An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/0x4d31/burpa

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).

automation burp burpsuite devops python security security-automation security-scanner security-tools web-security

Last synced: 15 Feb 2026

https://github.com/0x4D31/burpa

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).

automation burp burpsuite devops python security security-automation security-scanner security-tools web-security

Last synced: 11 Apr 2025

https://github.com/modzero/mod0burpuploadscanner

HTTP file upload scanner for Burp Proxy

burp extension fileupload multipart scanner security uploadscanner

Last synced: 02 Apr 2025

https://github.com/danielpoliakov/lisa

Sandbox for automated Linux malware analysis.

internet-of-things iot linux linux-sandbox lisa malware malware-analysis security

Last synced: 03 Feb 2026

https://github.com/genuinetools/bpfd

Framework for running BPF programs with rules on Linux as a daemon. Container aware.

bpf cli containers docker ebpf kernel linux security tracing

Last synced: 16 May 2025

https://github.com/710leo/zvuldrill

Web漏洞演练平台

security websecurity

Last synced: 05 Apr 2025

https://github.com/710leo/ZVulDrill

Web漏洞演练平台

security websecurity

Last synced: 02 May 2025

https://github.com/turbot/powerpipe

Powerpipe: Dashboards for DevOps. Visualize cloud configurations. Assess security posture against a massive library of benchmarks. Build custom dashboards with code.

aws azure cis cloud cnapp cspm dashboards devops devsecops duckdb gcp hacktoberfest hcl kubernetes mysql postgresql security sql sqlite terraform

Last synced: 17 Feb 2026

https://github.com/netflix-skunkworks/aardvark

Aardvark is a multi-account AWS IAM Access Advisor API

aws security

Last synced: 16 May 2025

https://github.com/sigstore/sigstore

Common go library shared across sigstore services and clients

cosign go golang security sigstore supply-chain

Last synced: 29 Mar 2025

https://github.com/google/clusterfuzzlite

ClusterFuzzLite - Simple continuous fuzzing that runs in CI.

ci continuous-integration fuzz-testing fuzzing security vulnerabilities

Last synced: 07 Apr 2025

https://google.github.io/clusterfuzzlite/

ClusterFuzzLite - Simple continuous fuzzing that runs in CI.

ci continuous-integration fuzz-testing fuzzing security vulnerabilities

Last synced: 07 May 2025

https://github.com/pwnfoo/ntlmrecon

Enumerate information from NTLM authentication enabled web endpoints 🔎

blackarch cybersecurity enumeration hacking hacking-tools ntlm ntlmssp osint recon reconnaissance redteam security tools

Last synced: 14 Mar 2026

https://github.com/FuzzingLabs/octopus

Security Analysis tool for WebAssembly module (wasm) and Blockchain Smart Contracts (BTC/ETH/NEO/EOS)

blockchain call-flow-analysis control-flow-analysis disassembler eos ethereum evm-bytecode neo security security-analysis smart-contracts wasm webassembly

Last synced: 18 Apr 2025

https://github.com/miscreant/meta

Meta-repository for Miscreant: misuse-resistant symmetric encryption library with AES-SIV (RFC 5297) and AES-PMAC-SIV support

aead aes cryptography key-wrapping nonce-misuse-attacks security siv streaming-encryption

Last synced: 20 Mar 2025

https://github.com/nix-community/vulnix

Vulnerability (CVE) scanner for Nix/NixOS.

cve nix nixos security vulnerabilities vulnerability

Last synced: 04 Apr 2025

https://github.com/boxlite-ai/boxlite

Embedded sandbox for running AI agents.

ai-agents containers sandbox security serverless virtualization

Last synced: 12 Mar 2026

https://github.com/skerkour/kerkour.com

(Ab)using technology for fun & profit. Programming, Hacking & Entrepreneurship @ https://kerkour.com

blog blogging crypto cryptography encryption go golang programming rust rust-lang security web

Last synced: 04 Apr 2025

https://github.com/cilium/cilium-cli

CLI to install, manage & troubleshoot Kubernetes clusters running Cilium

cilium ebpf kubernetes networking observability security

Last synced: 13 Apr 2025

https://github.com/in-toto/witness

Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact provenance.

attestation security security-tools supply-chain verification

Last synced: 15 May 2025

https://github.com/zoph-io/MAMIP

[MAMIP] Monitor AWS Managed IAM Policies Changes

aws changes iam managed monitor policies security

Last synced: 30 Mar 2025

https://github.com/dev-sec/cis-docker-benchmark

CIS Docker Benchmark - InSpec Profile

cis-docker-benchmark docker hardening inspec security

Last synced: 14 Mar 2025

https://github.com/paragonie/chronicle

Public append-only ledger microservice built with Slim Framework

append-only blake2b chain cryptography hash hash-chain knowledge php proof sapient security security-tools

Last synced: 04 Apr 2025

https://github.com/santoru/shcheck

A basic tool to check security headers of a website

headers http https response security

Last synced: 08 Apr 2025

https://github.com/spatie/crypto

Encrypt and decrypt data using private/public keys

php security

Last synced: 14 May 2025

https://github.com/jchambers/java-otp

A one-time password (HOTP/TOTP) library for Java

2fa hotp java one-time-password otp security totp two-factor-authentication

Last synced: 13 Apr 2025

https://github.com/daniel-cues/NMapGUI

Advanced Graphical User Interface for NMap

cybersecurity monitoring network-analysis nmap security sysadmin

Last synced: 02 Apr 2025

https://github.com/pwnfoo/NTLMRecon

Enumerate information from NTLM authentication enabled web endpoints 🔎

blackarch cybersecurity enumeration hacking hacking-tools ntlm ntlmssp osint recon reconnaissance redteam security tools

Last synced: 11 Jul 2025

https://github.com/AabyssZG/AWD-Guide

从零学习AWD比赛指导手册以及AWD脚本整理

awd awd-tools ctf ctf-framework ctf-tools security

Last synced: 05 Apr 2025

https://github.com/bmarsh9/gapps

Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking. https://gapps.darkbanner.com

27002 asvs cis18 cmmc compliance csc grc hipaa iso27001 nist nist-csf nist800-53 owasp owasp-top-10 pci pci-dss security soc2

Last synced: 05 Apr 2025

https://github.com/hackerschoice/thc-tesla-powerwall2-hack

TESLA PowerWall 2 Security Shenanigans

electricity hacking powerwall security tesla

Last synced: 21 Feb 2026

https://github.com/step-security/github-actions-goat

GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

actions attack-simulation attack-simulator devsecops hacking security

Last synced: 15 May 2025

https://github.com/pyupio/pyup

A tool to update your project's dependencies on GitHub. Runs on pyup.io, comes with a command line interface.

dependency dependency-manager security security-tools security-vulnerability

Last synced: 16 May 2025

https://github.com/aabysszg/awd-guide

从零学习AWD比赛指导手册以及AWD脚本整理

awd awd-tools ctf ctf-framework ctf-tools security

Last synced: 05 Apr 2025

https://github.com/edoverflow/bugbountyguide

Bug Bounty Guide is a launchpad for bug bounty programs and bug bounty hunters.

bugbounty infosec security

Last synced: 26 Jan 2026

https://github.com/Netflix-Skunkworks/aardvark

Aardvark is a multi-account AWS IAM Access Advisor API

aws security

Last synced: 02 Apr 2025

https://github.com/mozilla-mobile/mozilla-vpn-client

A fast, secure and easy to use VPN. Built by the makers of Firefox.

firefox mozilla privacy security vpn vpn-client

Last synced: 08 Apr 2025

https://github.com/quarkslab/kdigger

Kubernetes focused container assessment and context discovery tool for penetration testing

containers kubernetes pentest security tool

Last synced: 03 Feb 2026

https://github.com/mushorg/snare

Super Next generation Advanced Reactive honEypot

hacktoberfest honeypot security

Last synced: 05 Apr 2025

https://github.com/cynicsketch/nix-mineral

Conveniently and reasonably harden NixOS.

nix nixos privacy security

Last synced: 01 Apr 2026

https://github.com/wotschofsky/domain-digger

Full Toolkit for Next-Level Domain Analysis

cloud dns domains osint security

Last synced: 30 Jul 2025

https://github.com/Azure/AzureDatabricksBestPractices

Version 1 of Technical Best Practices of Azure Databricks based on real world Customer and Technical SME inputs

azure azuredatabricks deployment grafana performance performance-monitoring provisioning python scalability security spark

Last synced: 29 Jul 2025

https://github.com/jaybosamiya/security-notes

:notebook: Some security related notes

binary-analysis hacking notes pwning reverse-engineering security

Last synced: 05 Feb 2026

https://github.com/Netflix-Skunkworks/stethoscope-app

A desktop application that checks security-related settings and makes recommendations for improvements without requiring central device management or automated reporting.

electron endpoint-security hacktoberfest javascript linux-security macos-security security usable-security windows-security

Last synced: 30 Mar 2025

https://github.com/netflix-skunkworks/stethoscope-app

A desktop application that checks security-related settings and makes recommendations for improvements without requiring central device management or automated reporting.

electron endpoint-security hacktoberfest javascript linux-security macos-security security usable-security windows-security

Last synced: 05 Apr 2025

https://github.com/jpcertcc/aa-tools

Artifact analysis tools by JPCERT/CC Analysis Center

malware python security

Last synced: 04 Apr 2025

https://github.com/NullHypothesis/exitmap

A fast and modular scanner for Tor exit relays. The canonical repository (including issue tracker) is at https://gitlab.torproject.org/tpo/network-health/exitmap

python scanner security tor tor-network

Last synced: 19 Jul 2025

https://github.com/jasonish/evebox

Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search

ids ips netsec nsm security suricata

Last synced: 14 May 2025

https://github.com/vininha-carvalho/automated-liquidity-management-and-security-for-solana-projects

A powerful tool for projects with liquidity >$10k. It provides automatic pool rebalancing, hacker protection, real-time analytics and cross-chain management.

analytics anchor-framework blockchain cross-chain dao defi jupiter-aggregator liquidity-pools open-source orca raydium rust security solana solana-token spl-token tokenomics wormhole yield-farming

Last synced: 27 Feb 2025

https://github.com/azure/azuredatabricksbestpractices

Version 1 of Technical Best Practices of Azure Databricks based on real world Customer and Technical SME inputs

azure azuredatabricks deployment grafana performance performance-monitoring provisioning python scalability security spark

Last synced: 04 Apr 2025

https://github.com/EdOverflow/bugbountyguide

Bug Bounty Guide is a launchpad for bug bounty programs and bug bounty hunters.

bugbounty infosec security

Last synced: 13 Mar 2025

https://github.com/nullhypothesis/exitmap

A fast and modular scanner for Tor exit relays. The canonical repository (including issue tracker) is at https://gitlab.torproject.org/tpo/network-health/exitmap

python scanner security tor tor-network

Last synced: 02 Apr 2025

https://github.com/slsa-framework/slsa-github-generator

Language-agnostic SLSA provenance generation for Github Actions

security security-hardening security-tools slsa slsaprovenance

Last synced: 07 May 2025

https://github.com/k4yt3x/orbitaldump

A simple multi-threaded distributed SSH brute-forcing tool written in Python

brute-force pentesting python security ssh

Last synced: 04 Apr 2025

https://github.com/mrrfv/cloudflare-gateway-pihole-scripts

Use Cloudflare Gateway DNS/VPN to block ads, malware and tracking domains - free alternative to NextDNS, Pi-hole and AdGuard

adblock adblocking anti-tracking antimalware cloudflare cloudflare-api cloudflare-gateway cloudflare-zero-trust javascript nextdns nodejs pihole privacy security vpn

Last synced: 14 May 2025

https://github.com/Foxboron/ssh-tpm-agent

:computer: :key: ssh-agent for TPMs

go-tpm golang security ssh ssh-agent tpm tpm2

Last synced: 11 Jun 2025

https://github.com/trussed-dev/trussed

Modern Cryptographic Firmware

cryptography embedded security trussed

Last synced: 14 May 2025

https://github.com/Vinum-Security/kubernetes-security-checklist

Kubernetes Security Checklist and Requirements - All in One (authentication, authorization, logging, secrets, configuration, network, workloads, dockerfile)

checklist cloud-native-security container-security devsecops kubernetes kubernetes-security requirments security

Last synced: 29 Apr 2025

https://github.com/macvk/dnsleaktest

An open source script tests VPN connection for DNS Leak.

dns dns-server leak-detection security vpn

Last synced: 07 Apr 2025

https://github.com/facebookincubator/nvdtools

A set of tools to work with the feeds (vulnerabilities, CPE dictionary etc.) distributed by National Vulnerability Database (NVD)

golang nvd security unix-tools vulnerability-management

Last synced: 14 May 2025

https://github.com/drduh/debian-privacy-server-guide

Guide to using a remote Debian server for security and privacy services

debian dns openvpn openvpn-server privacy security tor tor-relay vpn-server xmpp-server

Last synced: 06 Apr 2025

https://github.com/afshinm/zerobox

Lightweight, cross-platform process sandboxing powered by OpenAI Codex's runtime. Sandbox any command with file, network, and credential controls.

ai-agents cli llm llm-sandbox mcp mcp-security openclaw process-isolation rust sandbox security security-tools vault

Last synced: 18 Apr 2026

https://github.com/drduh/Debian-Privacy-Server-Guide

Guide to using a remote Debian server for security and privacy services

debian dns openvpn openvpn-server privacy security tor tor-relay vpn-server xmpp-server

Last synced: 11 Jul 2025

https://github.com/aydinnyunus/exiflooter

ExifLooter finds geolocation on all image urls and directories also integrates with OpenStreetMap

bug-bounty bugbounty cyber-security exif exif-metadata exiftool golang hack hacking image metadata metadata-extraction osint redteam security

Last synced: 27 Oct 2025

https://github.com/aydinnyunus/exifLooter

ExifLooter finds geolocation on all image urls and directories also integrates with OpenStreetMap

bug-bounty bugbounty cyber-security exif exif-metadata exiftool golang hack hacking image metadata metadata-extraction osint redteam security

Last synced: 06 Apr 2025

https://github.com/FusionAuth/security-scripts

Scripts built from our Guide to User Data Security

chef-recipes fusionauth security security-hardening

Last synced: 09 Apr 2025

https://github.com/fusionauth/security-scripts

Scripts built from our Guide to User Data Security

chef-recipes fusionauth security security-hardening

Last synced: 04 Apr 2025

https://github.com/cruise-automation/k-rail

Kubernetes security tool for policy enforcement

k8s kubernetes kubernetes-security policy security

Last synced: 14 Jan 2026

https://github.com/netflix-skunkworks/policyuniverse

Parse and Process AWS IAM Policies, Statements, ARNs, and wildcards.

security

Last synced: 15 May 2025

https://github.com/vlsergey/infosec

Учебное пособие по защите информации кафедры радиотехники и систем управления МФТИ

book cryptography information-security mactex mipt security tex tutorial

Last synced: 05 Jul 2025

https://github.com/burpheart/koko-moni

一个基于网络空间搜索引擎的攻击面管理平台,可定时进行资产信息爬取,及时发现新增资产,本项目聚合了 Fofa、Hunter、Quake、Zoomeye 和 Threatbook 的数据源,并对获取到的数据进行去重与清洗

blueteam easm fofa hunter infosec pentest-tool quake redteam security security-tools threatbook web-security zoomeye

Last synced: 16 Jan 2026