guchangan1/all-defense-tool

本项目集成了全网优秀的攻防武器工具项目,包含自动化利用,子域名、目录扫描、端口扫描等信息收集工具,各大中间件、cms、OA漏洞利用工具,爆破工具、内网横向、免杀、社工钓鱼以及应急响应、甲方安全资料等其他安全攻防资料。

View on GitHub ↗Jump to charts ↓Open shareable report

Summary Information

Updated 20 minutes ago
Added to GitGenius on September 8th, 2026
Created on April 25th, 2022
Open Issues & Pull Requests: 1 (+0)
GitHub issues: Enabled
Number of forks: 1,421
Total Stargazers: 7,997 (+0)
Total Subscribers: 121 (+0)

Repository Insights (GitGenius)

Median issue/PR response: 2.6 days
Mean response time: 5.6 days
90th percentile: 19.5 days
Tracked items: 7

Most active contributors

Sign in to see contributor activity.

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Open issues: 0
New in 7 days: 0
Closed in 7 days: 0
Avg open age: N/A days
Stale 30+ days: 0
Stale 90+ days: 0

Recent activity

Opened in 7 days: 0
Closed in 7 days: 0
Comments in 7 days: 0
Events in 7 days: 0

Top labels

No label distribution available yet.

Most active issues this week

No issue events were indexed in the last 7 days.

Detailed Description

All-Defense-Tool is a curated repository of open-source offensive and defensive security tools.

The project addresses the challenge of discovering and organizing the fragmented landscape of security testing tools by aggregating them into a single reference. It collects tools across the full spectrum of security work: information gathering tools including asset discovery, subdomain enumeration, directory scanning, port scanning, and fingerprinting; exploitation tools for common CMS platforms, OA systems, middleware, and databases; internal network penetration tools covering tunneling, credential extraction, and evasion techniques; and incident response resources. The repository maintains links to external projects rather than reimplementing them, positioning itself as a discovery and navigation layer.

This tool suits security professionals and teams who need a starting point for building their own toolkit or understanding what capabilities exist in the open-source ecosystem. It works best for those conducting authorized security assessments who want to quickly identify which existing tools might apply to their target environment rather than building from scratch. The project explicitly disclaims responsibility for tool contents and warns users to verify tools for malicious payloads before use, reflecting the inherent risk of aggregating third-party security software.

The project maintains automated weekly updates to track the latest activity status of integrated tools, enabling users to identify actively maintained projects. The repository accepts issue submissions for tool suggestions but does not accept pull requests, indicating a curated rather than community-driven approach to tool inclusion.