An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/kiprotect/kodex

A privacy and security engineering toolkit: Discover, understand, pseudonymize, anonymize, encrypt and securely share sensitive and personal data: Privacy and security as code.

anonymization anonymize ccpa compliance consent-management encryption gdpr privacy privacy-engineering privacy-enhancing-technologies privacy-protection privacyops pseudonymization pseudonymize security security-engineering securityops

Last synced: 16 Dec 2025

https://github.com/cyberark/FuzzyAI

A powerful tool for automated LLM fuzzing. It is designed to help developers and security researchers identify and mitigate potential jailbreaks in their LLM APIs.

ai fuzzing jailbreak jailbreaking llm llms security

Last synced: 29 Sep 2025

https://github.com/wolffcatskyy/crowdsec-blocklist-import

Dockerized tool to import public threat feeds into CrowdSec - 28+ free blocklists, 60k+ IPs

blocklist crowdsec cybersecurity docker firewall ip-blocklist security threat-feeds threat-intelligence tor-exit-nodes

Last synced: 01 Feb 2026

https://github.com/nomi-sec/hacker-trends

Trends Website (URL) from Twitter hackers.

security

Last synced: 27 Jan 2026

https://github.com/mwolff44/pk-sbc

P-KISS-SBC - simple and stupid SIP/RTP SBC - AGPL v3 - Based on kamailio / RTP Engine

agplv3 kamailio kiss routing-engine rtp sbc security sip softswitch voip voip-application voip-telephony-providers

Last synced: 24 Jan 2026

https://github.com/suzuki-shunsuke/ghalint

GitHub Actions linter

cli github-actions linter oss security

Last synced: 13 Apr 2025

https://github.com/gemini-cli-extensions/security

Google's Security extension for the Gemini CLI that finds vulnerabilities in your code changes and pull requests.

gemini gemini-cli gemini-cli-extensions google security

Last synced: 15 Dec 2025

https://github.com/null8626/decancer

A library that removes common unicode confusables/homoglyphs from strings.

confusables homoglyphs leetspeak moderation sanitizer security string unicode zalgo

Last synced: 15 May 2025

https://github.com/tigthor/nsa-cia-blocklist

This is the github repository for all NSA and CIA spying servers, including those revealed by Edward Snowden and other studies we conducted on the whole world's servers, enumerating those that spy on individuals and sell data to the NSA and CIA.

cia fbi gaza hacking hosts malware nsa osint security snowden tor ukraine usa

Last synced: 27 Oct 2025

https://github.com/lavamoat/snow

Use Snow to finally secure your web app's same origin realms!

iframe javascript realms security

Last synced: 20 Jan 2026

https://github.com/SweetIceLolly/Huorong_Vulnerabilities

Huorong Internet Security vulnerabilities 火绒安全软件漏洞

antivirus bypass-antivirus bypass-av kill-antivirus security sysdiag vulnerability

Last synced: 11 Jul 2025

https://github.com/0x742/noia

[WIP] Simple mobile applications sandbox file browser tool. Powered with [frida.re](https://www.frida.re).

android android-security android-tools frida hacking-tools ios ios-security ios-tools reverse-engineering security

Last synced: 20 Apr 2025

https://github.com/taylorwilsdon/reddacted

reddacted lets you analyze & sanitize your online footprint using LLMs, PII detection & sentiment analysis to identify anything that might reveal personal info you may not want correlated with your anonymous profile

privacy-protection privacy-tools reddact reddacted reddit reddit-api security security-auditing

Last synced: 18 Jan 2026

https://github.com/thelicato/portswigger-labs

A collection of solutions for every PortSwigger Academy Lab (in progress)

academy burp labs portswigger security

Last synced: 18 Jan 2026

https://github.com/valeriansaliou/node-fast-ratelimit

:umbrella: Fast and efficient in-memory rate-limit for Node, used to alleviate most common DOS attacks.

dos nodejs npm npm-package rate-limiter security

Last synced: 07 Apr 2025

https://github.com/timescale/pgspot

Spot vulnerabilities in postgres SQL scripts

postgresql python security

Last synced: 07 May 2025

https://github.com/sekhan/thegreatwall

Prevent program and malware to bypass DNS filter by using DoH

blocklist doh hostsfile ipv4-list ipv6-list pihole security

Last synced: 24 Oct 2025

https://github.com/toulousain79/MySB

MySB (MySeedBox) is more than a simplified installation script of a multi-users Seedbox. There are many solutions to install a Seedbox, but we never talk about safety and regular operations. MySB could be renamed MySSB (MySecuredSeedBox).

blocklist dedicated-server dnscrypt-proxy fail2ban letsencrypt multi-user-seedbox nextcloud openvpn peerguardian plex-media-server rtorrent rutorrent rutorrent-plugin security seedbox seedbox-install-script ssl tautulli tracker

Last synced: 01 Aug 2025

https://github.com/probely/security_checklist

Web Application Security Checklist

checklist prevention security vulnerability web websecurity

Last synced: 13 May 2025

https://github.com/Sekhan/TheGreatWall

Prevent program and malware to bypass DNS filter by using DoH

blocklist doh hostsfile ipv4-list ipv6-list pihole security

Last synced: 14 Mar 2025

https://amanpriyanshu.github.io/Awesome-AI-For-Security/

A curated list of tools, papers, and datasets for applying AI to cybersecurity tasks. This list primarily focuses on modern AI technologies like Large Language Models (LLMs), Agents, and Multi-Modal systems and their applications in security operations.

agent agents ai ai-for-security awesome awesome-list awesome-lists awesome-readme awesome-resources cyber-security cybersecurity cybersecurity-education llm llm-agent llm-agents llm-inference llms security security-automation security-tools

Last synced: 18 Jan 2026

https://github.com/nullarray/archivist

A ctypes powered python keylogger.

keylogger malware python security

Last synced: 13 Apr 2025

https://github.com/mc2-project/secure-xgboost

Secure collaborative training and inference for XGBoost.

collaborative-learning data-science enclave machine-learning privacy security xgboost

Last synced: 17 Jan 2026

https://github.com/sderosiaux/guidelines-to-create-a-strong-website

A list of all things to consider when making a website or webapp of quality.

a11y css javascript performance privacy security seo web

Last synced: 22 Apr 2025

https://github.com/orsinium-archive/django-bruteforce-protection

Bruteforce protection for Django projects based on Redis. Simple, powerful, extendable.

bruteforce bruteforce-protection django login protection redis security

Last synced: 21 Mar 2025

https://github.com/bamlab/react-native-app-security

Easily implement usual security measures in React Native Expo apps. Made by BAM ❤️💙💛

expo react-native security ssl-pinning

Last synced: 26 Jun 2025

https://github.com/lenis0012/LoginSecurity

Lightweight and secure user authentication for Bukkit Minecraft servers

authentication bukkit java login-system minecraft security

Last synced: 26 Mar 2025

https://github.com/m3rcurylake/nyxelf

Nyxelf is a highly effective tool tailored for analyzing malicious Linux ELF binaries, offering comprehensive support for both static and dynamic analysis techniques.

antivirus binary binary-analysis linux-sandbox malware-analysis malware-research reverse-engineering sandbox security

Last synced: 07 Apr 2025

https://github.com/guardianproject/tor-browser

UPDATE: Orfox is being replaced by Tor Browser for Android. All future work and comments will be handled by Tor Project.

anonymity browser firefox mozilla privacy security tor

Last synced: 11 May 2025

https://github.com/spectralops/senv

Friends don't let friends leak secrets on their terminal window :see_no_evil:

environment-variables golang security security-tools

Last synced: 23 Jul 2025

https://github.com/grapheneos/platform_bionic

Hardened Android standard C library. Some of the past hardening has not yet been ported from Marshmallow, Nougat and Oreo to this Android Pie repository. Most is available via archived tags in https://github.com/AndroidHardeningArchive/platform_bionic (check both the most recent Oreo and Nougat tags).

android grapheneos libc security

Last synced: 04 Apr 2025

https://github.com/numirias/firefed

🕵️ A tool for Firefox profile analysis, data extraction, forensics and hardening

firefox forensics mozilla-firefox privacy python security

Last synced: 18 Sep 2025

https://github.com/kortex-labs/plexiglass

A toolkit for detecting and protecting against vulnerabilities in Large Language Models (LLMs).

adversarial-attacks adversarial-machine-learning cybersecurity deep-learning deep-neural-networks machine-learning security

Last synced: 21 Feb 2025

https://github.com/syss-research/dns-mitm

A minimal DNS service that can provide spoofed replies

dns mitm security tools

Last synced: 10 Apr 2025

https://github.com/shtirlic/yubikeylockd

Simple daemon for locking and unlocking macOS with Yubikey

cryptography daemon homebrew homebrew-formula lock macos security unlock unlock-os yubikey

Last synced: 31 Mar 2025

https://github.com/OWASP/raider

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

authentication authorization finite-state-machine fsm hy hylang lisp owasp python raiderauth security

Last synced: 08 May 2025

https://github.com/hahwul/mzap

⚡️ Multiple target ZAP Scanning

bugbounty dast hacking security zaproxy zaproxy-automation

Last synced: 16 Oct 2025

https://github.com/jeanlouisferey/aws-securitygroup-grapher

This ansible role gets information from an AWS VPC and generate a graphical representation of security groups

ansible aws graph group role security security-audit security-tools vpc

Last synced: 09 May 2025

https://github.com/mirage/awa-ssh

Purely functional SSH library in ocaml.

awa-ssh cryptography mirage mirageos ocaml pure security ssh ssh-library

Last synced: 05 Apr 2025

https://github.com/safellama/plexiglass

A toolkit for detecting and protecting against vulnerabilities in Large Language Models (LLMs).

adversarial-attacks adversarial-machine-learning cybersecurity deep-learning deep-neural-networks machine-learning security

Last synced: 18 Apr 2025

https://github.com/jenkinsci/github-oauth-plugin

Jenkins authentication plugin using GitHub OAuth as the source.

github github-oauth jenkins oauth security

Last synced: 16 May 2025

https://github.com/krsh/seer

Seer is a tool that recognizes the architecture of a binary file

binary embedded firmware python security

Last synced: 24 Apr 2025

https://github.com/machine1337/zipcrack

An Advanced Tool to Crack Any Password Protected ZIP File With different Techniques. A very Beginner Friendly Script For Newbies.

cracking cracking-hashes hacking hashcracking johncrack machine1337 passwordcracking security zipcracker zipcracking

Last synced: 25 Apr 2025

https://github.com/netflix-skunkworks/cloudy-kraken

AWS Red Team Orchestration Framework

security

Last synced: 24 Apr 2025

https://github.com/carlalexander/passwords-evolved

WordPress password authentication for the modern era

authentication bcrypt password-enforcement security wordpress

Last synced: 05 Apr 2025

https://github.com/clj-holmes/clj-holmes

A CLI SAST (Static application security testing) tool which was built with the intent of finding vulnerable Clojure code via rules that use a simple pattern language.

clojure sast security

Last synced: 21 Feb 2025

https://github.com/ucan-wg/ts-ucan

Auth tokens for a distributed, user-controlled world

authorization jwt ocap security spki

Last synced: 24 Dec 2025

https://github.com/msfidelis/kill-router-

Ferramenta para quebrar senhas administrativas de roteadores Wireless, routers, switches e outras plataformas de gestão de serviços de rede autenticados.

hacking pentesting router security shodan shodan-api

Last synced: 17 Jul 2025

https://github.com/siemens/fluffi

FLUFFI (Fully Localized Utility For Fuzzing Instantaneously) - A distributed evolutionary binary fuzzer for pentesters

fuzzing pentesting security

Last synced: 09 Oct 2025

https://github.com/Wafris/wafris-rb

Wafris Client for Rails and Rack applications

firewall rails security waf

Last synced: 16 Jul 2025

https://github.com/timokoessler/2FAGuard

A modern and secure Windows app for managing your 2FA authentication codes.

2fa authenticator collaborate github mfa portable security totp windows

Last synced: 19 Apr 2025

https://github.com/F5-Labs/cryptonice

CryptoNice is both a command line tool and library which provides the ability to scan and report on the configuration of SSL/TLS for your internet or internal facing web services. Built using the sslyze API and ssl, http-client and dns libraries, cryptonice collects data on a given domain and performs a series of tests to check TLS configuration and supporting protocols such as HTTP2 and DNS.

appsec crypto dns hsts http2 https https-certificate report security security-tools ssl ssl-certificates tls tls-certificate tls-scan

Last synced: 07 Apr 2025

https://github.com/CycodeLabs/cimon-action

Runtime Security Solution for your CI/CD Pipeline

cicd ebpf github-actions hardening linux security security-hardening supply-chain-security

Last synced: 11 May 2025

https://github.com/willfindlay/bpfbox

🐝 BPFBox 📦 Exploring process confinement in eBPF

bcc ebpf linux linux-kernel runtime-security sandbox security

Last synced: 09 Jul 2025

https://github.com/butteff/Ubuntu-Telemetry-Free-Privacy-Secure

This Bash script just removes a pre-installed Telemetry, a pre-installed software and libs with some potentional or high risk. Script removes them to make your experience better and more secure. Also, the script installs an additional software for the protection. You will find more advices in Readme file about "what you can do more".

bash linux privacy protection security telemetry ubuntu

Last synced: 10 Apr 2025

https://github.com/google/wasefire

Secure firmware framework focusing on developer experience

embedded firmware framework iot rust security wasm

Last synced: 16 May 2025

https://github.com/syss-research/clone-cert

Simple shell script to "clone" X.509 certificates

security tool x509

Last synced: 10 Apr 2025

https://github.com/GoogleCloudPlatform/gke-network-policy-demo

This guide demonstrates how to improve the security of your Kubernetes Engine by applying fine-grained restrictions to network communication. You will provision a simple HTTP server and two client pods in a Kubernetes Engine cluster, then use a Network Policy restrict connections from client pods.

gke gke-helmsman kubernetes kubernetes-engine networking security

Last synced: 04 Apr 2025

https://github.com/mablanco/docker-osmedeus

Docker image for Osmedeus, a fully automated offensive security tool for reconnaissance and vulnerability scanning

docker pentesting security

Last synced: 06 Apr 2025

https://github.com/digitallyrefined/docker-wireguard-tunnel

Connect two or more Docker servers together sharing container ports between them via a WireGuard tunnel

docker-tunnel encription security tunnel tunnel-client tunnel-server wireguard

Last synced: 14 Oct 2025

https://github.com/GJDuck/EffectiveSan

Runtime type and bounds-error checking for C/C++

bounds-checking llvm low-fat-pointers memory-safety sanitizer security type-checking

Last synced: 28 Sep 2025

https://github.com/tldrrun/tools.tldr.run

A curated list of security tools for Hackers & Builders!

automation cloud cloudnative hacking infosec learning security tools

Last synced: 30 Jan 2026

https://github.com/suse/doc-sle

Official SUSE Linux Enterprise Documentation [Everyone, please use feature/ branches, create PRs and ensure CI runs successfully rather than just pushing to main!]

admin deployment documentation opensuse security sle-micro sled sles storage suse tuning virtualization

Last synced: 25 Jan 2026

https://github.com/peterdavehello/threat-hostlist

Comprehensive domain blocklists for 🚨 threats (🕷malware, 🎣phishing, 🕵️spyware, 🤖botnets). Ideal for DNS-based filtering tools like Pi-Hole, AdGuard Home, Blocky.

adguard-blocklist blocklist botnets cybersecurity dns domain hacktoberfest hosts infosec malware osint phishing ransomware security spyware threat-intelligence threats

Last synced: 27 Jan 2026

https://github.com/ryu22e/django_cve_2019_19844_poc

PoC for CVE-2019-19844(https://www.djangoproject.com/weblog/2019/dec/18/security-releases/)

cve-2019-19844 django python security vulnerability

Last synced: 09 Oct 2025

https://github.com/inmcm/simon_speck_ciphers

Implementations of the Simon and Speck Block Ciphers

block-ciphers c cipher-s cryptography decryption encryption fpga nsa python security vhdl

Last synced: 28 Jun 2025

https://github.com/trendmicro/ais

Toolkit for research purposes in AIS. See the website for the paper.

ais aisafety rf safety sdr security

Last synced: 23 Oct 2025

https://github.com/foulest/osprey

Browser extension that protects you from malicious websites.

browser-extension chrome chrome-extension css firefox javascript security security-tools

Last synced: 12 Aug 2025

https://github.com/tenable/KaiMonkey

KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.

aws security terraform

Last synced: 10 May 2025

https://github.com/nowsecure/cybertruckchallenge19

Android security workshop material taught during the CyberTruck Challenge 2019 (Detroit USA).

android car mobile security

Last synced: 30 Jul 2025

https://github.com/madhuakula/security-automation-with-ansible-2

Ansible Playbooks for Security Automation with Ansible2 book

ansible automation book devops devsecops secdevops security

Last synced: 10 Apr 2025

https://github.com/googlecloudplatform/gke-network-policy-demo

This guide demonstrates how to improve the security of your Kubernetes Engine by applying fine-grained restrictions to network communication. You will provision a simple HTTP server and two client pods in a Kubernetes Engine cluster, then use a Network Policy restrict connections from client pods.

gke gke-helmsman kubernetes kubernetes-engine networking security

Last synced: 20 Oct 2025

https://github.com/primaryobjects/vpndemon

Monitor a VPN connection on Linux and kill a process upon disconnect

bash disconnect dns-leak linux monitoring networkmanager prevent-dns-leaks security shell vpn vpn-connections

Last synced: 22 Jun 2025

https://github.com/secdec/attack-surface-detector-burp

The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters

dast pentesting security vulnerability

Last synced: 19 Apr 2025