An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/tooonychen/authinbox

Auth Inbox 📬 is a self-hosted, open-source platform for receiving multiple email verification codes and real-time notifications, built using Cloudflare's free services. | Auth Inbox 📬 是一个自建的开源多邮箱验证码的接码平台,基于 Cloudflare 的免费服务。

2fa cloudflare cloudflare-email cloudflare-email-routing cloudflare-workers email mail multiple-emails open-source security verfication

Last synced: 05 Apr 2025

https://github.com/sweeticelolly/huorong_vulnerabilities

Huorong Internet Security vulnerabilities 火绒安全软件漏洞

antivirus bypass-antivirus bypass-av kill-antivirus security sysdiag vulnerability

Last synced: 10 Apr 2025

https://github.com/ossf/alpha-omega

Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.

open-source-security opensource security

Last synced: 28 Jan 2026

https://github.com/wiringbits/safer.chat

safer.chat is a web application that allows you to have groupal chats using end-to-end encryption, no addons, or applications needs to be installed

angular chat cryptocat end-to-end-encryption hacktoberfest play-framework public-key-cryptography scala security webcryptoapi

Last synced: 09 Oct 2025

https://github.com/turbot/steampipe-mod-aws-perimeter

Is your AWS perimeter secure? Use Powerpipe and Steampipe to check your AWS accounts for public resources, resources shared with untrusted accounts, insecure network configurations and more.

aws hacktoberfest network perimeter powerpipe powerpipe-mod security sql steampipe steampipe-mod

Last synced: 05 Apr 2025

https://github.com/Teebytes/TnT-Fuzzer

OpenAPI 2.0 (Swagger) fuzzer written in python. Basically TnT for your API.

fuzzer fuzzing json-api openapi pentesting python security swagger

Last synced: 10 May 2025

https://github.com/grantseltzer/karn

Simplifying Seccomp enforcement in containerized or non-containerized apps

container-security containers karn seccomp seccomp-filter security security-hardening security-tools

Last synced: 12 May 2025

https://github.com/triat/terraform-security-scan

Run a security scan on your terraform with the very nice https://github.com/aquasecurity/tfsec

actions aws azure ci compliance google-cloud-platform hacktoberfest scanner security static-analysis terraform tfsec

Last synced: 16 Jan 2026

https://github.com/nextcloud/twofactor_gateway

🔑 Second factor provider using an external messaging gateway (SMS, Telegram, Signal)

2fa php security sms two-factor

Last synced: 05 Apr 2025

https://github.com/psecio/jwt

A JWT (JSON Web Token) Encoder & Decoder

jwt php security security-tools

Last synced: 07 Apr 2025

https://github.com/bgenev/impulse-xdr

Fully automated host & network intrusion detection platform. Detects malware from behavioural patterns rather than signatures and enables deeper visibility than legacy tools.

cloud cybersecurity devops monitoring osquery security security-tools server-security siem suricata visibility vpc vpc-endpoints vps xdr

Last synced: 22 Jul 2025

https://github.com/ZenGuard-AI/fast-llm-security-guardrails

The fastest && easiest LLM security guardrails for AI Agents and applications.

adversarial-machine-learning llm-guard llm-guardrails llm-privacy llm-security prompt-security security

Last synced: 11 Sep 2025

https://github.com/commencis/secrets-vault-plugin

🛡️ Android Gradle plugin for enhanced secret management and protection. Keep app secrets secure and organized.

android gradle-plugin hide ndk obfuscate secret security

Last synced: 06 Apr 2025

https://github.com/cyberark/FuzzyAI

A powerful tool for automated LLM fuzzing. It is designed to help developers and security researchers identify and mitigate potential jailbreaks in their LLM APIs.

ai fuzzing jailbreak jailbreaking llm llms security

Last synced: 29 Sep 2025

https://github.com/kiprotect/kodex

A privacy and security engineering toolkit: Discover, understand, pseudonymize, anonymize, encrypt and securely share sensitive and personal data: Privacy and security as code.

anonymization anonymize ccpa compliance consent-management encryption gdpr privacy privacy-engineering privacy-enhancing-technologies privacy-protection privacyops pseudonymization pseudonymize security security-engineering securityops

Last synced: 16 Dec 2025

https://github.com/suzuki-shunsuke/ghalint

GitHub Actions linter

cli github-actions linter oss security

Last synced: 01 May 2026

https://github.com/nomi-sec/hacker-trends

Trends Website (URL) from Twitter hackers.

security

Last synced: 27 Jan 2026

https://github.com/wolffcatskyy/crowdsec-blocklist-import

Dockerized tool to import public threat feeds into CrowdSec - 28+ free blocklists, 60k+ IPs

blocklist crowdsec cybersecurity docker firewall ip-blocklist security threat-feeds threat-intelligence tor-exit-nodes

Last synced: 17 Feb 2026

https://github.com/mwolff44/pk-sbc

P-KISS-SBC - simple and stupid SIP/RTP SBC - AGPL v3 - Based on kamailio / RTP Engine

agplv3 kamailio kiss routing-engine rtp sbc security sip softswitch voip voip-application voip-telephony-providers

Last synced: 24 Jan 2026

https://github.com/lavamoat/snow

Use Snow to finally secure your web app's same origin realms!

iframe javascript realms security

Last synced: 20 Jan 2026

https://github.com/0x742/noia

[WIP] Simple mobile applications sandbox file browser tool. Powered with [frida.re](https://www.frida.re).

android android-security android-tools frida hacking-tools ios ios-security ios-tools reverse-engineering security

Last synced: 20 Apr 2025

https://github.com/null8626/decancer

A library that removes common unicode confusables/homoglyphs from strings.

confusables homoglyphs leetspeak moderation sanitizer security string unicode zalgo

Last synced: 15 May 2025

https://github.com/taylorwilsdon/reddacted

reddacted lets you analyze & sanitize your online footprint using LLMs, PII detection & sentiment analysis to identify anything that might reveal personal info you may not want correlated with your anonymous profile

privacy-protection privacy-tools reddact reddacted reddit reddit-api security security-auditing

Last synced: 18 Jan 2026

https://github.com/SweetIceLolly/Huorong_Vulnerabilities

Huorong Internet Security vulnerabilities 火绒安全软件漏洞

antivirus bypass-antivirus bypass-av kill-antivirus security sysdiag vulnerability

Last synced: 11 Jul 2025

https://github.com/valeriansaliou/node-fast-ratelimit

:umbrella: Fast and efficient in-memory rate-limit for Node, used to alleviate most common DOS attacks.

dos nodejs npm npm-package rate-limiter security

Last synced: 07 Apr 2025

https://github.com/thelicato/portswigger-labs

A collection of solutions for every PortSwigger Academy Lab (in progress)

academy burp labs portswigger security

Last synced: 18 Jan 2026

https://github.com/timescale/pgspot

Spot vulnerabilities in postgres SQL scripts

postgresql python security

Last synced: 07 May 2025

https://github.com/Sekhan/TheGreatWall

Prevent program and malware to bypass DNS filter by using DoH

blocklist doh hostsfile ipv4-list ipv6-list pihole security

Last synced: 14 Mar 2025

https://github.com/aws-samples/aws-control-tower-controls-terraform

This repository describes how to use AWS Control Tower controls, HashiCorp Terraform, and infrastructure as code (IaC) to implement and administer preventive, detective, and proactive security controls. A control (also known as a guardrail) is a high-level rule that provides ongoing governance for your overall AWS Control Tower environment.

aws-control-tower aws-organizations cloud-native compliance compliance-as-code governance identity infrastructure infrastructure-as-code management security

Last synced: 24 Jun 2026

https://amanpriyanshu.github.io/Awesome-AI-For-Security/

A curated list of tools, papers, and datasets for applying AI to cybersecurity tasks. This list primarily focuses on modern AI technologies like Large Language Models (LLMs), Agents, and Multi-Modal systems and their applications in security operations.

agent agents ai ai-for-security awesome awesome-list awesome-lists awesome-readme awesome-resources cyber-security cybersecurity cybersecurity-education llm llm-agent llm-agents llm-inference llms security security-automation security-tools

Last synced: 18 Jan 2026

https://github.com/probely/security_checklist

Web Application Security Checklist

checklist prevention security vulnerability web websecurity

Last synced: 02 May 2026

https://github.com/toulousain79/MySB

MySB (MySeedBox) is more than a simplified installation script of a multi-users Seedbox. There are many solutions to install a Seedbox, but we never talk about safety and regular operations. MySB could be renamed MySSB (MySecuredSeedBox).

blocklist dedicated-server dnscrypt-proxy fail2ban letsencrypt multi-user-seedbox nextcloud openvpn peerguardian plex-media-server rtorrent rutorrent rutorrent-plugin security seedbox seedbox-install-script ssl tautulli tracker

Last synced: 01 Aug 2025

https://github.com/sekhan/thegreatwall

Prevent program and malware to bypass DNS filter by using DoH

blocklist doh hostsfile ipv4-list ipv6-list pihole security

Last synced: 24 Oct 2025

https://github.com/lenis0012/LoginSecurity

Lightweight and secure user authentication for Bukkit Minecraft servers

authentication bukkit java login-system minecraft security

Last synced: 26 Mar 2025

https://github.com/nullarray/archivist

A ctypes powered python keylogger.

keylogger malware python security

Last synced: 13 Apr 2025

https://github.com/orsinium-archive/django-bruteforce-protection

Bruteforce protection for Django projects based on Redis. Simple, powerful, extendable.

bruteforce bruteforce-protection django login protection redis security

Last synced: 21 Mar 2025

https://github.com/sderosiaux/guidelines-to-create-a-strong-website

A list of all things to consider when making a website or webapp of quality.

a11y css javascript performance privacy security seo web

Last synced: 22 Apr 2025

https://github.com/bamlab/react-native-app-security

Easily implement usual security measures in React Native Expo apps. Made by BAM ❤️💙💛

expo react-native security ssl-pinning

Last synced: 26 Jun 2025

https://github.com/mc2-project/secure-xgboost

Secure collaborative training and inference for XGBoost.

collaborative-learning data-science enclave machine-learning privacy security xgboost

Last synced: 17 Jan 2026

https://github.com/hahwul/mzap

⚡️ Multiple target ZAP Scanning

bugbounty dast hacking security zaproxy zaproxy-automation

Last synced: 28 Feb 2026

https://github.com/pinkpixel-dev/keyper

🔐 A self-hosted credential manager with zero-knowledge encryption, multi-user support, and emergency recovery. Store API keys, passwords, and secrets securely with your own Supabase database. Features AES-256-GCM encryption, Argon2 key derivation, PWA support, and professional-grade security architecture.

aes aes-encryption api-keys argon2 credential-manager credentials encryption end-to-end-encryption multi-user password-manager progressive-web-app pwa react secret-management security self-hosted supabase typescript vault zero-knowledge

Last synced: 27 May 2026

https://github.com/crowdstrike/falcon-helm

Helm Charts for running CrowdStrike Falcon with Kubernetes

chart container helm k8s kubernetes security sensor

Last synced: 10 Mar 2026

https://github.com/m3rcurylake/nyxelf

Nyxelf is a highly effective tool tailored for analyzing malicious Linux ELF binaries, offering comprehensive support for both static and dynamic analysis techniques.

antivirus binary binary-analysis linux-sandbox malware-analysis malware-research reverse-engineering sandbox security

Last synced: 07 Apr 2025

https://github.com/guardianproject/tor-browser

UPDATE: Orfox is being replaced by Tor Browser for Android. All future work and comments will be handled by Tor Project.

anonymity browser firefox mozilla privacy security tor

Last synced: 11 May 2025

https://github.com/spectralops/senv

Friends don't let friends leak secrets on their terminal window :see_no_evil:

environment-variables golang security security-tools

Last synced: 23 Jul 2025

https://github.com/grapheneos/platform_bionic

Hardened Android standard C library. Some of the past hardening has not yet been ported from Marshmallow, Nougat and Oreo to this Android Pie repository. Most is available via archived tags in https://github.com/AndroidHardeningArchive/platform_bionic (check both the most recent Oreo and Nougat tags).

android grapheneos libc security

Last synced: 04 Apr 2025

https://github.com/mablanco/docker-osmedeus

Docker image for Osmedeus, a fully automated offensive security tool for reconnaissance and vulnerability scanning

docker pentesting security

Last synced: 02 Jun 2026

https://github.com/syss-research/dns-mitm

A minimal DNS service that can provide spoofed replies

dns mitm security tools

Last synced: 10 Apr 2025

https://github.com/safellama/plexiglass

A toolkit for detecting and protecting against vulnerabilities in Large Language Models (LLMs).

adversarial-attacks adversarial-machine-learning cybersecurity deep-learning deep-neural-networks machine-learning security

Last synced: 18 Apr 2025

https://github.com/shtirlic/yubikeylockd

Simple daemon for locking and unlocking macOS with Yubikey

cryptography daemon homebrew homebrew-formula lock macos security unlock unlock-os yubikey

Last synced: 10 Mar 2026

https://github.com/jeanlouisferey/aws-securitygroup-grapher

This ansible role gets information from an AWS VPC and generate a graphical representation of security groups

ansible aws graph group role security security-audit security-tools vpc

Last synced: 09 May 2025

https://github.com/mirage/awa-ssh

Purely functional SSH library in ocaml.

awa-ssh cryptography mirage mirageos ocaml pure security ssh ssh-library

Last synced: 05 Apr 2025

https://github.com/OWASP/raider

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

authentication authorization finite-state-machine fsm hy hylang lisp owasp python raiderauth security

Last synced: 08 May 2025

https://github.com/numirias/firefed

🕵️ A tool for Firefox profile analysis, data extraction, forensics and hardening

firefox forensics mozilla-firefox privacy python security

Last synced: 18 Sep 2025

https://github.com/msfidelis/kill-router-

Ferramenta para quebrar senhas administrativas de roteadores Wireless, routers, switches e outras plataformas de gestão de serviços de rede autenticados.

hacking pentesting router security shodan shodan-api

Last synced: 17 Jul 2025

https://github.com/netflix-skunkworks/cloudy-kraken

AWS Red Team Orchestration Framework

security

Last synced: 17 Mar 2026

https://github.com/xbow-engineering/validation-benchmarks

XBOW Validation Benchmarks

ai benchmarks security

Last synced: 16 Feb 2026

https://github.com/carlalexander/passwords-evolved

WordPress password authentication for the modern era

authentication bcrypt password-enforcement security wordpress

Last synced: 05 Apr 2025

https://github.com/ucan-wg/ts-ucan

Auth tokens for a distributed, user-controlled world

authorization jwt ocap security spki

Last synced: 24 Dec 2025

https://github.com/machine1337/zipcrack

An Advanced Tool to Crack Any Password Protected ZIP File With different Techniques. A very Beginner Friendly Script For Newbies.

cracking cracking-hashes hacking hashcracking johncrack machine1337 passwordcracking security zipcracker zipcracking

Last synced: 25 Apr 2025

https://github.com/clj-holmes/clj-holmes

A CLI SAST (Static application security testing) tool which was built with the intent of finding vulnerable Clojure code via rules that use a simple pattern language.

clojure sast security

Last synced: 19 Mar 2026

https://github.com/krsh/seer

Seer is a tool that recognizes the architecture of a binary file

binary embedded firmware python security

Last synced: 24 Apr 2025

https://github.com/jenkinsci/github-oauth-plugin

Jenkins authentication plugin using GitHub OAuth as the source.

github github-oauth jenkins oauth security

Last synced: 16 May 2025

https://github.com/timokoessler/2FAGuard

A modern and secure Windows app for managing your 2FA authentication codes.

2fa authenticator collaborate github mfa portable security totp windows

Last synced: 19 Apr 2025

https://github.com/F5-Labs/cryptonice

CryptoNice is both a command line tool and library which provides the ability to scan and report on the configuration of SSL/TLS for your internet or internal facing web services. Built using the sslyze API and ssl, http-client and dns libraries, cryptonice collects data on a given domain and performs a series of tests to check TLS configuration and supporting protocols such as HTTP2 and DNS.

appsec crypto dns hsts http2 https https-certificate report security security-tools ssl ssl-certificates tls tls-certificate tls-scan

Last synced: 07 Apr 2025

https://github.com/CycodeLabs/cimon-action

Runtime Security Solution for your CI/CD Pipeline

cicd ebpf github-actions hardening linux security security-hardening supply-chain-security

Last synced: 11 May 2025

https://github.com/Wafris/wafris-rb

Wafris Client for Rails and Rack applications

firewall rails security waf

Last synced: 16 Jul 2025

https://github.com/willfindlay/bpfbox

🐝 BPFBox 📦 Exploring process confinement in eBPF

bcc ebpf linux linux-kernel runtime-security sandbox security

Last synced: 09 Jul 2025

https://github.com/siemens/fluffi

FLUFFI (Fully Localized Utility For Fuzzing Instantaneously) - A distributed evolutionary binary fuzzer for pentesters

fuzzing pentesting security

Last synced: 09 Oct 2025

https://github.com/butteff/Ubuntu-Telemetry-Free-Privacy-Secure

This Bash script just removes a pre-installed Telemetry, a pre-installed software and libs with some potentional or high risk. Script removes them to make your experience better and more secure. Also, the script installs an additional software for the protection. You will find more advices in Readme file about "what you can do more".

bash linux privacy protection security telemetry ubuntu

Last synced: 10 Apr 2025

https://github.com/inmcm/simon_speck_ciphers

Implementations of the Simon and Speck Block Ciphers

block-ciphers c cipher-s cryptography decryption encryption fpga nsa python security vhdl

Last synced: 28 Jun 2025

https://github.com/digitallyrefined/docker-wireguard-tunnel

Connect two or more Docker servers together sharing container ports between them via a WireGuard tunnel

docker-tunnel encription security tunnel tunnel-client tunnel-server wireguard

Last synced: 14 Oct 2025

https://github.com/google/wasefire

Secure firmware framework focusing on developer experience

embedded firmware framework iot rust security wasm

Last synced: 16 May 2025