An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/jamf/jamfprotect

A repository for open-source resources created for use with or alongside Jamf Protect.

analytics detections jamfprotect security unifiedlogs workflows

Last synced: 04 Apr 2025

https://github.com/shadowsocksr-live/overtls

A simple proxy tunnel, minimalist tool for bypassing the GFW.

bypass gfw monitoring networking proxy rust rust-lang security ssl tls tunnel websocket

Last synced: 28 May 2026

https://github.com/ShadowsocksR-Live/overtls

A simple proxy tunnel, minimalist tool for bypassing the GFW.

bypass gfw monitoring networking proxy rust rust-lang security ssl tls tunnel websocket

Last synced: 04 Sep 2025

https://github.com/brannondorsey/host-validation

Express.js middleware for "Host" and "Referer" header validation to protect against DNS rebinding attacks.

dns-rebinding express express-middleware middleware nodejs security validation

Last synced: 05 Apr 2025

https://github.com/twilio-labs/deadshot

Deadshot is a Github pull request scanner to identify sensitive data being committed to a repository

automation credentials git github pull-requests scanning secrets security sensitive-data sensitive-data-security vulnerabilities

Last synced: 07 May 2025

https://github.com/nccgroup/kube-auto-analyzer

Kubernetes Auto Analyzer

kubernetes security

Last synced: 07 May 2025

https://github.com/wn-na/react-native-capture-protection

🛡️ A React Native library to prevent and detect for screen capture, screenshots and app switcher for enhanced security. Fully compatible with both Expo and CLI.

android app-switcher detector expo ios mobile-security privacy react-native screen-capture screenrecord screenshot screenshot-protection security

Last synced: 26 Dec 2025

https://github.com/p0cl4bs/nanobrok

Web Service write in Python for control and protect your android device remotely.

android control remote security

Last synced: 13 Mar 2026

https://github.com/iamsarvagyaa/AndroidSecNotes

An actively maintained, Self curated notes related to android application security for security professionals, bugbounty hunters, pentesters, reverse engineer, and redteamers.

adb android androidsecurity bugbounty hacking notes pentesting security

Last synced: 11 Jul 2025

https://github.com/kazet/wpgarlic

A proof-of-concept WordPress plugin fuzzer

fuzzing security security-tools testing wordpress

Last synced: 25 Jan 2026

https://github.com/airbus-seclab/c-compiler-security

Security-related flags and options for C compilers

c clang compiler flags gcc sanitizers security

Last synced: 26 Oct 2025

https://github.com/aquasecurity/cloudsec-icons

A collection of cloud security icons :cloud::lock:

cloud cloud-security hacktoberfest icons iconset security svg

Last synced: 13 Oct 2025

https://github.com/ContainerSolutions/externalsecret-operator

An operator to fetch secrets from cloud services and inject them in Kubernetes

aws azure cloud cloud-native gcp hacktoberfest kubernetes security

Last synced: 21 Apr 2025

https://github.com/openraven/magpie

A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat landscape such as cloud ransomware and supply chain attacks.

aws cloud cloudsecurity cspm gcp security security-audit security-scanner security-testing security-tools security-vulnerability

Last synced: 11 Jan 2026

https://github.com/ewimberley/AdvancedMemoryChallenges

Advanced buffer overflow and memory corruption security challenges

buffer-overflow cybersecurity memory-corruption memory-hacking security

Last synced: 15 Mar 2025

https://github.com/jekil/hardentheworld

Harden the world is a community driven project to develop hardening guidelines and checklists for common software and devices.

hacking hardening hardening-steps secure-by-default security security-audit security-hardening sysadmin sysadmin-tasks

Last synced: 08 Mar 2026

https://github.com/bosch-aisecurity-aishield/watchtower

AIShield Watchtower: Dive Deep into AI's Secrets! 🔍 Open-source tool by AIShield for AI model insights & vulnerability scans. Secure your AI supply chain today! ⚙️🛡️

adversarial-attacks aisec keras mlops mlsecops pytorch safetensors scikit-learn security security-automation security-tools supply-chain tensorflow vulnerability-scanners

Last synced: 18 Apr 2025

https://github.com/telekom-security/explo

Human and machine readable web vulnerability testing format

automation pentesting security web-security

Last synced: 06 Apr 2025

https://github.com/0xle0ne/wireguard-gui

A wireguard client GUI for Linux made with nextauri

linux security vpn vpn-client wireguard

Last synced: 11 Oct 2025

https://github.com/tls-inspector/tls-inspector

Easily view and inspect X.509 certificates on your iOS device.

gplv3 https ios-app security ssl ssl-certificates tls tls-inspector x509

Last synced: 12 Apr 2026

https://github.com/aozhimin/mosec-2017

:memo: The third MOSEC mobile security technology summit 第三届 MOSEC 移动安全技术峰会参会分享

ios jailbreak keen-lab mosec security summit

Last synced: 01 Apr 2026

https://github.com/paulveillard/cybersecurity

Welcome Cybersecurity's World. An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources in Cybersecurity.

computer-architecture computer-security cryptography cyber-physical-systems cybersecurity cybersecurity-awareness cybersecurity-blog cybersecurity-career-path cybersecurity-education cybersecurity-incidents defensive-security security security-audit security-automation security-hardening security-testing security-tools security-vulnerability

Last synced: 04 Apr 2025

https://github.com/backbone-hq/minibone

🔐 Singleplayer end-to-end encryption library for the web

cryptography e2ee encryption end-to-end-encryption security webcrypto

Last synced: 09 Apr 2025

https://github.com/dvsekhvalnov/jose2go

Golang (GO) implementation of Javascript Object Signing and Encryption specification

encryption federation jose json jwa jwe jws jwt jwt-auth jwt-authentication jwt-token oauth2 openid openidconnect security signature

Last synced: 14 May 2025

https://github.com/antongolub/yarn-audit-fix

The missing `yarn audit fix`

lockfile security vulnerability yarn

Last synced: 15 May 2025

https://github.com/madhuakula/wincmdfu

Windows one line commands that make life easier, shortcuts and command line fu.

cmd infosec pentesting powershell redte security windows

Last synced: 10 Mar 2026

https://github.com/yuawn/linux-kernel-exploitation

Linux kernel module implementation & exploitation (pwn) labs.

ctf kernel kernel-exploitation linux linux-kernel privilege-escalation pwn pwnable security

Last synced: 25 Jul 2025

https://github.com/1N3/PRISM-AP

An automated Wireless RogueAP MITM attack framework.

802-1x automated bypass framework hsts intercept kali karma linux mana mitm pentest pentesting security tool tools wireless

Last synced: 02 Jun 2026

https://github.com/chainreactors/malice-network

Next Generation C2 Framework

c2 security

Last synced: 10 Apr 2026

https://github.com/0x48piraj/jiraffe

One stop place for exploiting Jira instances in your proximity

exploitation infosec jira jira-instances pentesting python-library python3 redteam security security-tool

Last synced: 06 Apr 2025

https://github.com/micropyramid/django-mfa

Django-mfa (Multi Factor Authentication) is a simple package to add extra layer of security to your django web application. It gives web app a randomly changing password as an extra protection and supports u2f too

2fa django mfa python security u2f

Last synced: 04 Apr 2025

https://github.com/enjaku4/rabarber

Simple role-based authorization library for Ruby on Rails

authorization gem multitenancy rails rbac roles ruby ruby-on-rails security

Last synced: 08 Apr 2026

https://github.com/salesforce/cloud-guardrails

Rapidly apply hundreds of security controls in Azure

azure azure-security cloud security terraform

Last synced: 06 Apr 2025

https://github.com/forcesunseen/graphquail

Burp Suite extension that offers a toolkit for testing GraphQL endpoints.

burp extension graphql security suite testing

Last synced: 31 Mar 2025

https://github.com/brainfucksec/archtorify

Transparent proxy through Tor for Arch Linux OS

arch-linux aur aur-packages bash bash-script security tor tor-proxy torify transparent-proxy

Last synced: 20 Aug 2025

https://github.com/ryandamour/ssrfuzz

SSRFuzz is a tool to find Server Side Request Forgery vulnerabilities, with CRLF chaining capabilities

bugbounty security ssrf

Last synced: 20 Feb 2026

https://github.com/P0cL4bs/Nanobrok

Web Service write in Python for control and protect your android device remotely.

android control remote security

Last synced: 11 Jul 2025

https://github.com/offlinemark/poet

[unmaintained] Post-exploitation tool

beacon pentest post-exploitation python rat security

Last synced: 17 Mar 2025

https://github.com/spatie/laravel-littlegatekeeper

Protect pages from access with a universal username/password

laravel php security

Last synced: 21 Feb 2026

https://github.com/cveproject/automation-working-group

CVE Automation Working Group

automation cve security

Last synced: 28 Jan 2026

https://github.com/arguslab/Argus-SAF

Argus static analysis framework

android security static-analysis

Last synced: 12 Jul 2025

https://github.com/manuelberrueta/flowanalyzer

FlowAnalyzer is a tool to help in testing and analyzing OAuth 2.0 Flows, including OpenID Connect (OIDC).

appsec identity oauth oauth2 oidc openid openid-connect redteam security security-tools

Last synced: 23 Jun 2025

https://github.com/secaegis/secautoban

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、科来网络安全分析审计系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、奇安信防火墙

docker firewall hids sec security security-tools waf web-security

Last synced: 16 May 2025

https://github.com/jmcfarlane/notable

Notable - a simple note taking application

golang linux macos notes security

Last synced: 06 Apr 2025

https://github.com/csirtgadgets/bearded-avenger

CIF v3 -- the fastest way to consume threat intelligence

cif cifv3 security threat-hunting threat-sharing threatintel

Last synced: 11 Jul 2025

https://github.com/penthertz/rf-swift

🚀 A powerful multi-platform RF toolbox that deploys specialized radio tools in seconds on Linux, Windows, and macOS—supporting x86_64, ARM64 (Raspberry Pi, Apple Silicon), and RISC-V architectures without disrupting your primary OS. 📡✨

arm64 docker hardware linux pentesting rf risc-v sdr security security-audit security-tools telecommunications windows wireless wireless-security x86-64

Last synced: 29 Jan 2026

https://github.com/onehouwong/Cellular-Security-Papers

A collection of academic papers / Git repos / conference talks / frameworks / tools related to cellular security and privacy.

5g cellular lte o-ran paper privacy security

Last synced: 31 May 2026

https://github.com/RetireNet/dotnet-retire

Open source vulnerability scanner for .NET Core projects

aspnetcore audit dotnet-core dotnetcore runtime security

Last synced: 10 May 2025

https://github.com/francozappa/knob

Key Negotiation Of Bluetooth (KNOB) attacks on Bluetooth BR/EDR and BLE [CVE-2019-9506]

ble bluetooth encryption entropy knob knobattack lmp security wireless

Last synced: 02 Jan 2026

https://github.com/FabriBertani/Plugin.Maui.ScreenSecurity

Safeguard your .NET MAUI app effortlessly by preventing content exposure, screenshots, and recordings with ease.

android ios maui mobile net protection protector screen security shield

Last synced: 02 May 2025

https://github.com/boostsecurityio/smokedmeat

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

ci cli devops devsecops exploitation github-actions golang red-team security supply-chain supply-chain-security tui

Last synced: 30 Apr 2026

https://github.com/wavestone-cdt/dyode

A low-cost, DIY data diode for ICS

hardware ics ics-security modbus security

Last synced: 13 Aug 2025

https://github.com/privacyradius/gdpr-tracker

A crowdsourced directory tracking the compliance and security practices of cloud services and their subprocessors

audit certificates certification cloud cloud-service cloud-services compliance crowdsourcing gdpr gdpr-tracker legal privacy privacy-radius regtech security

Last synced: 11 Jul 2025

https://github.com/vaibhav-mattoo/bitchat-tui

🔒 Secure, anonymous, peer-to-peer (P2P) Bluetooth chat in your terminal. An off-grid, encrypted TUI messenger built with Rust.

anonymous bluetooth bluetooth-low-energy command-line cross-platform decentralized encrypted local-first messenger off-grid offline p2p privacy rust secure security terminal tui

Last synced: 19 Aug 2025

https://github.com/1n3/prism-ap

An automated Wireless RogueAP MITM attack framework.

802-1x automated bypass framework hsts intercept kali karma linux mana mitm pentest pentesting security tool tools wireless

Last synced: 22 Aug 2025

https://github.com/particl/particl-desktop

The GUI application for Particl Markeplace and PART coin wallet. A decentralized peer to peer marketplace –free, secure, private, untraceable.

angular angular-cli blockchain cryptocurrencies cryptocurrency d-commerce dapp decentralized e-comm e-commerce gui html5 marketplace p2p p2p-marketplace particl privacy private-market security

Last synced: 06 Apr 2025

https://github.com/ky0tofu/mirror-flowers

基于 AI 的代码安全审计工具,支持多种编程语言的代码分析,可以帮助开发者快速发现代码中的潜在安全漏洞。支持DeepSeek-R1,ChatGPT-4o等多种大模型。

ai ai-code-audit chatgpt code-audit cybersecurity deepseek mirror-flowers multilingual-support openai openai-api security security-analysis vulnerability-detection

Last synced: 07 Apr 2025

https://github.com/elastic/dorothy

Dorothy is a tool to test security monitoring and detection for Okta environments

blue-team cybersecurity infosec red-team security security-tools

Last synced: 06 Apr 2025

https://github.com/umair9747/genzai

The IoT security toolkit to help identify IoT related dashboards and scan them for default passwords and vulnerabilities.

cybersecurity golang hacking iot iot-security penetration-testing pentesting redteam security security-scanner security-tools

Last synced: 04 Apr 2025

https://github.com/mc2-project/opaque-sql

An encrypted data analytics platform

analytics enclave machine-learning privacy security spark spark-sql

Last synced: 17 Jan 2026

https://github.com/retirenet/dotnet-retire

Open source vulnerability scanner for .NET Core projects

aspnetcore audit dotnet-core dotnetcore runtime security

Last synced: 04 Apr 2025

https://github.com/microsoft/side-channel-fuzzer

Revizor - Hardware fuzzing for the age of speculation

fuzzing meltdown security side-channel spectre-vulnerability

Last synced: 20 Jan 2026

https://github.com/yonatangross/orchestkit

The Complete AI Development Toolkit for Claude Code — 103 skills, 36 agents, 172 hooks. Production-ready patterns for full-stack development.

agents ai-development claude-code claude-plugin fastapi langgraph llm mcp rag react security testing typescript

Last synced: 31 May 2026

https://github.com/microsoft/data-protection-mapping-project

Open Source Data Protection/Privacy Regulatory Mapping Project

ccpa data-protection gdpr iso27001 iso27002 iso27701 legaltech privacy security standards

Last synced: 04 Apr 2025

https://github.com/harvard-itsecurity/docker-misp

Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing

dockerhub information-security malware malware-analysis misp security threat-intelligence threat-sharing

Last synced: 18 Jan 2026

https://github.com/k8gege/powerladon

Ladon hacking Scanner for PowerShell, vulnerability / exploit / detection / MS17010/SmbGhost,Brute-Force SMB/IPC/WMI/NBT/SSH/FTP/MSSQL/MYSQL/ORACLE/VNC

exp exploit hacking ladon lanscanner netscan pentest pentest-tool pentesting-networks poc portscan security subdomain-scanner vulscan

Last synced: 17 Mar 2025

https://github.com/sec-report/secautoban

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、科来网络安全分析审计系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、奇安信防火墙

docker firewall hids sec security security-tools waf web-security

Last synced: 12 Apr 2025

https://github.com/kreuzwerker/awsu

Enhanced account switching for AWS, supports Yubikey as MFA source

aws golang hacktoberfest mfa security yubikey

Last synced: 04 Jan 2026

https://github.com/k8gege/PowerLadon

Ladon hacking Scanner for PowerShell, vulnerability / exploit / detection / MS17010/SmbGhost,Brute-Force SMB/IPC/WMI/NBT/SSH/FTP/MSSQL/MYSQL/ORACLE/VNC

exp exploit hacking ladon lanscanner netscan pentest pentest-tool pentesting-networks poc portscan security subdomain-scanner vulscan

Last synced: 11 Jul 2025

https://github.com/t94j0/AIRMASTER

Use ExpiredDomains.net and BlueCoat to find useful domains for red team.

engagements pentest-tool pentesting red-team security security-tools

Last synced: 03 Oct 2025

https://github.com/SecAegis/SecReport

ChatGPT加持的,多人在线协同信息安全报告编写平台。目前支持的报告类型:渗透测试报告,APP隐私合规报告。

ai chatgpt collaboration collaborations docker openai pentest privacy rce report retest sec security security-tools sql-injection vulnerabilities web-security xss

Last synced: 07 Sep 2025

https://github.com/raspbernetes/k8s-security-policies

This repository offers a comprehensive library of security policies designed to enhance the security of Kubernetes cluster configurations. The policies are developed in accordance with the CIS Kubernetes benchmark.

benchmark cis cis-kubernetes-benchmark conftest gatekeeper kubernetes kubernetes-clusters kubesec open-policy-agent raspbernetes rego-files rego-policy security violation

Last synced: 12 May 2025

https://github.com/vmware/secrets-manager

VMware Secrets Manager is a lightweight secrets manager to protect your sensitive data. It’s perfect for edge deployments where energy and footprint requirements are strict—See more: https://vsecm.com/

cloud-native edge kubernetes secret-management secrets-manager security spiffe spire zero-trust

Last synced: 05 Oct 2025

https://github.com/anders/pwgen

macOS password generator

objective-c password password-generator pwgen security

Last synced: 24 Feb 2026

https://github.com/t94j0/airmaster

Use ExpiredDomains.net and BlueCoat to find useful domains for red team.

engagements pentest-tool pentesting red-team security security-tools

Last synced: 21 Aug 2025