An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/sls-mentor/sls-mentor

Analyze your AWS serverless app in one command! 30+ best practices to improve costs💰 security🛡 stability🧘‍♀️ speed🚀 and sustainability🌱

analysis audit aws best-practices compliance cost-optimization dynamodb lambda learn s3 security serverless sns sqs

Last synced: 13 Apr 2025

https://github.com/pythops/tamanoir

A KeyLogger using eBPF 🐝

aya ebpf hacking keylogger linux rust security

Last synced: 26 Feb 2025

https://github.com/ariary/fileless-xec

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)

bypass-firewall dropper fileless golang http3 memfd pentest pentest-tool quic security stealth

Last synced: 09 Apr 2025

https://github.com/stellarsand/iyps

A password strength app that evaluates and rates your password's robustness, estimates crack time, and provides helpful warnings and suggestions for stronger passwords.

android android-app android-application f-droid fdroid kotlin kotlin-android material-design material-ui material-you open-source password password-analysis password-cracker password-safety password-strength privacy security security-tools

Last synced: 04 Apr 2025

https://github.com/anonion0/nsec3map

a tool to enumerate the resource records of a DNS zone using its DNSSEC NSEC or NSEC3 chain

dns dns-security dnssec enumeration network-security nsec nsec-walking nsec3 nsec3-enumeration nsec3-mapping nsec3-walking scanner security

Last synced: 20 Mar 2025

https://github.com/emersion/go-msgauth

🔏 A Go library and tools for DKIM, DMARC and Authentication-Results

auth dkim dmarc iprev mail security spf

Last synced: 15 May 2025

https://github.com/johnbillion/user-switching

WordPress plugin that provides instant switching between user accounts.

multisite php security user-switching wordpress wordpress-plugin

Last synced: 06 Oct 2025

https://github.com/Azure/sg-aks-workshop

Security + Governance Workshop

aks governance kubernetes security workshop

Last synced: 28 Apr 2025

https://github.com/azure/sg-aks-workshop

Security + Governance Workshop

aks governance kubernetes security workshop

Last synced: 05 Apr 2025

https://github.com/jamf/jamfprotect

A repository for open-source resources created for use with or alongside Jamf Protect.

analytics detections jamfprotect security unifiedlogs workflows

Last synced: 04 Apr 2025

https://github.com/brannondorsey/host-validation

Express.js middleware for "Host" and "Referer" header validation to protect against DNS rebinding attacks.

dns-rebinding express express-middleware middleware nodejs security validation

Last synced: 05 Apr 2025

https://github.com/nccgroup/kube-auto-analyzer

Kubernetes Auto Analyzer

kubernetes security

Last synced: 07 May 2025

https://github.com/ShadowsocksR-Live/overtls

A simple proxy tunnel, minimalist tool for bypassing the GFW.

bypass gfw monitoring networking proxy rust rust-lang security ssl tls tunnel websocket

Last synced: 04 Sep 2025

https://github.com/twilio-labs/deadshot

Deadshot is a Github pull request scanner to identify sensitive data being committed to a repository

automation credentials git github pull-requests scanning secrets security sensitive-data sensitive-data-security vulnerabilities

Last synced: 07 May 2025

https://github.com/shadowsocksr-live/overtls

A simple proxy tunnel, minimalist tool for bypassing the GFW.

bypass gfw monitoring networking proxy rust rust-lang security ssl tls tunnel websocket

Last synced: 05 Apr 2025

https://github.com/wn-na/react-native-capture-protection

🛡️ A React Native library to prevent and detect for screen capture, screenshots and app switcher for enhanced security. Fully compatible with both Expo and CLI.

android app-switcher detector expo ios mobile-security privacy react-native screen-capture screenrecord screenshot screenshot-protection security

Last synced: 26 Dec 2025

https://github.com/tasn/webext-signed-pages

A browser extension to verify the authenticity (PGP signature) of web pages

openpgp openpgpjs security signature web-extension

Last synced: 09 Apr 2025

https://github.com/iamsarvagyaa/AndroidSecNotes

An actively maintained, Self curated notes related to android application security for security professionals, bugbounty hunters, pentesters, reverse engineer, and redteamers.

adb android androidsecurity bugbounty hacking notes pentesting security

Last synced: 11 Jul 2025

https://github.com/aquasecurity/cloudsec-icons

A collection of cloud security icons :cloud::lock:

cloud cloud-security hacktoberfest icons iconset security svg

Last synced: 13 Oct 2025

https://github.com/p0cl4bs/nanobrok

Web Service write in Python for control and protect your android device remotely.

android control remote security

Last synced: 09 May 2025

https://github.com/ContainerSolutions/externalsecret-operator

An operator to fetch secrets from cloud services and inject them in Kubernetes

aws azure cloud cloud-native gcp hacktoberfest kubernetes security

Last synced: 21 Apr 2025

https://github.com/kazet/wpgarlic

A proof-of-concept WordPress plugin fuzzer

fuzzing security security-tools testing wordpress

Last synced: 25 Jan 2026

https://github.com/airbus-seclab/c-compiler-security

Security-related flags and options for C compilers

c clang compiler flags gcc sanitizers security

Last synced: 26 Oct 2025

https://github.com/bosch-aisecurity-aishield/watchtower

AIShield Watchtower: Dive Deep into AI's Secrets! 🔍 Open-source tool by AIShield for AI model insights & vulnerability scans. Secure your AI supply chain today! ⚙️🛡️

adversarial-attacks aisec keras mlops mlsecops pytorch safetensors scikit-learn security security-automation security-tools supply-chain tensorflow vulnerability-scanners

Last synced: 18 Apr 2025

https://github.com/jekil/hardentheworld

Harden the world is a community driven project to develop hardening guidelines and checklists for common software and devices.

hacking hardening hardening-steps secure-by-default security security-audit security-hardening sysadmin sysadmin-tasks

Last synced: 03 Jul 2025

https://github.com/telekom-security/explo

Human and machine readable web vulnerability testing format

automation pentesting security web-security

Last synced: 06 Apr 2025

https://github.com/openraven/magpie

A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat landscape such as cloud ransomware and supply chain attacks.

aws cloud cloudsecurity cspm gcp security security-audit security-scanner security-testing security-tools security-vulnerability

Last synced: 11 Jan 2026

https://github.com/ewimberley/AdvancedMemoryChallenges

Advanced buffer overflow and memory corruption security challenges

buffer-overflow cybersecurity memory-corruption memory-hacking security

Last synced: 15 Mar 2025

https://github.com/0xle0ne/wireguard-gui

A wireguard client GUI for Linux made with nextauri

linux security vpn vpn-client wireguard

Last synced: 11 Oct 2025

https://github.com/backbone-hq/minibone

🔐 Singleplayer end-to-end encryption library for the web

cryptography e2ee encryption end-to-end-encryption security webcrypto

Last synced: 09 Apr 2025

https://github.com/paulveillard/cybersecurity

Welcome Cybersecurity's World. An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources in Cybersecurity.

computer-architecture computer-security cryptography cyber-physical-systems cybersecurity cybersecurity-awareness cybersecurity-blog cybersecurity-career-path cybersecurity-education cybersecurity-incidents defensive-security security security-audit security-automation security-hardening security-testing security-tools security-vulnerability

Last synced: 04 Apr 2025

https://github.com/dvsekhvalnov/jose2go

Golang (GO) implementation of Javascript Object Signing and Encryption specification

encryption federation jose json jwa jwe jws jwt jwt-auth jwt-authentication jwt-token oauth2 openid openidconnect security signature

Last synced: 14 May 2025

https://github.com/madhuakula/wincmdfu

Windows one line commands that make life easier, shortcuts and command line fu.

cmd infosec pentesting powershell redte security windows

Last synced: 10 Apr 2025

https://github.com/antongolub/yarn-audit-fix

The missing `yarn audit fix`

lockfile security vulnerability yarn

Last synced: 15 May 2025

https://github.com/yuawn/linux-kernel-exploitation

Linux kernel module implementation & exploitation (pwn) labs.

ctf kernel kernel-exploitation linux linux-kernel privilege-escalation pwn pwnable security

Last synced: 25 Jul 2025

https://github.com/ryandamour/ssrfuzz

SSRFuzz is a tool to find Server Side Request Forgery vulnerabilities, with CRLF chaining capabilities

bugbounty security ssrf

Last synced: 11 Jul 2025

https://github.com/chainreactors/malice-network

Next Generation C2 Framework

c2 security

Last synced: 04 Apr 2025

https://github.com/landlock-lsm/go-landlock

A Go library for the Linux Landlock sandboxing feature

landlock linux sandboxing security

Last synced: 13 Apr 2025

https://github.com/micropyramid/django-mfa

Django-mfa (Multi Factor Authentication) is a simple package to add extra layer of security to your django web application. It gives web app a randomly changing password as an extra protection and supports u2f too

2fa django mfa python security u2f

Last synced: 04 Apr 2025

https://github.com/salesforce/cloud-guardrails

Rapidly apply hundreds of security controls in Azure

azure azure-security cloud security terraform

Last synced: 06 Apr 2025

https://github.com/0x48piraj/jiraffe

One stop place for exploiting Jira instances in your proximity

exploitation infosec jira jira-instances pentesting python-library python3 redteam security security-tool

Last synced: 06 Apr 2025

https://github.com/forcesunseen/graphquail

Burp Suite extension that offers a toolkit for testing GraphQL endpoints.

burp extension graphql security suite testing

Last synced: 31 Mar 2025

https://github.com/aozhimin/mosec-2017

:memo: The third MOSEC mobile security technology summit 第三届 MOSEC 移动安全技术峰会参会分享

ios jailbreak keen-lab mosec security summit

Last synced: 28 Dec 2025

https://github.com/P0cL4bs/Nanobrok

Web Service write in Python for control and protect your android device remotely.

android control remote security

Last synced: 11 Jul 2025

https://github.com/offlinemark/poet

[unmaintained] Post-exploitation tool

beacon pentest post-exploitation python rat security

Last synced: 17 Mar 2025

https://github.com/nyudenkov/pysentry

🐍 Scan your Python dependencies for known security vulnerabilities with Rust-powered scanner

pipfile pyproject-toml python security security-audit security-automation security-scanner security-tools vulnerability-scanners

Last synced: 01 Feb 2026

https://github.com/brainfucksec/archtorify

Transparent proxy through Tor for Arch Linux OS

arch-linux aur aur-packages bash bash-script security tor tor-proxy torify transparent-proxy

Last synced: 20 Aug 2025

https://github.com/spatie/laravel-littlegatekeeper

Protect pages from access with a universal username/password

laravel php security

Last synced: 15 May 2025

https://github.com/arguslab/Argus-SAF

Argus static analysis framework

android security static-analysis

Last synced: 12 Jul 2025

https://github.com/manuelberrueta/flowanalyzer

FlowAnalyzer is a tool to help in testing and analyzing OAuth 2.0 Flows, including OpenID Connect (OIDC).

appsec identity oauth oauth2 oidc openid openid-connect redteam security security-tools

Last synced: 23 Jun 2025

https://github.com/cveproject/automation-working-group

CVE Automation Working Group

automation cve security

Last synced: 28 Jan 2026

https://github.com/secaegis/secautoban

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、科来网络安全分析审计系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、奇安信防火墙

docker firewall hids sec security security-tools waf web-security

Last synced: 16 May 2025

https://github.com/jmcfarlane/notable

Notable - a simple note taking application

golang linux macos notes security

Last synced: 06 Apr 2025

https://github.com/csirtgadgets/bearded-avenger

CIF v3 -- the fastest way to consume threat intelligence

cif cifv3 security threat-hunting threat-sharing threatintel

Last synced: 11 Jul 2025

https://github.com/penthertz/rf-swift

🚀 A powerful multi-platform RF toolbox that deploys specialized radio tools in seconds on Linux, Windows, and macOS—supporting x86_64, ARM64 (Raspberry Pi, Apple Silicon), and RISC-V architectures without disrupting your primary OS. 📡✨

arm64 docker hardware linux pentesting rf risc-v sdr security security-audit security-tools telecommunications windows wireless wireless-security x86-64

Last synced: 29 Jan 2026

https://github.com/privacyradius/gdpr-tracker

A crowdsourced directory tracking the compliance and security practices of cloud services and their subprocessors

audit certificates certification cloud cloud-service cloud-services compliance crowdsourcing gdpr gdpr-tracker legal privacy privacy-radius regtech security

Last synced: 11 Jul 2025

https://github.com/RetireNet/dotnet-retire

Open source vulnerability scanner for .NET Core projects

aspnetcore audit dotnet-core dotnetcore runtime security

Last synced: 10 May 2025

https://github.com/vaibhav-mattoo/bitchat-tui

🔒 Secure, anonymous, peer-to-peer (P2P) Bluetooth chat in your terminal. An off-grid, encrypted TUI messenger built with Rust.

anonymous bluetooth bluetooth-low-energy command-line cross-platform decentralized encrypted local-first messenger off-grid offline p2p privacy rust secure security terminal tui

Last synced: 19 Aug 2025

https://github.com/francozappa/knob

Key Negotiation Of Bluetooth (KNOB) attacks on Bluetooth BR/EDR and BLE [CVE-2019-9506]

ble bluetooth encryption entropy knob knobattack lmp security wireless

Last synced: 02 Jan 2026

https://github.com/1n3/prism-ap

An automated Wireless RogueAP MITM attack framework.

802-1x automated bypass framework hsts intercept kali karma linux mana mitm pentest pentesting security tool tools wireless

Last synced: 22 Aug 2025

https://github.com/wavestone-cdt/dyode

A low-cost, DIY data diode for ICS

hardware ics ics-security modbus security

Last synced: 13 Aug 2025

https://github.com/FabriBertani/Plugin.Maui.ScreenSecurity

Safeguard your .NET MAUI app effortlessly by preventing content exposure, screenshots, and recordings with ease.

android ios maui mobile net protection protector screen security shield

Last synced: 02 May 2025

https://github.com/mc2-project/opaque-sql

An encrypted data analytics platform

analytics enclave machine-learning privacy security spark spark-sql

Last synced: 17 Jan 2026

https://github.com/retirenet/dotnet-retire

Open source vulnerability scanner for .NET Core projects

aspnetcore audit dotnet-core dotnetcore runtime security

Last synced: 04 Apr 2025

https://github.com/umair9747/genzai

The IoT security toolkit to help identify IoT related dashboards and scan them for default passwords and vulnerabilities.

cybersecurity golang hacking iot iot-security penetration-testing pentesting redteam security security-scanner security-tools

Last synced: 04 Apr 2025

https://github.com/ky0tofu/mirror-flowers

基于 AI 的代码安全审计工具,支持多种编程语言的代码分析,可以帮助开发者快速发现代码中的潜在安全漏洞。支持DeepSeek-R1,ChatGPT-4o等多种大模型。

ai ai-code-audit chatgpt code-audit cybersecurity deepseek mirror-flowers multilingual-support openai openai-api security security-analysis vulnerability-detection

Last synced: 07 Apr 2025

https://github.com/elastic/dorothy

Dorothy is a tool to test security monitoring and detection for Okta environments

blue-team cybersecurity infosec red-team security security-tools

Last synced: 06 Apr 2025

https://github.com/particl/particl-desktop

The GUI application for Particl Markeplace and PART coin wallet. A decentralized peer to peer marketplace –free, secure, private, untraceable.

angular angular-cli blockchain cryptocurrencies cryptocurrency d-commerce dapp decentralized e-comm e-commerce gui html5 marketplace p2p p2p-marketplace particl privacy private-market security

Last synced: 06 Apr 2025

https://github.com/microsoft/data-protection-mapping-project

Open Source Data Protection/Privacy Regulatory Mapping Project

ccpa data-protection gdpr iso27001 iso27002 iso27701 legaltech privacy security standards

Last synced: 04 Apr 2025

https://github.com/harvard-itsecurity/docker-misp

Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing

dockerhub information-security malware malware-analysis misp security threat-intelligence threat-sharing

Last synced: 18 Jan 2026

https://github.com/microsoft/side-channel-fuzzer

Revizor - Hardware fuzzing for the age of speculation

fuzzing meltdown security side-channel spectre-vulnerability

Last synced: 20 Jan 2026

https://github.com/k8gege/powerladon

Ladon hacking Scanner for PowerShell, vulnerability / exploit / detection / MS17010/SmbGhost,Brute-Force SMB/IPC/WMI/NBT/SSH/FTP/MSSQL/MYSQL/ORACLE/VNC

exp exploit hacking ladon lanscanner netscan pentest pentest-tool pentesting-networks poc portscan security subdomain-scanner vulscan

Last synced: 17 Mar 2025

https://github.com/sec-report/secautoban

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、科来网络安全分析审计系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、奇安信防火墙

docker firewall hids sec security security-tools waf web-security

Last synced: 12 Apr 2025

https://github.com/SecAegis/SecReport

ChatGPT加持的,多人在线协同信息安全报告编写平台。目前支持的报告类型:渗透测试报告,APP隐私合规报告。

ai chatgpt collaboration collaborations docker openai pentest privacy rce report retest sec security security-tools sql-injection vulnerabilities web-security xss

Last synced: 07 Sep 2025