PyPI Stats
  • Insights
  • PyPI
  • GitHub
  • Search
  • Compare
  • Advisories
  • Ecosystem
  • About
Home

Search Packages

Find Python packages by name, description, GitHub topic, or filter by metrics
TypeError
secure

Modern Python library for HTTP security headers with safe defaults, configurable presets, and first-class ASGI/WSGI middleware (FastAPI, Django, Flask, Shiny, and more).

2M 993 31
chenjj
cors

🎯 Fast CORS misconfiguration vulnerabilities scanner

33K 1K 185
Ge0rg3
requests-ip-rotator

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

13K 2K 172
FrancescoStabile
numasec

AI agent for penetration testing. Like Claude Code, but for security. Open source, MCP-native, works with any LLM.

3K 119 17
MobSF
mobsf

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

2K 21K 4K
GagancM
arcis

One-line security middleware for Node.js and Python. XSS, SQLi, SSRF, rate limiting, CORS, security headers

2K 5 0
WangYihang
githacker

🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.

2K 2K 247
chenjj
corscanner

🎯 Fast CORS misconfiguration vulnerabilities scanner

2K 1K 185
dev-ugurkontel
surface-audit

Deterministic security smoke tests for preview, staging, and pre-deploy web URLs.

1K 1 1
BobongKu
nodriver-proxy-mcp

Unified MCP Server for Web Security — 39 tools for autonomous pentesting

990 2 1
SecAegis
secautoban

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、天融信WAF、科来网络安全分析审计系统、深信服态势感知、启明星辰全网安全态势感知系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、BGP、奇安信防火墙、天融信防火墙、深信服防火墙。

854 232 45
dmdhrumilmistry
pyhtools

A Python Hacking Library consisting of network scanner, arp spoofer and detector, dns spoofer, code injector, packet sniffer, network jammer, email sender, downloader, wireless password harvester credential harvester, keylogger, download&execute, ransomware, data harvestors, etc.

779 630 100
EPTLLC
brs-xss

Context-aware async XSS scanner powered by BRS-KB

362 34 5
djosix
padding-oracle

Threaded padding oracle automation.

284 38 3
Zipnx
overreacher

A CORS Misconfiguration scanning tool

255 1 0
EPTLLC
brs-kb

BRS-KB is XSS Knowledge Base API

246 0 1
Pymmdrza
spyhunt

A comprehensive network scanning and vulnerability assessment tool designed for security professionals

230 2 2
OwenChia
githack

A .git/ folder disclosure exploit

216 21 5
elliottophellia
aizawa

Aizawa is a command-line webshell designed to execute commands through HTTP header

173 68 10
dtag-dev-sec
explo

Test web based vulnerabilities from a .yaml file

148 196 49
Dhruvpatel004
django-gradual-throttle

🕒 A Django middleware for graceful request throttling with configurable delay strategies (linear, exponential, or custom). Unlike traditional rate limiting that blocks excessive traffic, this package introduces progressive delays to throttle requests smartly and smoothly.

143 3 0
DonAsako
cssinj

CSSINJ is a tool that exploits CSS injection vulnerabilities to exfiltrate sensitive information from web applications. This tool is designed for security professionals to assess the security posture of web applications by demonstrating how CSS can be used to extract data covertly.

122 3 0
marksowell
clickjacking-poc

A Python package for creating a clickjacking proof of concept (POC).

86 1 1
xsser01
phantomcollect

Advanced stealth web data collection framework for security

77 20 3
    • Data from PyPI, GitHub, ClickHouse, and BigQuery