Projects in Awesome Lists tagged with open-source-security
A curated list of projects in awesome lists tagged with open-source-security .
https://github.com/pyupio/safety
Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected.
cicd dependency-management devsecops open-source-security package-management python security security-vulnerability travis vulnerability-detection vulnerability-scanners
Last synced: 12 Nov 2025
https://github.com/ossf/alpha-omega
Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.
open-source-security opensource security
Last synced: 28 Jan 2026
https://github.com/filipi86/drogonsec
High-performance open-source security scanner combining SAST, SCA, Secret Detection, and IaC analysis, built for developers and CI/CD pipelines.
application-security cicd-security cloud-security code-scanning dependency-scanning devsecops iac-security open-source-security sast sca secret-detection security-scanner shift-left-security static-analysis vulnerability-scanner
Last synced: 17 Apr 2026
https://github.com/cloudlinux/securechain-java
TuxCare SecureChain enhances Java supply chain security through vetted libraries, vulnerability fixes, and extended support. Ideal for enterprise-level compliance and secure development.
compliance-management dependency-management enterprise-security enterprise-security-compliance java-dependency-management java-libraries-vetting java-security java-supply-chain-security open-source-security oss-vulnerability-remediation sbom software-bill-of-materials supply-chain-security vulnerability-assessment
Last synced: 17 Jan 2026
https://github.com/hookprobe/hookprobe
🛡️ Free AI that blocks hackers while you sleep. Runs on cheap hardware. When someone in Tokyo gets attacked, you're protected in 30 seconds. No fees. No experts needed. Just protection. One node's detection → everyone's protection.
ai-security automated-mitigation autonomous-threat-response cybersecurity ids iot-security ips n8n open-source-security qsecbit siem small-business soar sql-injection-prevention threat-detection threat-intelligence vxlan vxlan-interface waf zero-trust
Last synced: 05 Mar 2026
https://github.com/chocapikk/cve-2023-51467
Apache OfBiz Auth Bypass Scanner for CVE-2023-51467
apache-ofbiz auth-bypass bugbounty cve-2023-51467 cybersecurity ethical-hacking exploit infosec open-source-security patch-management penetration-testing security-automation security-tools vulnerability-detection vulnerability-scanner
Last synced: 29 Jul 2025
https://github.com/boloto1979/securiskan
Securiskan: Scan files for malware. Secure your digital space.
antivirus malware-detection open-source-security security-tools trojan virus-detection web-security
Last synced: 11 Apr 2025
https://github.com/chocapikk/cve-2024-22899-to-22903-exploitchain
Comprehensive Exploit Chain for Multiple Vulnerabilities in VinChin Backup & Recovery <= 7.2
authenticated-rce cve-2024-22899 cve-2024-22900 cve-2024-22901 cve-2024-22902 cve-2024-22903 cybersecurity ethical-hacking exploit-chain exploit-development hacking-tools infosec open-source-security penetration-testing reverse-engineering security-research security-vulnerability vinchin-exploit vulnerability-research
Last synced: 24 Jun 2025
https://github.com/shiftleftcyber/shiftsbomgen-node
A pure client side CycloneDX SBOM Generator for node/npm projects
azure-devops bitbucket cicd cyclonedx github-actions gitlab-ci open-source-security oss sbom spdx supply-chain-security
Last synced: 15 Apr 2025
https://github.com/Su1ph3r/Nubicustos
Cloud security intelligence platform with cross-tool integration — transform raw security scans into actionable intelligence across AWS, Azure, GCP, and Kubernetes
aws-security azure-security checkov cloud-security compliance cspm devsecops gcp-security kubernetes-security multi-cloud open-source-security prowler scoutsuite security-audit vulnerability-scanner
Last synced: 13 Feb 2026
https://github.com/yashbarot/security-scanner
A fast, zero-config CLI tool that scans your project dependencies and Dockerfiles for known security vulnerabilities — across 8 ecosystems, powered by free public vulnerability databases, with AI-powered analysis and scheduled scanning.
cli-tool cve dependency-check devsecops npm-audit open-source-security osv pip-audit python sca security supply-chain-security vulnerability-scanner
Last synced: 07 Apr 2026
https://github.com/claudiaslibrary/webappsec
This tool automates the process of auditing a web application for common security vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), and missing HTTP security headers. The results of the audit are stored in an HTML report for easy review.
cross-site-scripting cybersecurity html-report http-secure-header open-source-security penetration-testing python-security sql-injection vulnerability-scanners web-security xss
Last synced: 12 Feb 2026
https://github.com/shiftleftcyber/shiftsbom-utils
A pure client side Bitbucket Pipe containing a collection of open source tools to perform various types of additional analysis on a CycloneDX or SPDX sBOM (Software Bill of Materials).
bitbucket bitbucket-pipelines bitbucket-pipes cicd cyclonedx open-source-security oss sbom supply-chain-security
Last synced: 13 Oct 2025
https://github.com/panagiotiskots/timed-pc-protection-layer
A stealth security program that adds a timed challenge to protect your PC, shutting down if unauthorized users fail to meet the task. Ensures an extra layer of data protection even after login credentials are compromised.
additional-layer automation c data-protection folder-trigger low-level-programming open-source-security pc-security privacy startup-program stealth-security system-calls system-shutdown timed-shutdown windows-security
Last synced: 17 Mar 2025
https://github.com/og-mason/javascript-memory-exploitation
Exploit :)
arm64 blue-team ethical-hacking exploit explorer forensics hacking-tool incident-response infosec javascript m1-mac oob open-source open-source-security poc privacy-tools python3 red-team shellcode threat-detection
Last synced: 06 May 2026
https://github.com/panagiotiskotsorgios/timed-pc-protection-layer
A stealth security program that adds a timed challenge to protect your PC, shutting down if unauthorized users fail to meet the task. Ensures an extra layer of data protection even after login credentials are compromised.
additional-layer automation c data-protection folder-trigger low-level-programming open-source-security pc-security privacy startup-program stealth-security system-calls system-shutdown timed-shutdown windows-security
Last synced: 27 Jul 2025
https://github.com/icsrc-org/.github
Public profile repository for ICSRC, containing the organization’s official GitHub profile and public-facing information.
community cyber-defense cyber-threats cybersecurity digital-forensics github github-templates incident-response information-security malware-analysis meta network-security open-source-security organization-profile security security-operations security-research security-tools threat-intelligence vulnerability-analysis
Last synced: 08 Jan 2026
https://github.com/abhishekayu/trustlens-ai
Explainable AI-Powered URL Trust Intelligence Engine — 15+ parallel analysis engines, hybrid 70/30 rule+AI scoring, brand impersonation detection, behavioral analysis, and full-transparency evidence breakdown. Self-hosted, open-source.
ai-security anti-phishing brand-impersonation cybersecurity domain-analysis explainable-ai fastapi malware-detection open-source-security phishing-detection python react security-headers self-hosted threat-intelligence trust-scoring typescript url-analysis url-scanner web-security
Last synced: 24 Jun 2026
https://github.com/phylum-dev/install-phylum-latest-action
GitHub Action to install phylum CLI tool
dependencies open-source-security risk-analysis sca security security-analysis supply-chain-security
Last synced: 14 May 2025
https://github.com/shiftleftcyber/cyclonedx-bitbucket-pipe
Bitbucket pipe to generate a CycloneDX sBOM for Java, Go, Python & Node projects
cyclonedx cyclonedx-sbom open-source-security oss sbom supply-chain-security
Last synced: 21 Apr 2026
https://github.com/paolocarner/cis-controls-hygiene-assessment
Free self-assessment tool mapping your organisation's posture against 20 curated CIS Controls v8.1 IG1 safeguards — with a prioritised gap list and hygiene score. Client-side only, no tracking.
cis-controls-v8 cybersecurity open-source-security security-assessment
Last synced: 10 Jun 2026
https://github.com/nigerbartus/shai-hulud-2.0-detector
🛡️ Guard your projects against the Shai-Hulud 2.0 npm supply chain attack with our secure detection tool for safer development.
credential-theft devsecops malware-detection nodejs npm open-source-security package-security sarif sarif-report security sha1-hulud shai-hulud shai-hulud-attack shai-hulud2 shai-hulud2-detector shai-hulud2-inspector supply-chain-security vulnerability-scanner
Last synced: 13 Apr 2026