Security
Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
- GitHub: https://github.com/topics/security
- Wikipedia: https://en.wikipedia.org/wiki/Computer_security
- Aliases: security-tools, security-vulnerability, security-audit,
- Last updated: 2026-01-16 00:29:24 UTC
- JSON Representation
https://github.com/juice-shop/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
24pullrequests application-security appsec ctf hacking hacktoberfest javascript owasp owasp-top-10 owasp-top-ten pentesting security vulnapp vulnerable
Last synced: 13 May 2025
https://github.com/digininja/dvwa
Damn Vulnerable Web Application (DVWA)
dvwa hacking infosec php security sql-injection training
Last synced: 12 May 2025
https://github.com/mvt-project/mvt
MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.
android forensics forensics-tools ios mobile security
Last synced: 12 May 2025
https://github.com/arkenfox/user.js
Firefox privacy, security and anti-tracking: a comprehensive user.js template for configuration and hardening
anti-fingerprinting anti-tracking arkenfox firefox mozilla privacy security settings
Last synced: 10 May 2025
https://github.com/google/oss-fuzz
OSS-Fuzz - continuous fuzzing for open source software.
fuzz-testing fuzzing oss-fuzz security stability vulnerabilities
Last synced: 12 May 2025
https://google.github.io/oss-fuzz/
OSS-Fuzz - continuous fuzzing for open source software.
fuzz-testing fuzzing oss-fuzz security stability vulnerabilities
Last synced: 08 May 2025
https://github.com/trimstray/test-your-sysadmin-skills
A collection of Linux Sysadmin Test Questions and Answers. Test your knowledge and skills in different fields with these Q/A.
answers bsd cheatsheets cybersecurity databases devops exam interview interview-questions knowledge linux network resources security skills sysadmin sysops systems unix webops
Last synced: 08 May 2025
https://github.com/nmap/nmap
Nmap - the Network Mapper. Github mirror of official SVN repository.
asynchronous c-plus-plus libpcap linux lua machine-learning netcat network-discovery nmap osx pcre ping port-scanner security service-discovery socket windows
Last synced: 13 May 2025
https://github.com/imranr98/obtainium
Get Android app updates straight from the source.
android apk apk-update apk-updater app-updater automation foss github github-apk-updater gitlab notifications obtainium privacy security update-checker updater
Last synced: 09 May 2025
https://github.com/kubescape/kubescape
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.
best-practice devops kubernetes mitre-attack nsa security vulnerability-detection
Last synced: 12 May 2025
https://github.com/chaitin/xray
一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档
passive-vulnerability-scanner poc security sqlinjection vulnerability vulnerability-scanner xss
Last synced: 27 Mar 2025
https://bkimminich.github.io/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
24pullrequests application-security appsec ctf hacking hacktoberfest javascript owasp owasp-top-10 owasp-top-ten pentesting security vulnapp vulnerable
Last synced: 20 Mar 2025
https://github.com/helmetjs/helmet
Help secure Express apps with various HTTP headers
helmet http-headers javascript middleware security
Last synced: 12 May 2025
https://github.com/crowdsecurity/crowdsec
CrowdSec - the open-source and participative security solution offering crowdsourced protection against malicious IPs and access to the most advanced real-world CTI.
attacks-prevention detection linux protection security
Last synced: 13 May 2025
https://github.com/gravitl/netmaker
Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
cloud devsecops k8s kubernetes mesh mesh-network network networking overlay-network security self-hosted virtual-network virtual-networking vpn vpn-server wg-quick wireguard wireguard-ui wireguard-vpn zero-trust
Last synced: 12 May 2025
https://github.com/ethicalhack3r/DVWA
Damn Vulnerable Web Application (DVWA)
dvwa hacking infosec php security sql-injection training
Last synced: 01 Apr 2025
https://github.com/digininja/DVWA
Damn Vulnerable Web Application (DVWA)
dvwa hacking infosec php security sql-injection training
Last synced: 27 Mar 2025
https://github.com/projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
bugbounty exploit-development exploits fingerprint hacktoberfest nuclei nuclei-checks nuclei-templates security vulnerability-detection
Last synced: 14 May 2025
https://github.com/trimstray/the-practical-linux-hardening-guide
This guide details creating a secure Linux production system. OpenSCAP (C2S/CIS, STIG).
audit centos checklist cis guide hardening linux linux-hardening linux-security manual openscap pci-dss redhat-enterprise-linux security
Last synced: 14 May 2025
https://github.com/trimstray/the-practical-linux-hardening-guide?utm_campaign=featured&utm_medium=email&utm_source=programmingdigest
This guide details creating a secure Linux production system. OpenSCAP (C2S/CIS, STIG).
audit centos checklist cis guide hardening linux linux-hardening linux-security manual openscap pci-dss redhat-enterprise-linux security
Last synced: 13 May 2025
https://github.com/veeral-patel/how-to-secure-anything
How to systematically secure anything: a repository about security engineering
secure-design secure-systems security security-architecture security-assurance security-engineering threat-modeling
Last synced: 22 Jun 2025
https://github.com/shadowsocks/shadowsocks-rust
A Rust port of shadowsocks
http-proxy rust security shadowsocks socks4 socks5 transparent-proxy
Last synced: 17 Dec 2025
https://github.com/anchore/grype
A vulnerability scanner for container images and filesystems
container-image containers cyclonedx docker go golang hacktoberfest oci openvex security static-analysis tool vex vulnerabilities vulnerability
Last synced: 08 Jan 2026
https://github.com/knownsec/404starlink
404StarLink - 推荐优质、有意义、有趣、坚持维护的安全开源项目
Last synced: 07 Oct 2025
https://github.com/monero-project/monero
Monero: the secure, private, untraceable cryptocurrency
blockchain c-plus-plus cmake cryptocurrency cryptography cryptonote monero p2p privacy security
Last synced: 16 Dec 2025
https://github.com/upgundecha/howtheysre
A curated collection of publicly available resources on how technology and tech-savvy organizations around the world practice Site Reliability Engineering (SRE)
alerting chaos-engineering dev-ops devops hacktoberfest hacktoberfest-accepted incident-management incident-response infrastructure ml-ops monitoring observability on-call post-mortem reliability security site-reliability-engineering software-engineering sre sre-culture
Last synced: 12 May 2025
https://github.com/DuendeArchive/IdentityServer4
OpenID Connect and OAuth 2.0 Framework for ASP.NET Core
aspnet-core dotnet identity identityserver4 oauth2 openid-connect security
Last synced: 14 Mar 2025
https://github.com/toniblyx/my-arsenal-of-aws-security-tools
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
auditing aws-infrastructure aws-inventory aws-lambda cloud cloudtrail dfir iam incident-response security security-tools
Last synced: 11 May 2025
https://github.com/sigmahq/sigma
Main Sigma Rule Repository
elasticsearch ids logging monitoring security siem signatures splunk sysmon
Last synced: 09 Sep 2025
https://github.com/samratashok/nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
activedirectory hacking infosec nishang penetration-testing powershell red-team redteam security
Last synced: 13 May 2025
https://github.com/spring-projects/spring-security
Spring Security
framework java security spring spring-framework
Last synced: 11 Jan 2026
https://github.com/go-acme/lego
Let's Encrypt/ACME client and library written in Go
acme acme-client certificate dns letsencrypt rfc8555 rfc8737 rfc8738 security tls
Last synced: 11 Dec 2025
https://github.com/wpscanteam/wpscan
WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
hacking-tool scan scanner security security-scanner wordpress wpscan wpvulndb
Last synced: 11 May 2025
https://github.com/bregman-arie/devops-resources
DevOps resources - Linux, Jenkins, AWS, SRE, Prometheus, Docker, Python, Ansible, Git, Kubernetes, Terraform, OpenStack, SQL, NoSQL, Azure, GCP
aws bash checklists containers devops docker go interview jenkins linux mongo python questions security sql
Last synced: 13 May 2025
https://github.com/mailpile/mailpile
A free & open modern, fast email client with user-friendly encryption and privacy features
e-mail imap-client pgp search-engine security smtp-client tags
Last synced: 13 May 2025
https://github.com/mailpile/Mailpile
A free & open modern, fast email client with user-friendly encryption and privacy features
e-mail imap-client pgp search-engine security smtp-client tags
Last synced: 22 Mar 2025
https://github.com/SigmaHQ/sigma
Main Sigma Rule Repository
elasticsearch ids logging monitoring security siem signatures splunk sysmon
Last synced: 24 Mar 2025
https://github.com/1n3/sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 11 May 2025
https://github.com/simplex-chat/simplex-chat
SimpleX - the first messaging network operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!
chat double-ratchet e2ee encryption haskell messaging privacy protocol security
Last synced: 14 May 2025
https://github.com/securego/gosec
Go security checker
golang security security-automation security-tools static-analysis static-code-analysis
Last synced: 12 Jan 2026
https://github.com/1N3/Sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 24 Mar 2025
https://github.com/capstone-engine/capstone
Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.
arm arm64 bpf disassembler ethereum framework m0s65xx m680x m68k mips powerpc reverse-engineering riscv security sparc systemz tms320c64x webassembly x86 x86-64
Last synced: 15 Jan 2026
https://go-acme.github.io/lego/
Let's Encrypt/ACME client and library written in Go
acme acme-client certificate dns letsencrypt rfc8555 rfc8737 rfc8738 security tls
Last synced: 29 Apr 2025
https://github.com/quasar/quasar
Remote Administration Tool for Windows
administration c-sharp dotnet mono net protobuf rat red-team remote remote-control remote-desktop security windows
Last synced: 17 Dec 2025
https://github.com/quasar/Quasar
Remote Administration Tool for Windows
administration c-sharp dotnet mono net protobuf rat red-team remote remote-control remote-desktop security windows
Last synced: 24 Mar 2025
https://github.com/frappe/frappe
Low code web framework for real world applications, in Python and Javascript
cms email erpnext frappe full-stack javascript low-code mariadb multitenant postgres python rest-api security socket-io web-framework webhooks
Last synced: 06 Jan 2026
https://github.com/jofpin/trape
People tracker on the Internet: OSINT analysis and research tool by Jose Pino
flask footprint hacking hacking-tool jose-pino osint phising python recognition security social-engineering tracking
Last synced: 14 May 2025
https://github.com/unicorn-engine/unicorn
Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)
arm arm64 cpu cpu-emulator emulator framework m68k mips powerpc reverse-engineering riscv s390x security sparc systemz tricore x86 x86-64
Last synced: 12 May 2025
https://github.com/kishikawakatsumi/keychainaccess
Simple Swift wrapper for Keychain that works on iOS, watchOS, tvOS and macOS.
Last synced: 13 May 2025
https://github.com/sensepost/objection
📱 objection - runtime mobile exploration
android framework frida instrumentation ios mobile pentest security
Last synced: 13 May 2025
https://github.com/kishikawakatsumi/KeychainAccess
Simple Swift wrapper for Keychain that works on iOS, watchOS, tvOS and macOS.
Last synced: 06 Aug 2025
https://github.com/linkedin/school-of-sre
At LinkedIn, we are using this curriculum for onboarding our entry-level talents into the SRE role.
git hadoop linux mysql networking nosql python security sre system-design
Last synced: 14 May 2025
https://github.com/yokoffing/betterfox
Firefox user.js for speed, privacy, and security. Your favorite browser, but better.
anti-tracking firefox gecko mozilla performance privacy security settings speed tracking web-browser
Last synced: 13 May 2025
https://github.com/falcosecurity/falco
Cloud Native Runtime Security
cloud-native cncf cncf-project containers ebpf falco hacktoberfest kubernetes runtime-security security
Last synced: 13 May 2025
https://github.com/bunkerity/bunkerweb
🛡️ Open-source and next-generation Web Application Firewall (WAF)
antibot bunkerized-nginx cybersecurity devops devsecops dnsbl docker hardening hosting kubernetes letsencrypt modsecurity nginx reverse-proxy security security-tuning swarm waf web-application-firewall web-security
Last synced: 12 May 2025
https://github.com/telekom-security/tpotce
🍯 T-Pot - The All In One Multi Honeypot Platform 🐝
deception docker elk honeypot network-security security t-pot
Last synced: 12 May 2025
https://github.com/ImranR98/Obtainium
Get Android app updates straight from the source.
android apk apk-update apk-updater app-updater automation foss github github-apk-updater gitlab notifications obtainium privacy security update-checker updater
Last synced: 24 Mar 2025
https://github.com/graylog2/graylog2-server
Free and open log management
amqp gelf graylog hacktoberfest kafka log-analysis log-collector log-management log-viewer logging logging-server secure-logging security siem syslog
Last synced: 09 Sep 2025
https://github.com/yokoffing/Betterfox
Firefox user.js for speed, privacy, and security. Your favorite browser, but better.
anti-tracking firefox gecko mozilla performance privacy security settings speed tracking web-browser
Last synced: 27 Mar 2025
https://github.com/aquynh/capstone
Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.
arm arm64 bpf disassembler ethereum framework m0s65xx m680x m68k mips powerpc reverse-engineering riscv security sparc systemz tms320c64x webassembly x86 x86-64
Last synced: 13 Mar 2025
https://github.com/ConsenSysDiligence/smart-contract-best-practices
A guide to smart contract security best practices
blockchain documentation ethereum security smart-contracts solidity
Last synced: 30 Mar 2025
https://github.com/consensysdiligence/smart-contract-best-practices
A guide to smart contract security best practices
blockchain documentation ethereum security smart-contracts solidity
Last synced: 23 Apr 2025
https://github.com/maxgoedjen/secretive
Store SSH keys in the Secure Enclave
mac secure-enclave security ssh
Last synced: 13 May 2025
https://github.com/Consensys/smart-contract-best-practices
A guide to smart contract security best practices
blockchain documentation ethereum security smart-contracts solidity
Last synced: 13 Mar 2025
https://github.com/ConsenSys/smart-contract-best-practices
A guide to smart contract security best practices
blockchain documentation ethereum security smart-contracts solidity
Last synced: 13 Mar 2025
https://consensys.github.io/smart-contract-best-practices/
A guide to smart contract security best practices
blockchain documentation ethereum security smart-contracts solidity
Last synced: 12 Apr 2025
https://github.com/knownsec/404StarLink
404StarLink - 推荐优质、有意义、有趣、坚持维护的安全开源项目
Last synced: 24 Mar 2025
https://github.com/turbot/steampipe
Zero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.
aws azure cis cloud cnapp cspm devops devsecops etl gcp golang hacktoberfest kubernetes postgresql postgresql-fdw security sqlite steampipe terraform zero-etl
Last synced: 14 May 2025
https://github.com/smallstep/certificates
🛡️ A private certificate authority (X.509 & SSH) & ACME server for secure automated certificate management, so you can use TLS everywhere & SSO for SSH.
acme acme-server ca certificate-authority certificates go pki security security-tools ssh tls x509
Last synced: 12 May 2025
https://github.com/owasp/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 26 Mar 2025
https://github.com/OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 30 Mar 2025
https://github.com/firezone/firezone
Enterprise-ready zero-trust access platform built on WireGuard®.
cloud devsecops elixir elixir-lang firewall liveview network network-security networking phoenix privacy rust-lang security self-hosted virtual-network vpn vpn-server wireguard wireguard-ui wireguard-vpn
Last synced: 13 May 2025
https://github.com/privatebin/privatebin
A minimalist, open source online pastebin where the server has zero knowledge of pasted data. Data is encrypted/decrypted in the browser using 256 bits AES.
crypto cryptography encrypted hacktoberfest one-time paste pastebin php security self-destroy self-hosted self-hosting
Last synced: 14 May 2025
https://github.com/Graylog2/graylog2-server
Free and open log management
amqp gelf graylog hacktoberfest kafka log-analysis log-collector log-management log-viewer logging logging-server secure-logging security siem syslog
Last synced: 23 Mar 2025
https://github.com/presidentbeef/brakeman
A static analysis security vulnerability scanner for Ruby on Rails applications
brakeman rails ruby security security-audit security-tools security-vulnerability static-analysis vulnerabilities
Last synced: 12 May 2025
https://github.com/facebook/pyre-check
Performant type-checking for python.
abstract-interpretation code-quality control-flow-analysis ocaml program-analysis python security static-analysis taint-analysis type-check typechecker
Last synced: 12 May 2025
https://github.com/PrivateBin/PrivateBin
A minimalist, open source online pastebin where the server has zero knowledge of pasted data. Data is encrypted/decrypted in the browser using 256 bits AES.
crypto cryptography encrypted hacktoberfest one-time paste pastebin php security self-destroy self-hosted self-hosting
Last synced: 24 Mar 2025
https://github.com/yaklang/yakit
Cyber Security ALL-IN-ONE Platform
blueteam burpsuite exploit golang hacking hacking-tools pentest redteam redteam-tools scanner security
Last synced: 26 Dec 2025
https://github.com/stamparm/maltrail
Malicious traffic detection system
attack-detection intrusion-detection malware network-monitoring python security sensor
Last synced: 12 May 2025
https://github.com/pycqa/bandit
Bandit is a tool designed to find common security issues in Python code.
bandit linter python security security-scanner security-tools static-code-analysis
Last synced: 12 May 2025
https://github.com/firerpa/lamda
🤖 The most powerful Android RPA framework, the next generation of mobile automation robots.
adb agents ai android appium automation dynamic-analysis frida magisk mcp mcp-server mobile-security pentesting remote-control reverse-engineering security uiautomation uiautomator2 workflow xposed
Last synced: 10 May 2025
https://github.com/v1s1t0r1sh3r3/airgeddon
This is a multi-use bash script for Linux systems to audit wireless networks.
5ghz aircrack bash beef denial-of-service enterprise evil-twin hacking handshake linux pentesting pixie-dust pmkid security sniffing sslstrip wep wireless wpa-wpa2-wpa3 wps
Last synced: 12 May 2025
https://github.com/bee-san/pywhat
🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙♀️
cyber cybersecurity hacking hacktoberfest malware malware-analysis malware-research pcap python re security tryhackme
Last synced: 13 May 2025
https://github.com/majd/ipatool
Command-line tool that allows searching and downloading app packages (known as ipa files) from the iOS App Store
apple appstore cli command-line command-line-tool go golang golang-library ios ipa itunes macos research reverse-engineering security swift tool
Last synced: 16 May 2025
https://github.com/zeek/zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
bro dfir network-monitoring nsm pcap security zeek
Last synced: 12 May 2025
https://github.com/PyCQA/bandit
Bandit is a tool designed to find common security issues in Python code.
bandit linter python security security-scanner security-tools static-code-analysis
Last synced: 15 Mar 2025
https://github.com/aquasecurity/tfsec
Tfsec is now part of Trivy
aws azure ci compliance devops devsecops digitalocean go google-cloud-platform hacktoberfest infrastructure-as-code linter misconfiguration scanner security static-analysis terraform terraform-security vulnerability-scanners
Last synced: 16 May 2025
https://github.com/bee-san/pyWhat
🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙♀️
cyber cybersecurity hacking hacktoberfest malware malware-analysis malware-research pcap python re security tryhackme
Last synced: 17 Mar 2025
https://github.com/dtag-dev-sec/tpotce
🍯 T-Pot - The All In One Multi Honeypot Platform 🐝
deception docker elk honeypot network-security security t-pot
Last synced: 09 Mar 2025
https://github.com/hwdsl2/docker-ipsec-vpn-server
Docker image to run an IPsec VPN server, with IPsec/L2TP, Cisco IPsec and IKEv2
cisco-ipsec docker docker-image encryption ikev2 ipsec l2tp libreswan linux network security vpn vpn-client vpn-server
Last synced: 14 May 2025
https://github.com/virb3/wgcf
🚤 Cross-platform, unofficial CLI for Cloudflare Warp
client cloudflare plus security vpn warp wireguard
Last synced: 14 May 2025
https://github.com/OpenCTI-Platform/opencti
Open Cyber Threat Intelligence Platform
cti cyber cybersecurity intelligence osint security threat-intelligence
Last synced: 30 Mar 2025
https://github.com/opencti-platform/opencti
Open Cyber Threat Intelligence Platform
cti cyber cybersecurity intelligence osint security threat-intelligence
Last synced: 02 Apr 2025
https://github.com/onionshare/onionshare
Securely and anonymously share files, host websites, and chat with friends using the Tor network
cross-platform file-sharing onion-service onionshare open-source python security tor tor-onion-service
Last synced: 12 Nov 2025
https://github.com/arkime/arkime
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
big-data c javascript network-monitoring nsm packet-capture pcap security
Last synced: 12 May 2025
https://aquasecurity.github.io/tfsec/
Security scanner for your Terraform code
aws azure ci compliance devops devsecops digitalocean go google-cloud-platform hacktoberfest infrastructure-as-code linter misconfiguration scanner security static-analysis terraform terraform-security vulnerability-scanners
Last synced: 01 Apr 2025
https://github.com/fulldecent/system-bus-radio
Transmits AM radio on computers without radio transmitting hardware.
airgap communication communication-protocol electrical-engineering engineering equipment exfiltration low-level microprocessor radiation radio security software-defined-radio transmission transmitter
Last synced: 14 May 2025