Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Cybersecurity

Cybersecurity involves protecting systems, networks, and data from cyber threats. This field encompasses a wide range of practices and technologies designed to safeguard information from unauthorized access, attacks, damage, or theft. Cybersecurity includes preventive measures such as firewalls, encryption, and secure coding practices, as well as detection and response strategies like intrusion detection systems and incident response plans. This topic covers the principles, best practices, and latest trends in cybersecurity, including emerging threats and the evolving landscape of cyber defense.

https://github.com/someengineering/fixinventory

Fix Inventory helps you identify and remove the most critical risks in AWS, GCP, Azure and Kubernetes.

aws cnapp cspm cybersecurity digitalocean gcp infrastructure-as-code policy-as-code security security-audit security-automation

Last synced: 22 Jan 2025

https://github.com/Purp1eW0lf/Blue-Team-Notes

You didn't think I'd go and leave the blue team out, right?

blueteam cybersecurity dfir infosec powershell

Last synced: 08 Nov 2024

https://github.com/stuxnet999/MemLabs

Educational, CTF-styled labs for individuals interested in Memory Forensics

ctf ctf-challenges cybersecurity dfir digital-forensics forensics memory-forensics security windows

Last synced: 07 Nov 2024

https://github.com/matanolabs/matano

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

alerting apache-iceberg aws aws-security big-data cloud cloud-native cloud-security cybersecurity detection-engineering dfir log-analytics log-management rust secops security security-tools serverless siem threat-hunting

Last synced: 17 Jan 2025

https://github.com/xiecat/goblin

一款适用于红蓝对抗中的仿真钓鱼系统

blueteam cybersecurity goblin golang-tools honeypots phishing redteam redteam-tools security security-tools

Last synced: 19 Jan 2025

https://github.com/lunasec-io/lunasec

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

compliance continuous-delivery cve-scanning cybersecurity dependency-analysis devsecops gdpr log4shell pci-dss sbom sbom-generator scanning scanning-tool security security-tools soc2 software-composition-analysis tokenization web-security zero-trust

Last synced: 17 Jan 2025

https://github.com/rosesecurity/red-teaming-ttps

Useful Techniques, Tactics, and Procedures for red teamers and defenders, alike!

cybersecurity hacking redteaming

Last synced: 05 Dec 2024

https://github.com/austinsonger/incident-playbook

GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

catalog contributions-welcome contributors-welcome cybersecurity cybersecurity-playbook incident-management incident-response incidents mitre mitre-attack playbook

Last synced: 03 Dec 2024

https://github.com/austinsonger/Incident-Playbook

GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

catalog contributions-welcome contributors-welcome cybersecurity cybersecurity-playbook incident-management incident-response incidents mitre mitre-attack playbook

Last synced: 03 Nov 2024

https://github.com/mytechnotalent/hacking-windows

A FREE Windows C development course where we will learn the Win32API and reverse engineer each step utilizing IDA Free in both an x86 and x64 environment.

assembler assembly blue-team cplusplus cpp cyber cyber-threat-intelligence cybersecurity hack hacking ida ida-pro idapro microsoft-windows reverse-engineering training training-material training-materials win32api windows

Last synced: 15 Jan 2025

https://github.com/RoseSecurity/Red-Teaming-TTPs

Useful Techniques, Tactics, and Procedures for red teamers and defenders, alike!

cybersecurity hacking redteaming

Last synced: 03 Oct 2024

https://github.com/mytechnotalent/Hacking-Windows

A FREE Windows C development course where we will learn the Win32API and reverse engineer each step utilizing IDA Free in both an x86 and x64 environment.

assembler assembly blue-team cplusplus cpp cyber cyber-threat-intelligence cybersecurity hack hacking ida ida-pro idapro microsoft-windows reverse-engineering training training-material training-materials win32api windows

Last synced: 31 Oct 2024

https://github.com/cyber-guy1/api-securityempire

API Security Project aims to present unique attack & defense methods in API Security field

api apisecurity bug-bounty bugbounty bugbountytips cybersec cybersecurity information-security infosec penetration-testing tips

Last synced: 05 Dec 2024

https://github.com/Cyber-Guy1/API-SecurityEmpire

API Security Project aims to present unique attack & defense methods in API Security field

api apisecurity bug-bounty bugbounty bugbountytips cybersec cybersecurity information-security infosec penetration-testing tips

Last synced: 28 Nov 2024

https://github.com/pablolec/recoverpy

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

cli console cybersecurity data data-recovery files forensics hacking linux macos pentesting python python3 recovery search search-interface terminal textual tool tui

Last synced: 16 Jan 2025

https://github.com/bert-janp/hunting-queries-detection-rules

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

azure blueteam cybersecurity defender-for-endpoint dfir infosec kql mde mdi misp security sentinel threat-hunting vulnerability-management zero-day

Last synced: 17 Jan 2025

https://github.com/hashpals/search-that-hash

🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡

cracks cybersecurity hacking hacking-tool hash hashcat infosec john tool

Last synced: 18 Jan 2025

https://github.com/viralmaniar/bigbountyrecon

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.

blue-team bugbounty bugbounty-tool bugbountytips cybersecurity offensive-security osint pentest-tool pentesting purple-team purple-teams recon reconnaissance red-team red-teaming

Last synced: 20 Jan 2025

https://github.com/HashPals/Search-That-Hash

🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡

cracks cybersecurity hacking hacking-tool hash hashcat infosec john tool

Last synced: 04 Nov 2024

https://github.com/webpwnized/mutillidae

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an easy-to-use web hacking environment designed for labs, security enthusiasts, classrooms, CTF, and vulnerability assessment tool targets.

10 application appsec cybersecurity owasp owasp-top-10 penetration-testing security top training web

Last synced: 16 Jan 2025

https://github.com/Viralmaniar/BigBountyRecon

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.

blue-team bugbounty bugbounty-tool bugbountytips cybersecurity offensive-security osint pentest-tool pentesting purple-team purple-teams recon reconnaissance red-team red-teaming

Last synced: 21 Nov 2024

https://github.com/guyoung/captfencoder

Captfencoder is opensource a rapid cross platform network security tool suite, providing network security related code conversion, classical cryptography, cryptography, asymmetric encryption, miscellaneous tools, and aggregating all kinds of online tools.

cipher crypto ctf cybersecurity decode decoder electron encode encoder fltk hacking-tool hash misc network-security opensource rust security security-tools toolkit

Last synced: 19 Jan 2025

https://github.com/Bert-JanP/Hunting-Queries-Detection-Rules

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

azure blueteam cybersecurity defender-for-endpoint dfir infosec kql mde mdi misp security sentinel threat-hunting vulnerability-management zero-day

Last synced: 02 Nov 2024

https://github.com/nsacyber/WALKOFF

A flexible, easy to use, automation framework allowing users to integrate their capabilities and devices to cut through the repetitive, tedious tasks slowing them down. #nsacyber

administration analytics automation automation-framework cybersecurity devops framework integration orchestration orchestration-framework orchestrator python security sysadmin walkoff walkoff-apps walkoff-workflows workflow

Last synced: 06 Nov 2024

https://github.com/nsacyber/walkoff

A flexible, easy to use, automation framework allowing users to integrate their capabilities and devices to cut through the repetitive, tedious tasks slowing them down. #nsacyber

administration analytics automation automation-framework cybersecurity devops framework integration orchestration orchestration-framework orchestrator python security sysadmin walkoff walkoff-apps walkoff-workflows workflow

Last synced: 18 Jan 2025

https://nsacyber.github.io/WALKOFF

A flexible, easy to use, automation framework allowing users to integrate their capabilities and devices to cut through the repetitive, tedious tasks slowing them down. #nsacyber

administration analytics automation automation-framework cybersecurity devops framework integration orchestration orchestration-framework orchestrator python security sysadmin walkoff walkoff-apps walkoff-workflows workflow

Last synced: 14 Oct 2024

https://github.com/guyoung/CaptfEncoder

Captfencoder is opensource a rapid cross platform network security tool suite, providing network security related code conversion, classical cryptography, cryptography, asymmetric encryption, miscellaneous tools, and aggregating all kinds of online tools.

cipher crypto ctf cybersecurity decode decoder electron encode encoder fltk hacking-tool hash misc network-security opensource rust security security-tools toolkit

Last synced: 25 Oct 2024

https://github.com/viralmaniar/passhunt

Passhunt is a simple tool for searching of default credentials for network devices, web applications and more. Search through 523 vendors and their 2084 default passwords.

cybersecurity default-credentials default-password password penetration-testing pentest-tool security security-testing

Last synced: 15 Jan 2025

https://github.com/Viralmaniar/Passhunt

Passhunt is a simple tool for searching of default credentials for network devices, web applications and more. Search through 523 vendors and their 2084 default passwords.

cybersecurity default-credentials default-password password penetration-testing pentest-tool security security-testing

Last synced: 27 Nov 2024

https://github.com/PabloLec/RecoverPy

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

cli console cybersecurity data data-recovery files forensics hacking linux macos pentesting python python3 recovery search search-interface terminal textual tool tui

Last synced: 29 Oct 2024

https://github.com/blst-security/cherrybomb

Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.

api api-security best-practices blst business-logic cli cyber cybersecurity firecracker http open-source openapi openapi3 security security-tools web-sec-scanner web-security websecurity

Last synced: 22 Jan 2025

https://github.com/opengs/uashield

Voluntary Ukraine security platform to protect us from Russian forces in the Internet

cybersecurity ukraine ukraine-invasion

Last synced: 17 Jan 2025

https://github.com/athena-os/athena

Athena OS is a Arch/Nix-based distro focused on Cybersecurity. Learn, practice and enjoy with any hacking tool!

archlinux cybersecurity hacking learning linux os payload pentesting security security-tools

Last synced: 17 Jan 2025

https://github.com/cisagov/decider

A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE ATT&CK® framework.

cybersecurity ttp

Last synced: 02 Dec 2024

https://github.com/netevert/sentinel-attack

Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

azure azure-sentinel blue-team cybersecurity detection kql logging mitre-attack security-tools siem sysmon sysmon-config terraform-azure threat-hunting workbooks

Last synced: 20 Jan 2025

https://github.com/MegaManSec/SSH-Snake

SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.

bash cybersecurity exploitation exploitation-tool hacking hacking-tools pentesting post-exploitation redteam scanner security security-tools shell ssh ssh-hacking vulnerability-scanner worm

Last synced: 07 Nov 2024

https://github.com/megamansec/ssh-snake

SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.

bash cybersecurity exploitation exploitation-tool hacking hacking-tools pentesting post-exploitation redteam scanner security security-tools shell ssh ssh-hacking vulnerability-scanner worm

Last synced: 20 Jan 2025

https://github.com/cisagov/chirp

A DFIR tool written in Python.

cisa cybersecurity dfir ioc python yara-python

Last synced: 18 Jan 2025

https://github.com/cisagov/CHIRP

A DFIR tool written in Python.

cisa cybersecurity dfir ioc python yara-python

Last synced: 27 Nov 2024

https://github.com/Athena-OS/athena

Athena OS is a Arch/Nix-based distro focused on Cybersecurity. Learn, practice and enjoy with any hacking tool!

archlinux cybersecurity hacking learning linux os payload pentesting security security-tools

Last synced: 25 Oct 2024

https://github.com/eonraider/violent-python3

Source code for the book "Violent Python" by TJ O'Connor. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards and refactored to eliminate dependency issues involving the implementation of deprecated libraries.

cybersecurity ethical-hacking hacking-tools network-programming network-security python-hacking violent-python violent-python-source-code

Last synced: 15 Jan 2025

https://github.com/swanandx/lemmeknow

The fastest way to identify anything!

cli cryptography cybersecurity pywhat regex rust rust-crate rust-lang

Last synced: 16 Jan 2025

https://github.com/EONRaider/violent-python3

Source code for the book "Violent Python" by TJ O'Connor. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards and refactored to eliminate dependency issues involving the implementation of deprecated libraries.

cybersecurity ethical-hacking hacking-tools network-programming network-security python-hacking violent-python violent-python-source-code

Last synced: 31 Oct 2024

https://github.com/certtools/intelmq

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

alerts automation cert csirt cybersecurity feeds handling ihap incident incident-response intelligence ioc malware phishing python threat

Last synced: 03 Nov 2024

https://github.com/SabyasachiRana/WebMap

WebMap-Nmap Web Dashboard and Reporting

cve cybersecurity infosec nmap webmap

Last synced: 06 Nov 2024

https://github.com/securisec/chepy

Chepy is a python lib/cli equivalent of the awesome CyberChef tool.

cli cyber cyberchef cybersecurity data-format python-library python3

Last synced: 09 Nov 2024

https://github.com/frankwxu/digital-forensics-lab

Free hands-on digital forensics labs for students and faculty

cybersecurity digital education forensics free

Last synced: 07 Nov 2024

https://github.com/a3sal0n/cyberthreathunting

A collection of resources for Threat Hunters

cybersecurity dfir incident-response threat-hunting threat-intelligence

Last synced: 18 Nov 2024

https://github.com/emenstanougat/esp32-bluejammer

The ESP32-BlueJammer (Bluetooth jammer, BLE jammer, WiFi jammer, RC jammer) disrupts various devices using an ESP32 and nRF24 modules, causing plenty of noise and sending unnecessary packets (DoS). It interrupts: Bluetooth, BLE, WiFi, and RC (Drones, etc.) connections, IoT devices, and much more communicating on 2.4GHz!

bluetooth bt coding cybersecurity diy electronics esp32 flashing hacker hacking jammer nrf24 programming

Last synced: 15 Jan 2025

https://github.com/cisagov/LME

Logging Made Easy (LME) is a no-cost and open logging and protective monitoring solution serving all organizations.

cybersecurity elastic elasticsearch elk elk-stack log logging network-analysis security security-tools zeek

Last synced: 06 Nov 2024

https://github.com/A3sal0n/CyberThreatHunting

A collection of resources for Threat Hunters

cybersecurity dfir incident-response threat-hunting threat-intelligence

Last synced: 28 Oct 2024

https://github.com/idov31/sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

backdoor csharp cybersecurity infosec python red-team red-team-tools redteam windows

Last synced: 15 Jan 2025

https://github.com/Idov31/Sandman

Sandman is a NTP based backdoor for red team engagements in hardened networks.

backdoor csharp cybersecurity infosec python red-team red-team-tools redteam windows

Last synced: 28 Nov 2024

https://github.com/drew-alleman/datasurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 17 Jan 2025

https://github.com/Drew-Alleman/DataSurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

bug-bounty ctf-tools cybersecurity email file-search hacking incident-response infosec ip-address osint pentesting recon reconnaissance regex rust rust-lang search search-tools security-tools windows

Last synced: 24 Nov 2024

https://github.com/thesp0nge/dawnscanner

Dawn is a static analysis security scanner for ruby written web applications. It supports Sinatra, Padrino and Ruby on Rails frameworks.

codereview cybersecurity hanami padrino rails ruby security security-audit sinatra vulnerabilities

Last synced: 17 Jan 2025

https://github.com/werkamsus/lilith

Lilith, C++ Cybersecurity Research Project

administration cplusplus cybersecurity native security windows

Last synced: 17 Jan 2025

https://github.com/atenreiro/opensquat

The openSquat is an open-source tool for detecting domain look-alikes by searching for newly registered domains that might be impersonating legit domains and brands.

blue-team cybersecurity cybersquatting domain-name domain-squatting homograph-attack infosec malware osint phishing phishing-detection phishing-domains python scanner security-tools threat-hunting threat-intelligence typosquatting

Last synced: 21 Nov 2024

https://github.com/wuba/Antenna

Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。

antenna cybersecurity django dns-rebinding dnslog ftp http jndi jsonp ldap mysql oast python rmi vulnerability-scanners xss

Last synced: 21 Nov 2024

https://github.com/werkamsus/Lilith

Lilith, C++ Cybersecurity Research Project

administration cplusplus cybersecurity native security windows

Last synced: 26 Oct 2024

https://github.com/devxprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 18 Jan 2025

https://github.com/DerekBabb/CyberSecurity

A curriculum for a high school cyber security course.

curriculum cybersecurity highschool

Last synced: 11 Nov 2024

https://github.com/idov31/functionstomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

attack cpp cyber cybersecurity injection methodology rust shellcode shellcode-injection windows

Last synced: 18 Jan 2025

https://github.com/cyb3r-monk/threat-hunting-and-detection

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

cybersecurity defender-for-endpoint detection-engineering dfir kql kusto-language microsoft-sentinel threat-detection threat-hunting

Last synced: 18 Jan 2025

https://github.com/GossiTheDog/HiveNightmare

Exploit allowing you to read registry hives as non-admin on Windows 10 and 11

cybersecurity exploits security

Last synced: 28 Oct 2024

https://github.com/Idov31/FunctionStomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

attack cpp cyber cybersecurity injection methodology rust shellcode shellcode-injection windows

Last synced: 03 Nov 2024

https://github.com/devXprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

contributions-welcome cyber cybersecurity github hacking infoooze information-gathering infosec kali-tools nodejs npm npm-package open-source osint osint-tool recon termux termux-tool

Last synced: 08 Nov 2024

https://github.com/satan1a/TheRoadOfSO

学习安全运营的记录 | The knowledge base of security operation

cybersecurity knowledge-base security-analysis security-operation security-operations soc threat-analysis wiki

Last synced: 19 Nov 2024

https://derekbabb.github.io/CyberSecurity/

A curriculum for a high school cyber security course.

curriculum cybersecurity highschool

Last synced: 01 Nov 2024