An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/rouanw/npm-audit-helper

Helps you understand and work through npm audit results

npm npm-audit security security-vulnerability

Last synced: 24 Apr 2025

https://github.com/matchilling/aws-kms-boilerplate

🔐 This repository contains the example code for the blog post "Painlessly storing security sensitive data using AWS KMS and OpenSSL"

aws-kms encryption key-management openssl security

Last synced: 02 Apr 2025

https://github.com/avelex/passwordme

🦁 tiny cross-platform password manager

golang password password-manager passwords reactjs security wails

Last synced: 14 Jan 2026

https://github.com/pelock/radio-code-calculator-python

Radio Code Calculator is an online service along with Web API & SDK for generating car radio unlock codes for popular vehicle brands.

anti-theft car car-hacking navigation python radio radio-code radio-codes security unlock vehicle

Last synced: 30 Jul 2025

https://github.com/containers/space-grade-linux

Space Grade Linux is an advanced Linux-based operating system designed to meet the rigorous demands of aerospace, satellite, and other high-reliability environments.

autonomous cubesat cubesatellite cubesats kernel linux qm security space spaceship

Last synced: 06 Oct 2025

https://github.com/zekiunal/openssl-certificate-authority-guide

Bu kılavuz, OpenSSL komut satırı araçlarını kullanarak kendi sertifika yetkilinizi (CA) kurup nasıl kullanacağınızı gösterir.

certificate-authority openssl security tls turkce turkish

Last synced: 28 Jan 2026

https://github.com/robertdebock/ansible-role-firewall

Manage firewall ports on all (known) Linux operating systems.

ansible firewall firewalld molecule playbook security server system tox

Last synced: 24 Apr 2025

https://github.com/tolitius/hubble

hubbling the universe nebula by nebula

clojure configuration consul security vault

Last synced: 23 Apr 2025

https://github.com/the-osint-toolbox/privacy-practitioners

Want to know more about Privacy & Security, you will find mnay helpful Subject Matter Experts as-well-as the resources they use.

encryption infosec mfa obfuscation opsec privacy security vpn

Last synced: 17 Mar 2026

https://github.com/sqlsec/intranetsecurity

内网安全从零开始红队教程,这可能是国内最系统最适合小白的内网安全教程。

course mkdocs-site security

Last synced: 22 Apr 2025

https://github.com/ctnkaan/postman-sentinel

Postman Sentinel (Previously Postman Student Helper) is the Discord Bot that specializes in server security. It also has some fun commands to lighten up the mood. This bot has blocked more than 900 attacks!

bot discord discord-bot discord-js discrodjs javascript nodejs postman security typescript

Last synced: 23 Jun 2025

https://github.com/hardenedlinux/lego-hardening

Hardening your OS/Profile is like building with LEGO, incorporating a couple of Grsecurity features and implementing aggressive security settings

apparmor hardening linux nixos nixos-config security

Last synced: 22 Apr 2025

https://github.com/yojiwatanabe/networkalarm

A tool to monitor local network traffic for possible security vulnerabilities. Warns user against possible nmap scans, Nikto scans, credentials sent in-the-clear, and shellshock attacks. Currently supports live monitoring and network capture (pcap) scanning.

hack-detection network-capture network-monitoring networking pcap scanning security security-automation security-scanner security-vulnerability

Last synced: 11 May 2025

https://github.com/perimetersec/resources

Public resources on fuzzing services, methodologies, and benefits for protocol security.

echidna evm fuzzing medusa security solidity

Last synced: 14 Apr 2025

https://github.com/caputomarcos/node-red-contrib-oauth2

The node-red-contrib-oauth2 is a Node-RED node that provides an OAuth2 authentication flow. This node uses the OAuth2 protocol to obtain an access token, which can be used to make authenticated API requests.

node-red oauth2 security

Last synced: 16 Jan 2026

https://github.com/kannkyo/epss-api

EPSS(Exploit Prediction Scoring System) API client

epss security vulnerability

Last synced: 16 Jan 2026

https://github.com/grapheneos-archive/kernel_msm-coral

Kernel sources for the Pixel 4, Pixel 4 XL and Pixel 4a.

android grapheneos privacy security

Last synced: 13 Apr 2025

https://github.com/sagi/node-dns-over-tls

DNS-over-TLS API for Node.js

dns dns-over-tls dnstls nodejs privacy security tls

Last synced: 05 May 2025

https://github.com/subrose/thorn

🌹 Thorn is an open-source, data privacy vault to store and manage PII in a fully compliant manner.

ccpa data-privacy encryption gdpr hipaa pci pci-dss privacy privacy-by-default privacy-by-design privacy-engineering security subrose

Last synced: 10 Mar 2026

https://github.com/tagomaru/truffle-sca2t

Smart contract auditing assistant tool for Truffle Framework.

auditing ethereum ethereum-contract security smartcontract solidity

Last synced: 13 May 2025

https://github.com/plazmaz/liquidhoney

A small, fluid, low-interaction honeypot

honeypot low-interaction monitoring security tcp udp

Last synced: 23 Apr 2025

https://github.com/debfx/runjail

ad-hoc sandboxes on Linux

linux sandbox seccomp security

Last synced: 21 Jan 2026

https://github.com/ctc-oss/fapolicy-analyzer

Tools to assist with the configuration and management of fapolicyd.

fapolicyd fedora pyo3 python rhel rust security whitelisting

Last synced: 01 Feb 2026

https://github.com/nodesource/nscm

The NodeSource Certified Modules command line utility

certified-modules certified-packages cli modules nodejs nodesource npm nscm packages security whitelist

Last synced: 14 Jan 2026

https://github.com/futurragroup/securitykit

SecurityKit is a lightweight, easy-to-use Swift library that helps protect iOS apps according to the OWASP MASVS standard, chapter v8, providing an advanced security and anti-tampering layer.

cydia encryption-decryption jailbreak jailbreaking obfuscation owasp reverse-engineering security swift vpn

Last synced: 04 Mar 2026

https://github.com/ibrahmsql/gocat

Modern, cross-platform netcat alternative written in Go with enhanced features for network communication, debugging, and security testing.

cli cross-platform go golang modern-netcat netcat network-debugging networking penetration-testing port-scanner security tcp udp

Last synced: 17 Mar 2026

https://github.com/eteissonniere/opsec-checklist

Checklist of simple and not so simple things to enhance your OPSEC.

checklist opsec security

Last synced: 27 Feb 2026

https://github.com/enigmatikk/torch

Torch is a fast, secure, and production-ready web framework for Rust. Built on Tokio and Hyper, it provides everything you need to build modern web applications with minimal configuration.

async backend hyper middleware performance rest-api rust security tokio tokio-rs web-framework

Last synced: 14 Oct 2025

https://github.com/mk-fg/acme-cert-tool

Simple one-stop tool to manage X.509/TLS certs and all the ACME CA authorization stuff

acme-client certificates cryptography letsencrypt python security sysadmin tls tool web-pki x509

Last synced: 23 Apr 2025

https://github.com/nirmata/kyverno-policies

Curated Kyverno Policy Sets from Nirmata

kubernetes kyverno policy-as-code security

Last synced: 22 Sep 2025

https://github.com/jay-johnson/nerfball

Want to see how something like Internet Chemotherapy works without bricking your own vms? This is a jail to reduce the python runtime from doing bad things on the host when running untrusted code. Nerf what you do not need :space_invader: + :bug: :soccer: :football: :whale:

docker jail python reverse-engineering runtime-system security security-audit security-hardening untrusted-code

Last synced: 14 Apr 2025

https://github.com/fkie-cad/ipal_transcriber

Industrial protocol transcriber - a common representation of industrial communication as input for protocol-independent industrial intrusion detection systems.

cip ids iec-60870-5-104 iec-61162-450 industry ipal modbus network nmea0183 protocols s7 security

Last synced: 06 May 2025

https://github.com/vietlq/smart-contract-audit

Guide to auditing EVM smart contracts using tools

cve-scanning ethereum evm security security-audit smart-contracts

Last synced: 16 Jan 2026

https://github.com/seemoo-lab/wisec2017_nexmon_jammer_demo_app

This project contains source code of our Nexmon-based jammer app presented as a demo at WiSec 2017.

android-application jamming nexmon security wireless

Last synced: 05 Apr 2025

https://github.com/jasondrawdy/shellgen

Dynamic and extensible shell code generator with multiple output types which can be formatted in binary, hexadecimal, and the typical shellcode output standard.

cryptography dotnet dynamic generator library security shellcode utilities

Last synced: 22 Apr 2025

https://github.com/ctxz/mkauthdocs

A tool made to implement simple authentication on top of mkdocs builds.

auth authentication credentials login mkdocs security

Last synced: 21 Mar 2025

https://github.com/hackeralert/heavypin

A lightweight HTTPS-based proxy for bypassing firewalls.

censorship circumvention firewall freedom https networking privacy proxy security vpn

Last synced: 17 Jun 2025

https://github.com/sap-samples/cross-language-detection-artifacts

This repository complements our paper by offering the training dataset, the best-performing models utilized in our real-world experiment, the list of identified malicious packages, and the scripts necessary to replicate and verify our results.

machine-learning open-source sample sample-code security

Last synced: 13 Apr 2025

https://github.com/orbitale/permissionsbundle

Use expression based permissions instead of roles or voters to simplify your security in Symfony. Feel free to contribute ! :+1: Project was initiated after this discussion: https://github.com/symfony/symfony/issues/21029

bundle permissions security symfony symfony-bundle

Last synced: 13 Apr 2025

https://github.com/marcosimioni/omigood

OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research team, specifically CVE-2021-38647.

cve-2021-38647 omigod omigood security

Last synced: 12 May 2025

https://github.com/yallxe/hogg

Common vulnerability scanning on steroids ☄️

dns exploit network proxy rust rust-lang scanner secrets security sniffer vulnerabilities webscanner

Last synced: 19 Jul 2025

https://github.com/veinar/envcloak

A secure and easy-to-use tool for managing sensitive data with built-in encryption, decryption, and key management. Protect your secrets during development, testing, and deployment with CLI command + Python library support.

cicd cicd-pipeline cli-tool decryption devops encryption encryption-decryption env environment-variables python-library secret-management secret-sharing secrets security sensitive-data-security tool tooling tools validation

Last synced: 11 Sep 2025

https://github.com/mikaelvesavuori/better-apis-workshop

Workshop and demo for improving API quality, stability, and observability.

apis aws demo learning observability quality security serverless stability workshop

Last synced: 21 Mar 2025

https://github.com/hackeralert/paircrypt

A simple tool to securely communicate with others.

encryption password privacy security security-tools tweetnacl-js x25519 xsalsa20poly1305

Last synced: 10 Apr 2025

https://github.com/plackemacher/secure_compare

A secure compare for Elixir.

elixir library package security

Last synced: 12 Apr 2025

https://github.com/geeknik/cve-fuzzing-poc

PoCs discovered through fuzzing which resulted in a CVE assignment.

cve fuzzing infosec poc security testcase

Last synced: 10 Mar 2025

https://github.com/vincd/savoir

Savoir is a tool to perform tasks during internal security assessment

kerberos pentesting security windows

Last synced: 20 Jan 2026

https://github.com/melonattacker/threat-thinker

AI-powered threat modeling that turns architecture diagrams into actionable risks

architecture diagrams python risk-analytics security security-tools threat-analysis threat-modelling

Last synced: 02 Apr 2026

https://github.com/aydinnyunus/cve-2024-24576-exploit

CVE-2024-24576 Proof of Concept

1-day exploit rust security

Last synced: 29 Apr 2025

https://github.com/kasukusakura/kimiroyli

Kimiroyli 是一个致力于 JVM 安全的安全管理框架, 致力于保护整个系统不受恶意外部代码攻击 (WIP)

java javaagent jvm security

Last synced: 26 Apr 2025

https://github.com/yosaiproject/yosai_alchemystore

SQLAlchemy-enabled Account Store for Yosai that features a flat Role-Based Access Control (RBAC) data model

security sqlalchemy yosai

Last synced: 14 Jan 2026

https://github.com/nebulab/umarell

All in one Ruby static code analyzer

linter rails ruby security static-analysis

Last synced: 14 Apr 2025

https://github.com/prontolabs/pronto-brakeman

Pronto runner for Brakeman, security vulnerability scanner for RoR

analyzer brakeman pronto pronto-runner ruby-on-rails security security-scanner

Last synced: 24 Oct 2025

https://github.com/reinershir/lui-auth

一个使用简单的安全防护、权限验证、身份验证工具,无复杂配置,只需依赖jar并简单配置即可使用,目前拥有功能:角色、菜单、权限集成管理,IP限流,内部服务双向验证、自动打印请求日志等。 A simple and secure protection tool that is easy to use, with permission verification and identity authentication. No complex configuration is required, just rely on the jar file and simple configuration to use it.

authentication-backend lui-auth modified-preorder-tree-traversal permission security

Last synced: 14 Jan 2026

https://github.com/airlock/microgateway

Artifacts for Airlock Microgateway, a Kubernetes native WAAP (Web Application and API Protection) solution to protect microservices.

airlock cilium ergon gateway-api istio k8s kubernetes kubernetes-operator microgateway openshift security waap waf web-application-security

Last synced: 13 May 2026

https://github.com/advanced-security/probot-security-alerts

Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts

ghas nodejs probot sample security security-alerts typescript

Last synced: 23 Oct 2025

https://github.com/jpcertcc/toolanalysisresultsheet_jp

分析ツール結果シート

security

Last synced: 09 Apr 2025

https://github.com/fphammerle/docker-onion-service

hidden tor .onion service 🐳

docker network onion-service podman security tor

Last synced: 04 May 2025

https://github.com/systemli/mail-tls-helper

Postfix helper for mandatory TLS

postfix postfix-helper python security tls

Last synced: 12 Jul 2025

https://github.com/polymer/polymer-resin

XSS mitigation for Polymer webcomponents that uses safe html type contracts

polymer security webcomponents xss

Last synced: 02 May 2025

https://github.com/monish-khatri/security-headers

Package provides a minimal and simple integration to attach OWASP security headers for building a secure Laravel application.

composer-package laravel owasp-top-10 php8 security security-headers

Last synced: 10 Apr 2025

https://github.com/danieljustus/symaira-vault

🔐 The password manager for terminal users and AI agents. Age-encrypted, keyring-cached, MCP-ready. Zero telemetry.

age-encryption agent-skills ai-agents claude-code cli codex-cli golang hermes-agent hermes-skill mcp mcp-server openclaw openclaw-skill opencode own-your-data password-manager security

Last synced: 11 Jun 2026

https://github.com/agent-receipts/obsigna

Agent Receipts — cryptographically signed audit trails for AI agent actions. Protocol spec, SDKs (Go, TypeScript, Python), and MCP proxy.

agent-receipts ai ai-agents audit cryptography ed25519 golang mcp model-context-protocol python receipts security typescript verifiable-credentials w3c-vc

Last synced: 12 Jun 2026

https://github.com/t2minator/mbp-tails

How to get Tails working on T2 Apple device (e.g. 2019 MacBook Pro) without needing external keyboard/mouse.

anonymity anonymous apple apple-t2 chroot debian debian-linux kernel linux linux-kernel macbook macbookpro macbooks mpb privacy security t2 t2tails tails tor

Last synced: 09 Jul 2025

https://github.com/ko-ko-ko/php-assert

Fast flexible php assert

assert php security validation

Last synced: 11 Jan 2026

https://github.com/lirantal/express-security-txt

A Node.js middleware for Express that implements Security.txt - A Method for Web Security Policies

express hacktoberfest nodejs security

Last synced: 05 May 2025

https://github.com/mohammad-taheri1/youtube-jwtauthaspnet7webapi

In this repository, we implement authentication and authorization using JWT in a new Asp.NET 7 WebAPI project.

asp-net-core jwt security webapi

Last synced: 11 Jul 2025

https://github.com/akshatvg/vulnerability-testing-solutions

Website for testing and preventing different attacks like XSS, SQL Injection & Spoofing for Nasscom (ISAA) Project.

audit cyber-security security spoofing sql-injection testing vulnerability website xss

Last synced: 11 Apr 2025

https://github.com/MindPatch/pmg

Extract parameters/paths from urls

bugbounty bugbounty-tool bughunting python regex security

Last synced: 11 Jul 2025

https://github.com/dutchcoders/identify

Identify web application versions

fingerprint security

Last synced: 11 Apr 2025

https://github.com/grapheneos/device_common

Common device sources.

android grapheneos security

Last synced: 07 Jul 2025

https://github.com/xi/xiMatrix

filter net requests according to source, destination and type

ad-block firefox-extension security umatrix webextension

Last synced: 26 Mar 2025

https://github.com/frozenassassine/easepass

A powerful but simple, password manager that stores all your passwords locally and offline. Written in C# WinUI3

2fa-client 2factor app csharp password password-manager passwordmanager security totp windows winui3

Last synced: 23 Aug 2025

https://github.com/m-thirumal/oauth-authorization-server

New OAuth2.1 Authorization Server using Spring Boot & PostgreSQL

authentication oauth oauth2 oauth2-1 oauth2-server postgresql security spring-boot

Last synced: 14 Aug 2025

https://github.com/prawee/cyber-security

Note for cyber security class

docker git security strapi

Last synced: 22 Sep 2025

https://github.com/shellrow/nscan

Network scan tool for host and service discovery. Written in Rust.

cli-app cross-platform network rust scanner security

Last synced: 13 Apr 2025