All-Defense-Tool is a curated repository of open-source offensive and defensive security tools.
The project addresses the challenge of discovering and organizing the fragmented landscape of security testing tools by aggregating them into a single reference. It collects tools across the full spectrum of security work: information gathering tools including asset discovery, subdomain enumeration, directory scanning, port scanning, and fingerprinting; exploitation tools for common CMS platforms, OA systems, middleware, and databases; internal network penetration tools covering tunneling, credential extraction, and evasion techniques; and incident response resources. The repository maintains links to external projects rather than reimplementing them, positioning itself as a discovery and navigation layer.
This tool suits security professionals and teams who need a starting point for building their own toolkit or understanding what capabilities exist in the open-source ecosystem. It works best for those conducting authorized security assessments who want to quickly identify which existing tools might apply to their target environment rather than building from scratch. The project explicitly disclaims responsibility for tool contents and warns users to verify tools for malicious payloads before use, reflecting the inherent risk of aggregating third-party security software.
The project maintains automated weekly updates to track the latest activity status of integrated tools, enabling users to identify actively maintained projects. The repository accepts issue submissions for tool suggestions but does not accept pull requests, indicating a curated rather than community-driven approach to tool inclusion.