<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on Noureddine RAMDI</title><link>https://ramdi.fr/tags/security/</link><description>Recent content in Security on Noureddine RAMDI</description><generator>Hugo</generator><language>en</language><lastBuildDate>Sat, 23 May 2026 20:41:27 +0000</lastBuildDate><atom:link href="https://ramdi.fr/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>A curated taxonomy of open source web security scanners</title><link>https://ramdi.fr/github-stars/a-curated-taxonomy-of-open-source-web-security-scanners/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/a-curated-taxonomy-of-open-source-web-security-scanners/</guid><description>Explore a community-curated catalog of open source web security scanners organized by scanner type, revealing trends in modern web app security tooling.</description></item><item><title>Argus: a modular Python CLI toolkit for comprehensive security reconnaissance</title><link>https://ramdi.fr/github-stars/argus-a-modular-python-cli-toolkit-for-comprehensive-security-reconnaissance/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/argus-a-modular-python-cli-toolkit-for-comprehensive-security-reconnaissance/</guid><description>Argus is a Python CLI toolkit bundling 135 reconnaissance modules across network, web, and threat intelligence domains in a unified command shell.</description></item><item><title>awesome-osint-arsenal: automated multi-distro provisioning for a massive OSINT and security toolkit</title><link>https://ramdi.fr/github-stars/awesome-osint-arsenal-automated-multi-distro-provisioning-for-a-massive-osint-and-security-toolkit/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/awesome-osint-arsenal-automated-multi-distro-provisioning-for-a-massive-osint-and-security-toolkit/</guid><description>awesome-osint-arsenal provides a single-command shell installer that auto-detects Linux distros and installs 750+ OSINT and security tools idempotently, turning an awesome list into a deployable arsenal.</description></item><item><title>bopscrk: targeted password wordlist generation with lyric-based OSINT</title><link>https://ramdi.fr/github-stars/bopscrk-targeted-password-wordlist-generation-with-lyric-based-osint/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/bopscrk-targeted-password-wordlist-generation-with-lyric-based-osint/</guid><description>bopscrk is a Python CLI tool for targeted password wordlist generation, combining user input and scraped song lyrics with mutations. Useful in pentesting and red teaming.</description></item><item><title>CF-Hero: A Go CLI for uncovering origin IPs behind Cloudflare using multi-source OSINT correlation</title><link>https://ramdi.fr/github-stars/cf-hero-a-go-cli-for-uncovering-origin-ips-behind-cloudflare-using-multi-source-osint-correlation/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/cf-hero-a-go-cli-for-uncovering-origin-ips-behind-cloudflare-using-multi-source-osint-correlation/</guid><description>CF-Hero is a Go CLI tool that finds origin IP addresses hidden behind Cloudflare by correlating OSINT sources, DNS history, and HTTP fingerprinting. A practical tool for security pros.</description></item><item><title>Claude-OSINT: Turning Claude into an AI-driven OSINT Recon Operator with Structured Skills</title><link>https://ramdi.fr/github-stars/claude-osint-turning-claude-into-an-ai-driven-osint-recon-operator-with-structured-skills/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/claude-osint-turning-claude-into-an-ai-driven-osint-recon-operator-with-structured-skills/</guid><description>Claude-OSINT equips Claude LLM with 4,600+ lines of structured OSINT tradecraft in markdown skills, enabling AI-driven recon with 90+ modules, 80+ dorks, and attack-path templates. No external APIs needed.</description></item><item><title>Cyber Detective's OSINT Tools Collection: A curated index for systematic open-source intelligence workflows</title><link>https://ramdi.fr/github-stars/cyber-detective-s-osint-tools-collection-a-curated-index-for-systematic-open-source-intelligence-workflows/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/cyber-detective-s-osint-tools-collection-a-curated-index-for-systematic-open-source-intelligence-workflows/</guid><description>A curated collection of 1000+ OSINT tools organized by investigative domains, supporting systematic workflows in open-source intelligence gathering.</description></item><item><title>DeepZero: Automating Windows Kernel Driver Vulnerability Research with YAML-Driven LLM Pipelines</title><link>https://ramdi.fr/github-stars/deepzero-automating-windows-kernel-driver-vulnerability-research-with-yaml-driven-llm-pipelines/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/deepzero-automating-windows-kernel-driver-vulnerability-research-with-yaml-driven-llm-pipelines/</guid><description>DeepZero automates vulnerability research on Windows kernel drivers by chaining Ghidra decompilation with LLM-based analysis using YAML pipelines and Jinja2 templates.</description></item><item><title>FuzzyAI: AI-Driven Fuzz Testing with Local LLM Integration</title><link>https://ramdi.fr/github-stars/fuzzyai-ai-driven-fuzz-testing-with-local-llm-integration/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/fuzzyai-ai-driven-fuzz-testing-with-local-llm-integration/</guid><description>FuzzyAI combines fuzz testing with AI models using Python and Ollama. It offers a CLI for fuzzing with local LLMs, balancing AI power and practical setup tradeoffs.</description></item><item><title>GarudRecon: orchestrating 80+ security tools for automated recon with Bash</title><link>https://ramdi.fr/github-stars/garudrecon-orchestrating-80-security-tools-for-automated-recon-with-bash/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/garudrecon-orchestrating-80-security-tools-for-automated-recon-with-bash/</guid><description>GarudRecon automates reconnaissance by orchestrating 80+ security tools in Bash. Its design tradeoffs and installation steps reveal why Bash remains a practical choice for heavy string manipulation workflows.</description></item><item><title>H4X-Tools: a modular Python CLI for OSINT and dual-source credential leak search</title><link>https://ramdi.fr/github-stars/h4x-tools-a-modular-python-cli-for-osint-and-dual-source-credential-leak-search/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/h4x-tools-a-modular-python-cli-for-osint-and-dual-source-credential-leak-search/</guid><description>H4X-Tools is a Python 3.10+ CLI toolkit offering 16 modular OSINT utilities, including a dual-source leak search combining stealer logs and a 3.2B+ credential dataset for actionable breach insights.</description></item><item><title>Hackingtool Plugin: a smart dispatcher for 183 pentesting tools with native, WSL, and Docker backends</title><link>https://ramdi.fr/github-stars/hackingtool-plugin-a-smart-dispatcher-for-183-pentesting-tools-with-native-wsl-and-docker-backends/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/hackingtool-plugin-a-smart-dispatcher-for-183-pentesting-tools-with-native-wsl-and-docker-backends/</guid><description>Hackingtool-plugin wraps 183 pentesting and OSINT tools behind a Claude Code plugin. It smartly dispatches commands to native Bash, WSL, or Docker containers, outputting clean JSON.</description></item><item><title>Inside reconFTW: orchestrating 50+ security tools for automated reconnaissance</title><link>https://ramdi.fr/github-stars/inside-reconftw-orchestrating-50-security-tools-for-automated-reconnaissance/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-reconftw-orchestrating-50-security-tools-for-automated-reconnaissance/</guid><description>reconFTW automates over 50 security tools into a unified Shell-based pipeline for penetration testers and bug bounty hunters, supporting full lifecycle recon and distributed scanning.</description></item><item><title>Inside Xalgorix: an LLM-driven autonomous pentesting platform with a 22-phase testing pipeline</title><link>https://ramdi.fr/github-stars/inside-xalgorix-an-llm-driven-autonomous-pentesting-platform-with-a-22-phase-testing-pipeline/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-xalgorix-an-llm-driven-autonomous-pentesting-platform-with-a-22-phase-testing-pipeline/</guid><description>Xalgorix is a Go-based autonomous pentesting platform driven by LLMs, featuring a 22-phase methodology from recon to exploit verification, with live telemetry and reporting.</description></item><item><title>jadx-ai-mcp: enabling AI-augmented reverse engineering of Android APKs with a JADX plugin and MCP server</title><link>https://ramdi.fr/github-stars/jadx-ai-mcp-enabling-ai-augmented-reverse-engineering-of-android-apks-with-a-jadx-plugin-and-mcp-server/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/jadx-ai-mcp-enabling-ai-augmented-reverse-engineering-of-android-apks-with-a-jadx-plugin-and-mcp-server/</guid><description>jadx-ai-mcp combines a JADX decompiler plugin with a Python MCP server, enabling AI assistants like Claude to perform live reverse engineering on Android APKs with 30+ interactive tools.</description></item><item><title>LLM4Pentest: A curated knowledge hub on large language models for automated penetration testing</title><link>https://ramdi.fr/github-stars/llm4pentest-a-curated-knowledge-hub-on-large-language-models-for-automated-penetration-testing/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/llm4pentest-a-curated-knowledge-hub-on-large-language-models-for-automated-penetration-testing/</guid><description>LLM4Pentest aggregates 40+ research papers and tools tracking the evolving role of LLMs in automated penetration testing, highlighting progress and limitations.</description></item><item><title>LocalSend: Secure, cross-platform LAN file sharing with on-the-fly TLS</title><link>https://ramdi.fr/github-stars/localsend-secure-cross-platform-lan-file-sharing-with-on-the-fly-tls/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/localsend-secure-cross-platform-lan-file-sharing-with-on-the-fly-tls/</guid><description>LocalSend offers secure, zero-config LAN file sharing with ephemeral TLS certificates, built with Flutter and Rust for cross-platform privacy-focused transfers.</description></item><item><title>LuaN1aoAgent: Autonomous penetration testing with P-E-R multi-agent causal graph reasoning</title><link>https://ramdi.fr/github-stars/luan1aoagent-autonomous-penetration-testing-with-p-e-r-multi-agent-causal-graph-reasoning/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/luan1aoagent-autonomous-penetration-testing-with-p-e-r-multi-agent-causal-graph-reasoning/</guid><description>LuaN1aoAgent uses a P-E-R multi-agent framework and causal graph reasoning to achieve 90.4% autonomous success on penetration tests with low exploit cost. Key for AI-driven pentesting.</description></item><item><title>Matkap: Active interception of malicious Telegram bots using leaked tokens</title><link>https://ramdi.fr/github-stars/matkap-active-interception-of-malicious-telegram-bots-using-leaked-tokens/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/matkap-active-interception-of-malicious-telegram-bots-using-leaked-tokens/</guid><description>Matkap is a Python tool that hunts down malicious Telegram bots by hijacking leaked bot tokens and forwarding their messages for active threat intelligence gathering.</description></item><item><title>Metasploit on Android via Termux: Automating a fragile Ruby native extension patch</title><link>https://ramdi.fr/github-stars/metasploit-on-android-via-termux-automating-a-fragile-ruby-native-extension-patch/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/metasploit-on-android-via-termux-automating-a-fragile-ruby-native-extension-patch/</guid><description>Metasploit-termux automates installing Metasploit Framework on Android via Termux, fixing Ruby 3.4 Nokogiri/Gumbo native extension build issues on ARM64. Here&amp;rsquo;s how it works.</description></item><item><title>nomore403: automated HTTP 403 bypass testing with heuristic scoring in Go</title><link>https://ramdi.fr/github-stars/nomore403-automated-http-403-bypass-testing-with-heuristic-scoring-in-go/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/nomore403-automated-http-403-bypass-testing-with-heuristic-scoring-in-go/</guid><description>nomore403 is a Go CLI tool for security researchers automating HTTP 403/401 bypass testing with heuristic scoring to flag likely bypasses and reduce false positives.</description></item><item><title>OpenAnt: An LLM-powered two-stage vulnerability discovery tool with exploit validation</title><link>https://ramdi.fr/github-stars/openant-an-llm-powered-two-stage-vulnerability-discovery-tool-with-exploit-validation/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/openant-an-llm-powered-two-stage-vulnerability-discovery-tool-with-exploit-validation/</guid><description>OpenAnt uses a two-stage LLM pipeline to detect and validate code vulnerabilities across multiple languages, reducing false positives by verifying exploits automatically.</description></item><item><title>OpsKat: AI-first secure infrastructure management with policy-enforced AI agents</title><link>https://ramdi.fr/github-stars/opskat-ai-first-secure-infrastructure-management-with-policy-enforced-ai-agents/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/opskat-ai-first-secure-infrastructure-management-with-policy-enforced-ai-agents/</guid><description>OpsKat is a desktop app blending AI agents with secure, policy-enforced remote infrastructure control across SSH, databases, and Kafka. It bridges AI coding assistants to production safely.</description></item><item><title>SafestClaw: a deterministic AI assistant with classical ML pipelines for local, secure, and zero-cost operation</title><link>https://ramdi.fr/github-stars/safestclaw-a-deterministic-ai-assistant-with-classical-ml-pipelines-for-local-secure-and-zero-cost-operation/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/safestclaw-a-deterministic-ai-assistant-with-classical-ml-pipelines-for-local-secure-and-zero-cost-operation/</guid><description>SafestClaw uses classical ML pipelines and local AI models to deliver 90% of OpenClaw&amp;rsquo;s features at zero cost, avoiding prompt injection and cloud dependencies.</description></item><item><title>Seeker: a social engineering tool for harvesting browser location and fingerprint data</title><link>https://ramdi.fr/github-stars/seeker-a-social-engineering-tool-for-harvesting-browser-location-and-fingerprint-data/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/seeker-a-social-engineering-tool-for-harvesting-browser-location-and-fingerprint-data/</guid><description>Seeker hosts fake web pages to trick users into granting browser location permission, harvesting precise GPS and device fingerprint data via HTML5 APIs. Built with Python and Flask, it runs on multiple platforms and supports export to Google Earth and Telegram.</description></item><item><title>skill-check: enforcing quality standards for AI agent skills with measurable scoring</title><link>https://ramdi.fr/github-stars/skill-check-enforcing-quality-standards-for-ai-agent-skills-with-measurable-scoring/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/skill-check-enforcing-quality-standards-for-ai-agent-skills-with-measurable-scoring/</guid><description>skill-check is a TypeScript CLI that validates and scores AI agent SKILL.md files with auto-fix and security scanning, supporting multiple output formats and baseline comparisons.</description></item><item><title>VoidAuth: a self-hosted OpenID Connect SSO provider for homelabs</title><link>https://ramdi.fr/github-stars/voidauth-a-self-hosted-openid-connect-sso-provider-for-homelabs/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/voidauth-a-self-hosted-openid-connect-sso-provider-for-homelabs/</guid><description>VoidAuth is a TypeScript-based self-hosted OpenID Connect provider and ForwardAuth reverse proxy designed for homelabs, offering user management, passkeys, MFA, and Docker-first deployment.</description></item><item><title>WhatsApp-OSINT: A Python CLI tool for WhatsApp phone number intelligence via RapidAPI</title><link>https://ramdi.fr/github-stars/whatsapp-osint-a-python-cli-tool-for-whatsapp-phone-number-intelligence-via-rapidapi/</link><pubDate>Sat, 23 May 2026 20:41:14 +0000</pubDate><guid>https://ramdi.fr/github-stars/whatsapp-osint-a-python-cli-tool-for-whatsapp-phone-number-intelligence-via-rapidapi/</guid><description>WhatsApp-OSINT is a Python CLI that queries RapidAPI endpoints to extract WhatsApp phone number intelligence, including profile pics, business status, linked devices, and privacy settings.</description></item><item><title>OpenShell: Securing AI agents with runtime-policy sandboxing from NVIDIA</title><link>https://ramdi.fr/github-stars/openshell-securing-ai-agents-with-runtime-policy-sandboxing-from-nvidia/</link><pubDate>Mon, 18 May 2026 18:25:17 +0000</pubDate><guid>https://ramdi.fr/github-stars/openshell-securing-ai-agents-with-runtime-policy-sandboxing-from-nvidia/</guid><description>OpenShell by NVIDIA offers a Rust-based AI agent sandbox runtime with hot-reloadable YAML policies for filesystem, network, process, and inference controls inside containers.</description></item><item><title>Trivy: a unified security scanner for container images, filesystems, and Kubernetes</title><link>https://ramdi.fr/github-stars/trivy-a-unified-security-scanner-for-container-images-filesystems-and-kubernetes/</link><pubDate>Tue, 05 May 2026 22:24:55 +0000</pubDate><guid>https://ramdi.fr/github-stars/trivy-a-unified-security-scanner-for-container-images-filesystems-and-kubernetes/</guid><description>Trivy combines vulnerability detection, misconfiguration scanning, secret discovery, SBOM generation, and license analysis in one Go-based CLI tool for containers, filesystems, and Kubernetes clusters.</description></item><item><title>Sherlock: A modular Python CLI tool for username reconnaissance across 400+ social networks</title><link>https://ramdi.fr/github-stars/sherlock-a-modular-python-cli-tool-for-username-reconnaissance-across-400-social-networks/</link><pubDate>Tue, 05 May 2026 18:13:32 +0000</pubDate><guid>https://ramdi.fr/github-stars/sherlock-a-modular-python-cli-tool-for-username-reconnaissance-across-400-social-networks/</guid><description>Sherlock is a Python CLI tool that checks username availability across 400+ social networks using a modular JSON-driven detection system. Practical, extensible, and flexible.</description></item><item><title>cfpsec: a Python CLI for secure fetching of security conference CFPs</title><link>https://ramdi.fr/github-stars/cfpsec-a-python-cli-for-secure-fetching-of-security-conference-cfps/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/cfpsec-a-python-cli-for-secure-fetching-of-security-conference-cfps/</guid><description>cfpsec is a Python CLI tool that fetches Call For Papers data from cfptime.org with security-focused hardening like ANSI escape sanitization and CSV formula injection protection.</description></item><item><title>DLLHijackHunter: Confirming real DLL hijacks on Windows with a canary DLL approach</title><link>https://ramdi.fr/github-stars/dllhijackhunter-confirming-real-dll-hijacks-on-windows-with-a-canary-dll-approach/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/dllhijackhunter-confirming-real-dll-hijacks-on-windows-with-a-canary-dll-approach/</guid><description>DLLHijackHunter is a C# tool for Windows that confirms DLL hijack vulnerabilities by deploying test DLLs and verifying execution, reducing false positives in detection.</description></item><item><title>Inside santifer/cv-santiago: a production-grade AI-powered portfolio with robust security and evaluation</title><link>https://ramdi.fr/github-stars/inside-santifer-cv-santiago-a-production-grade-ai-powered-portfolio-with-robust-security-and-evaluation/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-santifer-cv-santiago-a-production-grade-ai-powered-portfolio-with-robust-security-and-evaluation/</guid><description>santifer/cv-santiago offers an interactive portfolio CV with a dual-mode AI chatbot, hybrid search, multi-layer prompt injection defenses, and a closed-loop evaluation pipeline for production-grade AI security.</description></item><item><title>Magento Open Source: A community-driven foundation for e-commerce</title><link>https://ramdi.fr/github-stars/magento-open-source-a-community-driven-foundation-for-e-commerce/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/magento-open-source-a-community-driven-foundation-for-e-commerce/</guid><description>Magento Open Source is a PHP-based e-commerce platform emphasizing community maintainers with elevated permissions and strong security practices. It offers a foundation for building online stores with active community governance.</description></item><item><title>Personal security checklist powered by a single YAML source: architecture and insights</title><link>https://ramdi.fr/github-stars/personal-security-checklist-powered-by-a-single-yaml-source-architecture-and-insights/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/personal-security-checklist-powered-by-a-single-yaml-source-architecture-and-insights/</guid><description>A TypeScript project using one YAML file to drive a static site, REST API, and markdown docs for personal security tips. Explore its architecture and tradeoffs.</description></item><item><title>secrets-patterns-db: expanding regex coverage for secret scanning in codebases</title><link>https://ramdi.fr/github-stars/secrets-patterns-db-expanding-regex-coverage-for-secret-scanning-in-codebases/</link><pubDate>Tue, 05 May 2026 16:46:42 +0000</pubDate><guid>https://ramdi.fr/github-stars/secrets-patterns-db-expanding-regex-coverage-for-secret-scanning-in-codebases/</guid><description>secrets-patterns-db offers over 1600 regex patterns for detecting secrets in code, doubling coverage compared to TruffleHog and vastly outpacing Gitleaks. It enhances AppSec scanning with tested, categorized regexes.</description></item><item><title>CoreExtendedNFC: Bringing libnfc Protocol Logic to iOS with Pure Swift</title><link>https://ramdi.fr/github-stars/coreextendednfc-bringing-libnfc-protocol-logic-to-ios-with-pure-swift/</link><pubDate>Tue, 05 May 2026 13:37:39 +0000</pubDate><guid>https://ramdi.fr/github-stars/coreextendednfc-bringing-libnfc-protocol-logic-to-ios-with-pure-swift/</guid><description>CoreExtendedNFC ports libnfc protocol-layer logic to iOS via CoreNFC, enabling high-level NFC operations in pure Swift with zero external dependencies and comprehensive test coverage.</description></item><item><title>DockMon: secure multi-host Docker monitoring with a lightweight Go agent and real-time metrics</title><link>https://ramdi.fr/github-stars/dockmon-secure-multi-host-docker-monitoring-with-a-lightweight-go-agent-and-real-time-metrics/</link><pubDate>Tue, 05 May 2026 13:37:39 +0000</pubDate><guid>https://ramdi.fr/github-stars/dockmon-secure-multi-host-docker-monitoring-with-a-lightweight-go-agent-and-real-time-metrics/</guid><description>DockMon offers secure multi-host Docker monitoring with a Go agent using mTLS, FastAPI backend, React frontend, real-time dashboards, and multi-channel alerts. A solid choice for enterprise-grade observability.</description></item><item><title>Evilginx 3: A Go-based transparent reverse proxy for phishing and MFA bypass</title><link>https://ramdi.fr/github-stars/evilginx-3-a-go-based-transparent-reverse-proxy-for-phishing-and-mfa-bypass/</link><pubDate>Tue, 05 May 2026 13:37:39 +0000</pubDate><guid>https://ramdi.fr/github-stars/evilginx-3-a-go-based-transparent-reverse-proxy-for-phishing-and-mfa-bypass/</guid><description>Evilginx 3 is a standalone Go framework implementing HTTP/DNS servers to transparently intercept and modify traffic for phishing and MFA bypass using session hijacking.</description></item><item><title>FinalRecon: a unified Python CLI for comprehensive web reconnaissance and OSINT automation</title><link>https://ramdi.fr/github-stars/finalrecon-a-unified-python-cli-for-comprehensive-web-reconnaissance-and-osint-automation/</link><pubDate>Tue, 05 May 2026 13:37:39 +0000</pubDate><guid>https://ramdi.fr/github-stars/finalrecon-a-unified-python-cli-for-comprehensive-web-reconnaissance-and-osint-automation/</guid><description>FinalRecon consolidates fragmented OSINT and web reconnaissance workflows into a single Python CLI tool, integrating multiple data sources and scanning techniques with modular API key support.</description></item><item><title>Inside capa: a Python engine for binary capability analysis with instruction-level evidence</title><link>https://ramdi.fr/github-stars/inside-capa-a-python-engine-for-binary-capability-analysis-with-instruction-level-evidence/</link><pubDate>Tue, 05 May 2026 13:37:39 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-capa-a-python-engine-for-binary-capability-analysis-with-instruction-level-evidence/</guid><description>Explore capa, a Python tool by Mandiant that analyzes binaries to identify capabilities via rule matching, with detailed evidence tracing for malware analysts.</description></item><item><title>awesome-sandbox: comparing modern sandboxing tech for AI agent execution</title><link>https://ramdi.fr/github-stars/awesome-sandbox-comparing-modern-sandboxing-tech-for-ai-agent-execution/</link><pubDate>Mon, 04 May 2026 10:23:03 +0000</pubDate><guid>https://ramdi.fr/github-stars/awesome-sandbox-comparing-modern-sandboxing-tech-for-ai-agent-execution/</guid><description>A curated repo comparing sandboxing technologies for secure, fast AI agent execution. Covers microVMs, containers, WebAssembly, and more with tradeoffs on security vs speed.</description></item><item><title>Portracker: A lightweight self-hosted port monitoring tool with secure Docker proxy integration</title><link>https://ramdi.fr/github-stars/portracker-a-lightweight-self-hosted-port-monitoring-tool-with-secure-docker-proxy-integration/</link><pubDate>Mon, 04 May 2026 10:23:03 +0000</pubDate><guid>https://ramdi.fr/github-stars/portracker-a-lightweight-self-hosted-port-monitoring-tool-with-secure-docker-proxy-integration/</guid><description>Portracker is a self-hosted port monitoring tool with embedded SQLite and Docker socket proxy for secure, read-only Docker API access. It supports multi-server federation and TrueNAS integration.</description></item><item><title>AgentShield: auditing AI agent security configurations with runtime confidence scoring</title><link>https://ramdi.fr/github-stars/agentshield-auditing-ai-agent-security-configurations-with-runtime-confidence-scoring/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/agentshield-auditing-ai-agent-security-configurations-with-runtime-confidence-scoring/</guid><description>AgentShield is a TypeScript CLI tool that audits Claude Code AI agent configs for secrets, permissions, hooks, and more using a runtime confidence system to reduce false positives.</description></item><item><title>DefaultCreds-cheat-sheet: consolidated default credentials for pentesting</title><link>https://ramdi.fr/github-stars/defaultcreds-cheat-sheet-consolidated-default-credentials-for-pentesting/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/defaultcreds-cheat-sheet-consolidated-default-credentials-for-pentesting/</guid><description>DefaultCreds-cheat-sheet consolidates 3,711 default credentials from 1,398 vendors into a Python CLI tool with export and proxy support for pentesting workflows.</description></item><item><title>Dippy: safe shell command hooks for Claude Code with a custom zero-dependency bash parser</title><link>https://ramdi.fr/github-stars/dippy-safe-shell-command-hooks-for-claude-code-with-a-custom-zero-dependency-bash-parser/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/dippy-safe-shell-command-hooks-for-claude-code-with-a-custom-zero-dependency-bash-parser/</guid><description>Dippy uses a custom zero-dependency bash parser to auto-approve safe shell commands run by Claude Code, blocking destructive operations and reducing permission fatigue.</description></item><item><title>dirsearch: a Python web path brute-forcer with precise extension handling</title><link>https://ramdi.fr/github-stars/dirsearch-a-python-web-path-brute-forcer-with-precise-extension-handling/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/dirsearch-a-python-web-path-brute-forcer-with-precise-extension-handling/</guid><description>dirsearch is a Python tool for brute-forcing web paths with a clever extension handling system. It offers multi-threaded, recursive scanning and session resumption for security reconnaissance.</description></item><item><title>Gridex: a native cross-platform database IDE with a secure AI-integrated MCP server</title><link>https://ramdi.fr/github-stars/gridex-a-native-cross-platform-database-ide-with-a-secure-ai-integrated-mcp-server/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/gridex-a-native-cross-platform-database-ide-with-a-secure-ai-integrated-mcp-server/</guid><description>Gridex is a native cross-platform database IDE unifying seven database engines with a security-focused MCP server that safely exposes DB operations to AI agents. It uses native UI tech per OS and supports SSH, mTLS, and AI chat integrations.</description></item><item><title>Infisical: A comprehensive open-source secrets management platform with zero-code secret injection</title><link>https://ramdi.fr/github-stars/infisical-a-comprehensive-open-source-secrets-management-platform-with-zero-code-secret-injection/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/infisical-a-comprehensive-open-source-secrets-management-platform-with-zero-code-secret-injection/</guid><description>Infisical is an open-source secrets management platform offering dynamic secrets, PKI management, RBAC, and a unique zero-code secret injection agent. It’s built in TypeScript and deploys via Docker Compose.</description></item><item><title>Inside Shuffle: an open-source platform for distributed security automation workflows</title><link>https://ramdi.fr/github-stars/inside-shuffle-an-open-source-platform-for-distributed-security-automation-workflows/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-shuffle-an-open-source-platform-for-distributed-security-automation-workflows/</guid><description>Shuffle is an open-source SOAR platform with a distributed execution model that scales security automation across cloud and on-prem environments using Golang backend and ReactJS frontend.</description></item><item><title>ipblocklist: Aggregated IP threat intelligence with clear licensing boundaries</title><link>https://ramdi.fr/github-stars/ipblocklist-aggregated-ip-threat-intelligence-with-clear-licensing-boundaries/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/ipblocklist-aggregated-ip-threat-intelligence-with-clear-licensing-boundaries/</guid><description>ipblocklist aggregates IP blocklists from 30+ threat intel sources into curated inbound and outbound lists, balancing licensing constraints and operational complexity.</description></item><item><title>ISC-Bench: exposing fundamental AI safety failures from workflow-level design</title><link>https://ramdi.fr/github-stars/isc-bench-exposing-fundamental-ai-safety-failures-from-workflow-level-design/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/isc-bench-exposing-fundamental-ai-safety-failures-from-workflow-level-design/</guid><description>ISC-Bench reveals a structural AI safety flaw where LLMs produce harmful outputs to complete tasks, bypassing prompt-level defenses. It benchmarks this workflow-level vulnerability across top models.</description></item><item><title>Mapping the full attack surface of connected devices with awesome-connected-things-sec</title><link>https://ramdi.fr/github-stars/mapping-the-full-attack-surface-of-connected-devices-with-awesome-connected-things-sec/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/mapping-the-full-attack-surface-of-connected-devices-with-awesome-connected-things-sec/</guid><description>A curated knowledge base covering hardware and wireless attack surfaces of connected devices, essential for IoT security researchers and hardware hackers.</description></item><item><title>OASIS: a Python CLI for AI-driven code vulnerability scanning with deterministic validation</title><link>https://ramdi.fr/github-stars/oasis-a-python-cli-for-ai-driven-code-vulnerability-scanning-with-deterministic-validation/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/oasis-a-python-cli-for-ai-driven-code-vulnerability-scanning-with-deterministic-validation/</guid><description>OASIS is a Python CLI security auditor using LangGraph-orchestrated LLMs for two-phase scanning and deterministic validation of code vulnerabilities. It balances AI insights with guardrails to reduce false positives.</description></item><item><title>Pentest Swarm AI: A stigmergic swarm intelligence approach to autonomous penetration testing</title><link>https://ramdi.fr/github-stars/pentest-swarm-ai-a-stigmergic-swarm-intelligence-approach-to-autonomous-penetration-testing/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/pentest-swarm-ai-a-stigmergic-swarm-intelligence-approach-to-autonomous-penetration-testing/</guid><description>Pentest Swarm AI uses stigmergic swarm intelligence via a pheromone-decaying blackboard for decentralized, emergent pentesting workflows integrating multiple tools and LLMs.</description></item><item><title>SafestClaw: Combining simple AI setup with automated security scanning in Python</title><link>https://ramdi.fr/github-stars/safestclaw-combining-simple-ai-setup-with-automated-security-scanning-in-python/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/safestclaw-combining-simple-ai-setup-with-automated-security-scanning-in-python/</guid><description>SafestClaw offers a Python CLI tool that simplifies AI model configuration and automates security scanning across projects. It supports cloud and local AI models with zero YAML config editing.</description></item><item><title>ScaleTail: Per-Service Tailscale Sidecars for Secure Self-Hosting with Docker Compose</title><link>https://ramdi.fr/github-stars/scaletail-per-service-tailscale-sidecars-for-secure-self-hosting-with-docker-compose/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/scaletail-per-service-tailscale-sidecars-for-secure-self-hosting-with-docker-compose/</guid><description>ScaleTail uses Tailscale sidecars per service in Docker Compose to enable automatic HTTPS and zero-config networking for self-hosted apps without public DNS or port forwarding.</description></item><item><title>Sliver: a cryptographically unique adversary emulation framework with multi-protocol C2</title><link>https://ramdi.fr/github-stars/sliver-a-cryptographically-unique-adversary-emulation-framework-with-multi-protocol-c2/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/sliver-a-cryptographically-unique-adversary-emulation-framework-with-multi-protocol-c2/</guid><description>Sliver uses compile-time asymmetric encryption keys to generate unique implant binaries and supports multiple C2 protocols for cross-platform adversary emulation. Here&amp;rsquo;s how it works under the hood.</description></item><item><title>Snyk Agent Scan: interactive security scanning for AI agent components</title><link>https://ramdi.fr/github-stars/snyk-agent-scan-interactive-security-scanning-for-ai-agent-components/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/snyk-agent-scan-interactive-security-scanning-for-ai-agent-components/</guid><description>Snyk Agent Scan is a Python CLI tool detecting 15+ security risks in AI agent MCP servers and skills, using an interactive consent model for safe scanning.</description></item><item><title>WindowsAPIAbuseAtlas: A practical catalog of Windows API abuse techniques with YARA rules</title><link>https://ramdi.fr/github-stars/windowsapiabuseatlas-a-practical-catalog-of-windows-api-abuse-techniques-with-yara-rules/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/windowsapiabuseatlas-a-practical-catalog-of-windows-api-abuse-techniques-with-yara-rules/</guid><description>WindowsAPIAbuseAtlas catalogs Windows API abuse by malware with reverse engineering notes and YARA rules, aiding threat hunters and malware analysts in detection.</description></item><item><title>X-osint: a modular Python CLI framework orchestrating multiple OSINT APIs</title><link>https://ramdi.fr/github-stars/x-osint-a-modular-python-cli-framework-orchestrating-multiple-osint-apis/</link><pubDate>Mon, 04 May 2026 10:23:02 +0000</pubDate><guid>https://ramdi.fr/github-stars/x-osint-a-modular-python-cli-framework-orchestrating-multiple-osint-apis/</guid><description>X-osint is a Python CLI tool aggregating OSINT data from multiple external APIs with a modular menu-driven interface, designed for Termux, Linux, and macOS.</description></item><item><title>Clawd Cursor: Unified cross-platform desktop control for AI agents</title><link>https://ramdi.fr/github-stars/clawd-cursor-unified-cross-platform-desktop-control-for-ai-agents/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/clawd-cursor-unified-cross-platform-desktop-control-for-ai-agents/</guid><description>Clawd Cursor offers AI agents native desktop control on Windows, macOS, and Linux with a unified PlatformAdapter and local-first architecture, enabling secure, model-agnostic automation without cloud round-trips.</description></item><item><title>fastapi-guard: fine-grained security middleware for FastAPI with composable per-route decorators</title><link>https://ramdi.fr/github-stars/fastapi-guard-fine-grained-security-middleware-for-fastapi-with-composable-per-route-decorators/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/fastapi-guard-fine-grained-security-middleware-for-fastapi-with-composable-per-route-decorators/</guid><description>fastapi-guard offers a composable security middleware for FastAPI with per-route decorators, IP filtering, rate limiting, and an optional cloud dashboard for monitoring.</description></item><item><title>Inside Mandiant's FLARE Learning Hub: A practical Go reverse engineering reference and malware analysis training platform</title><link>https://ramdi.fr/github-stars/inside-mandiant-s-flare-learning-hub-a-practical-go-reverse-engineering-reference-and-malware-analysis-training-platform/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-mandiant-s-flare-learning-hub-a-practical-go-reverse-engineering-reference-and-malware-analysis-training-platform/</guid><description>Explore Mandiant&amp;rsquo;s FLARE Learning Hub, an open educational platform for malware analysis and reverse engineering with a standout Go reverse engineering reference targeting Windows AMD64.</description></item><item><title>Inside the iOS-Hardening-Guide: Practical security for Apple devices</title><link>https://ramdi.fr/github-stars/inside-the-ios-hardening-guide-practical-security-for-apple-devices/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/inside-the-ios-hardening-guide-practical-security-for-apple-devices/</guid><description>A deep dive into the iOS-Hardening-Guide repo, covering hardware exploits like checkm8, Apple&amp;rsquo;s mitigations, and practical operational security for iOS/iPadOS users.</description></item><item><title>oh-my-kiro: deterministic hooks and reliable loops for AI coding agents</title><link>https://ramdi.fr/github-stars/oh-my-kiro-deterministic-hooks-and-reliable-loops-for-ai-coding-agents/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/oh-my-kiro-deterministic-hooks-and-reliable-loops-for-ai-coding-agents/</guid><description>oh-my-kiro enhances AI coding agents with 3-layer deterministic enforcement and a crash-recovering outer loop, improving reliability and reducing hallucinations.</description></item><item><title>Picosnitch: per-executable network monitoring on Linux with eBPF and fanotify</title><link>https://ramdi.fr/github-stars/picosnitch-per-executable-network-monitoring-on-linux-with-ebpf-and-fanotify/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/picosnitch-per-executable-network-monitoring-on-linux-with-ebpf-and-fanotify/</guid><description>Picosnitch uses eBPF and fanotify to track bandwidth per executable on Linux, with device+inode caching and hash verification for accuracy.</description></item><item><title>reNgine: A Django-based framework for customizable web reconnaissance pipelines</title><link>https://ramdi.fr/github-stars/rengine-a-django-based-framework-for-customizable-web-reconnaissance-pipelines/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/rengine-a-django-based-framework-for-customizable-web-reconnaissance-pipelines/</guid><description>reNgine is a Django-powered web reconnaissance framework using YAML configurations to orchestrate multiple security tools with async concurrency and role-based access control.</description></item><item><title>watchtower: langgraph orchestration for automated pentesting workflows</title><link>https://ramdi.fr/github-stars/watchtower-langgraph-orchestration-for-automated-pentesting-workflows/</link><pubDate>Mon, 04 May 2026 10:23:01 +0000</pubDate><guid>https://ramdi.fr/github-stars/watchtower-langgraph-orchestration-for-automated-pentesting-workflows/</guid><description>Watchtower orchestrates 23 security tools via a LangGraph multi-agent system for automated pentesting. It uses a Planner-Worker-Analyst pattern, SQLite state, and supports multiple LLM providers.</description></item><item><title>AI penetration testing knowledge base: structured resources for LLM security research</title><link>https://ramdi.fr/github-stars/ai-penetration-testing-knowledge-base-structured-resources-for-llm-security-research/</link><pubDate>Mon, 04 May 2026 10:09:00 +0000</pubDate><guid>https://ramdi.fr/github-stars/ai-penetration-testing-knowledge-base-structured-resources-for-llm-security-research/</guid><description>A curated repository for AI/LLM penetration testing covering prompt injection, adversarial ML, and LLM red teaming with the OWASP LLM Top 10 framework.</description></item><item><title>Bureautix: Secure office workstations managed as code with NixOS and Git</title><link>https://ramdi.fr/github-stars/bureautix-secure-office-workstations-managed-as-code-with-nixos-and-git/</link><pubDate>Sat, 02 May 2026 20:07:04 +0000</pubDate><guid>https://ramdi.fr/github-stars/bureautix-secure-office-workstations-managed-as-code-with-nixos-and-git/</guid><description>Bureautix offers a minimal-infrastructure approach to secure office workstations using NixOS, Secure Boot, and FIDO2 MFA, managing user directories as code distributed via Git.</description></item><item><title>Maigret: A resilient OSINT username scraper across thousands of sites</title><link>https://ramdi.fr/github-stars/maigret-a-resilient-osint-username-scraper-across-thousands-of-sites/</link><pubDate>Sat, 02 May 2026 20:07:04 +0000</pubDate><guid>https://ramdi.fr/github-stars/maigret-a-resilient-osint-username-scraper-across-thousands-of-sites/</guid><description>Maigret is a Python-based OSINT tool that scrapes public profiles by username from 3,000+ sites without API keys. It features adaptive scraping, anti-blocking, and a web interface.</description></item><item><title>Vaultwarden: a resource-efficient Rust implementation of the Bitwarden server API</title><link>https://ramdi.fr/github-stars/vaultwarden-a-resource-efficient-rust-implementation-of-the-bitwarden-server-api/</link><pubDate>Sat, 02 May 2026 20:07:04 +0000</pubDate><guid>https://ramdi.fr/github-stars/vaultwarden-a-resource-efficient-rust-implementation-of-the-bitwarden-server-api/</guid><description>Vaultwarden is a lightweight, Rust-based server compatible with the Bitwarden API, optimized for self-hosting with low resource usage and Docker deployment.</description></item><item><title>SecLists: the essential wordlist collection for security testing</title><link>https://ramdi.fr/github-stars/seclists-the-essential-wordlist-collection-for-security-testing/</link><pubDate>Sat, 02 May 2026 20:02:28 +0000</pubDate><guid>https://ramdi.fr/github-stars/seclists-the-essential-wordlist-collection-for-security-testing/</guid><description>SecLists is a comprehensive collection of security testing wordlists and payloads, essential for penetration testers and researchers seeking standardized, ready-to-use resources.</description></item><item><title>Syncthing: secure, decentralized continuous file synchronization in Go</title><link>https://ramdi.fr/github-stars/syncthing-secure-decentralized-continuous-file-synchronization-in-go/</link><pubDate>Fri, 24 Apr 2026 07:26:29 +0000</pubDate><guid>https://ramdi.fr/github-stars/syncthing-secure-decentralized-continuous-file-synchronization-in-go/</guid><description>Syncthing is an open-source Go tool for continuous, secure, decentralized file synchronization across devices, emphasizing data safety and privacy.</description></item></channel></rss>