Python Infosec

Open-source Python projects categorized as Infosec

Top 23 Python Infosec Projects

  1. sherlock

    Hunt down social media accounts by username across social networks

    Project mention: Free software scares normal people | news.ycombinator.com | 2025-10-30

    Wow, it's actually real.

    https://old.reddit.com/r/github/comments/1at9br4/i_am_new_to...

    https://github.com/sherlock-project/sherlock/issues/2011

  2. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
  3. maigret

    🕵️‍♂️ Collect a dossier on a person by username from 3000+ sites

    Project mention: Should you leave red herrings about yourself online? | news.ycombinator.com | 2026-05-11

    This article reminded me of seeing this in GH trending repositories last month: https://github.com/soxoj/maigret

    "For educational and lawful purposes only"

  4. spiderfoot

    SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

    Project mention: Show HN: Customizable OSINT dashboard to monitor the situation | news.ycombinator.com | 2026-01-12
  5. Anthropic-Cybersecurity-Skills

    754 structured cybersecurity skills for AI agents · Mapped to 5 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND & NIST AI RMF · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 26 security domains · Apache 2.0

    Project mention: Claude for Small Business: 382K Day-One Buyer's Guide | dev.to | 2026-05-25

    The GitHub Trending board today corroborates this. Of the top fifteen repos, at least four are explicitly Skills-targeted: multica-ai/andrej-karpathy-skills (154K stars), affaan-m/ECC (192K stars), mukul975/Anthropic-Cybersecurity-Skills (9K), and the broader multica-ai/multica managed-agents platform.

  6. dirsearch

    Web path scanner

  7. routersploit

    Exploitation Framework for Embedded Devices

  8. Awesome-WAF

    Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

  9. DefaultCreds-cheat-sheet

    One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️

  10. faraday

    Open Source Vulnerability Management Platform (by infobyte)

  11. can-i-take-over-xyz

    "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

  12. NetExec

    The Network Execution Tool

  13. LinkFinder

    A python script that finds endpoints in JavaScript files

  14. snoop

    Snoop — инструмент разведки на основе открытых данных (OSINT world)

    Project mention: Snoop Project Update (search for usernames on 5k websites) | news.ycombinator.com | 2026-01-01
  15. opencve

    Vulnerability Intelligence Platform

  16. CTF

    CTF challenge (mostly pwn) files, scripts etc (by Crypto-Cat)

  17. Malcolm

    Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

  18. cicd-goat

    A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.

  19. yeti

    Your Everyday Threat Intelligence

  20. Bashfuscator

    A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

  21. Hunting-Queries-Detection-Rules

    KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

  22. Name-That-Hash

    🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥

  23. passphrase-wordlist

    Passphrase wordlist and hashcat rules for offline cracking of long, complex passwords

  24. Search-That-Hash

    🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Python Infosec discussion

Log in or Post with

Python Infosec related posts

Index

What are some of the best open-source Infosec projects in Python? This list will help you:

# Project Stars
1 sherlock 84,944
2 maigret 31,804
3 spiderfoot 18,137
4 Anthropic-Cybersecurity-Skills 15,458
5 dirsearch 14,381
6 routersploit 13,149
7 Awesome-WAF 7,501
8 DefaultCreds-cheat-sheet 6,600
9 faraday 6,518
10 can-i-take-over-xyz 5,645
11 NetExec 5,598
12 LinkFinder 4,322
13 snoop 3,944
14 opencve 2,737
15 CTF 2,503
16 Malcolm 2,435
17 cicd-goat 2,219
18 yeti 1,997
19 Bashfuscator 1,965
20 Hunting-Queries-Detection-Rules 1,708
21 Name-That-Hash 1,655
22 passphrase-wordlist 1,432
23 Search-That-Hash 1,403

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com

Did you know that Python is
the 1st most popular programming language
based on number of references?