama), OpenRo…
Cross-session context for Claude Code. CLI + MCP server + /story skill that tracks tickets, issues, handovers, and roadmap in a .story/ directory.
Visa Vulnerability Agentic Harness
A tool for creating and running Linux containers using lightweight virtual machines on a Mac. It is written in Swift, and optimized for Apple silicon.
RoguePlanet Windows Defender Vulnerability
Open-source & free — Battle-tested at Alibaba's scale. Hybrid architecture code review tool: deterministic pipelines + LLM Agent, precise line-level comments, built-in fine-tuned ruleset (NPE, thre…
Agentic offensive-security in your terminal
AI agent skill that researches any topic across Reddit, X, YouTube, HN, Polymarket, and the web - then synthesizes a grounded summary
A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.
An AI-powered security review GitHub Action using Claude to analyze code changes for security vulnerabilities.
Prompt-injection guardrail for LLM applications. Compact model that outperforms larger open-source guards. No regex, no signatures. Demo: anton.securelayer7.net
Recent CVE PoC & reproduction scripts. Focused on high-severity vulnerabilities across Linux kernel, Windows, macOS and more.
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks.
Open-source LLM red-teaming technique toolkit (162 transforms, 36 mutators, 25 tool surfaces). MIT.
C# MCP server for kernel & user-mode Windows debugging — DbgEng COM, KDNET, Frida, dbgsrv, TTD, and integrated VM control. 29 tools for LLM agents.
Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software supply-chain compromises.
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
Open-source inference server and production cluster for all the models your agent needs.
A single CLAUDE.md file to improve Claude Code behavior, derived from Andrej Karpathy's observations on LLM coding pitfalls.
Xalgorix - The Most Powerful Open-Source AI Pentesting Agent
🛠️ Awesome tools & guides for harness engineering.
A Claude Code skill that performs in-depth security scans and detects 20+ of the most common security vulnerabilities in your source code.
Harness engineering beginner tutorial, from 0 to 1