An open API service indexing awesome lists of open source software.

Projects in Awesome Lists tagged with software-security

A curated list of projects in awesome lists tagged with software-security .

https://github.com/dependencytrack/dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

appsec bill-of-materials bom component-analysis cyclonedx devsecops hacktoberfest nvd ossindex owasp package-url purl sbom sca security security-automation software-composition-analysis software-security vulnerabilities vulnerability-detection

Last synced: 13 May 2025

https://github.com/DependencyTrack/dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

appsec bill-of-materials bom component-analysis cyclonedx devsecops hacktoberfest nvd ossindex owasp package-url purl sbom sca security security-automation software-composition-analysis software-security vulnerabilities vulnerability-detection

Last synced: 30 Mar 2025

https://github.com/albuch/sbt-dependency-check

SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). :rainbow:

appsec cve devops devsecops infosec nvd owasp owasp-dependencycheck sbt sbt-plugin scala security security-audit security-automation software-composition-analysis software-security static-analysis vulnerabilities vulnerability-scanners

Last synced: 12 Jan 2026

https://github.com/stevespringett/nist-data-mirror

A simple Java command-line utility to mirror the CVE JSON data from NIST.

appsec cpe cve java nist nvd sca software-composition-analysis software-security

Last synced: 14 Jan 2026

https://github.com/trialmacapp/trialmacapp

a programmer who loves reverse engineering and software security

reverse-engineering software-security

Last synced: 05 Apr 2025

https://github.com/jenkinsci/dependency-check-plugin

Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).

appsec component-analysis devops jenkins-plugin nvd owasp owasp-dependencycheck security software-security visibility vulnerabilities

Last synced: 07 Apr 2025

https://github.com/stevespringett/threatmodel-sdk

A Java library for parsing and programmatically using threat models

appsec java java-library sdk secure-design software-security threat-model

Last synced: 09 Jul 2025

https://github.com/OtherDevOpsGene/zap-sonar-plugin

Integrates OWASP Zed Attack Proxy reports into SonarQube

appsec dynamic-analysis owasp owasp-zap security software-security sonar-plugin sonarqube zap

Last synced: 11 May 2025

https://github.com/coveros/zap-sonar-plugin

Integrates OWASP Zed Attack Proxy reports into SonarQube

appsec dynamic-analysis owasp owasp-zap security software-security sonar-plugin sonarqube zap

Last synced: 19 Mar 2025

https://github.com/stevespringett/vulndb-data-mirror

A simple Java command-line utility to mirror the entire contents of VulnDB.

appsec cve java sca software-composition-analysis software-security vulndb

Last synced: 21 Aug 2025

https://github.com/albovo/olicyber-writeups

This repository contains all the source code for the various writeups I have written over time of all the Olicyber editions I have participated in.

cryptography ctf-writeups network-security python reverse-engineering scripting software-security web-security

Last synced: 14 Apr 2025

https://github.com/claire-lex/megagrep

Megagrep helps beginning a code review by searching for keywords in the code using "grep". It does not search for vulnerabilities directly but for places where you could manually find some.

code-review grep software-security

Last synced: 06 Jul 2025

https://github.com/nmoncho/sbt-dependency-check

SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs).

appsec cve devops infosec nvd owasp owasp-dependencycheck sbt sbt-plugin scala security security-audit security-automation software-composition-analysis software-security static-analysis vulnerabilities vulnerability-scanners

Last synced: 11 Jul 2025

https://github.com/awsm-research/Awesome-AI4DevSecOps

This repository offers a detailed taxonomy of existing AI-driven security solutions tailored for DevSecOps, highlighting the current research challenges and suggesting future directions for the field. It serves as a resource for researchers, developers, and security professionals interested in the intersection of AI and DevSecOps.

cybersecurity deep-learning devsecops machine-learning software-engineering software-security software-testing

Last synced: 12 Jan 2026

https://github.com/anahitH/program-partitioning-for-security-enclaves

Behavior based program partitioning for security enclaves

c c-plus-plus intel-sgx llvm sgx-enclave software-security

Last synced: 20 Apr 2025

https://github.com/paulveillard/cybersecurity-software

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Software in Cybersecurity

software-development software-engineering software-factory software-security software-supply-chain software-supply-chain-security software-team software-testing

Last synced: 07 Oct 2025

https://github.com/thetallprogrammer/password-manager

Falkenberg's Password Manager is a secure, offline tool for managing and storing passwords locally. With strong encryption and customizable password generation, it ensures your data remains private and protected.

cpp cyber-security cybersecurity data-encryption gui-application local-storage offline-password-manager password-generator password-generator-cpp password-management password-manager password-security privacy qt qtcreator security software-security

Last synced: 29 Oct 2025

https://github.com/lucadibello/tmux-fuzzing

Enhanced fuzzing for tmux using OSS-Fuzz. Includes custom `cmd-fuzzer` and `argument-fuzzer` harnesses for improved code coverage and a PoC for `CVE-2020-27347`

cve-2020-27347 exploit-development fuzzing oss-fuzz security software-security tmux vulnerability-analysis

Last synced: 31 Jan 2026

https://github.com/joaogsleite/ss-labs

Software Security Labs Solution

buffer-overflow-attack software-security sql-injection

Last synced: 04 Oct 2025

https://github.com/lucianoscarpaci/ctf-challenge-capture_us_xor

Enhance cybersecurity defenses with a specialized solution tackling a Capture the Flag challenge involving decryption of an encrypted message with a 2-bit key length using a C++ brute-force method.

brute-force-attack capture-the-flag cryptography cybersecurity decryption-tool encryption-decryption ethical-hacking problem-solving-algorithms software-security xor-cipher

Last synced: 20 Mar 2025

https://github.com/lexxn0x3/sw_sec_presentation

🔐 Dive into Rust's security features with example codes from a university presentation at Technische Hochschule Georg Simon Ohm, covering topics like safe concurrency, error handling, and zero-cost abstractions.

coding-demonstration concurrency education error-handling memory-safety rust rust-lang software-security type-safety university

Last synced: 28 Mar 2025

https://github.com/ryansilva2004/lankabidslk

secure bidding platform featuring email verification, two-factor authentication, role-based access, encrypted passwords, and Zod-based input validation. Built with Next.js and MySQL.

bidding mysql nextjs nodejs software-security

Last synced: 03 Feb 2026

https://github.com/timyiu478/seed-labs

Hands-on Security Labs funded by US NSF

network-security software-security system-security

Last synced: 26 Jan 2026

https://github.com/harmim/vut-bis-project

Bezpečnost informačních systémů - Projekt - The FITfather

bis hacking security software-security sql-injection ssh vut vut-fit

Last synced: 07 Oct 2025

https://github.com/sarthak310/malware-app-detection

An automated classification tool that can extract features of Android APKs and use the features to classify whether an app is malicious or not.

android android-permissions google-colab machine-learning python software-security

Last synced: 12 Oct 2025