An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/ryu22e/django_cve_2019_19844_poc

PoC for CVE-2019-19844(https://www.djangoproject.com/weblog/2019/dec/18/security-releases/)

cve-2019-19844 django python security vulnerability

Last synced: 09 Oct 2025

https://github.com/digitallyrefined/docker-wireguard-tunnel

Connect two or more Docker servers together sharing container ports between them via a WireGuard tunnel

docker-tunnel encription security tunnel tunnel-client tunnel-server wireguard

Last synced: 14 Oct 2025

https://github.com/tldrrun/tools.tldr.run

A curated list of security tools for Hackers & Builders!

automation cloud cloudnative hacking infosec learning security tools

Last synced: 30 Jan 2026

https://github.com/peterdavehello/threat-hostlist

Comprehensive domain blocklists for 🚨 threats (🕷malware, 🎣phishing, 🕵️spyware, 🤖botnets). Ideal for DNS-based filtering tools like Pi-Hole, AdGuard Home, Blocky.

adguard-blocklist blocklist botnets cybersecurity dns domain hacktoberfest hosts infosec malware osint phishing ransomware security spyware threat-intelligence threats

Last synced: 27 Jan 2026

https://github.com/suse/doc-sle

Official SUSE Linux Enterprise Documentation [Everyone, please use feature/ branches, create PRs and ensure CI runs successfully rather than just pushing to main!]

admin deployment documentation opensuse security sle-micro sled sles storage suse tuning virtualization

Last synced: 25 Jan 2026

https://github.com/syss-research/clone-cert

Simple shell script to "clone" X.509 certificates

security tool x509

Last synced: 10 Apr 2025

https://github.com/GJDuck/EffectiveSan

Runtime type and bounds-error checking for C/C++

bounds-checking llvm low-fat-pointers memory-safety sanitizer security type-checking

Last synced: 28 Sep 2025

https://github.com/GoogleCloudPlatform/gke-network-policy-demo

This guide demonstrates how to improve the security of your Kubernetes Engine by applying fine-grained restrictions to network communication. You will provision a simple HTTP server and two client pods in a Kubernetes Engine cluster, then use a Network Policy restrict connections from client pods.

gke gke-helmsman kubernetes kubernetes-engine networking security

Last synced: 04 Apr 2025

https://github.com/foulest/osprey

Browser extension that protects you from malicious websites.

browser-extension chrome chrome-extension css firefox javascript security security-tools

Last synced: 12 Aug 2025

https://github.com/nowsecure/cybertruckchallenge19

Android security workshop material taught during the CyberTruck Challenge 2019 (Detroit USA).

android car mobile security

Last synced: 30 Jul 2025

https://github.com/luckypipewrench/pipelock

Security harness for AI agents — egress proxy with DLP scanning, SSRF protection, MCP response scanning, and workspace integrity monitoring

ai-agents ai-security dlp egress-proxy fetch-proxy golang integrity-monitoring llm-security mcp security ssrf-protection

Last synced: 05 Apr 2026

https://github.com/trendmicro/ais

Toolkit for research purposes in AIS. See the website for the paper.

ais aisafety rf safety sdr security

Last synced: 23 Oct 2025

https://github.com/primaryobjects/vpndemon

Monitor a VPN connection on Linux and kill a process upon disconnect

bash disconnect dns-leak linux monitoring networkmanager prevent-dns-leaks security shell vpn vpn-connections

Last synced: 22 Jun 2025

https://github.com/tenable/KaiMonkey

KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.

aws security terraform

Last synced: 10 May 2025

https://github.com/madhuakula/security-automation-with-ansible-2

Ansible Playbooks for Security Automation with Ansible2 book

ansible automation book devops devsecops secdevops security

Last synced: 10 Apr 2025

https://github.com/googlecloudplatform/gke-network-policy-demo

This guide demonstrates how to improve the security of your Kubernetes Engine by applying fine-grained restrictions to network communication. You will provision a simple HTTP server and two client pods in a Kubernetes Engine cluster, then use a Network Policy restrict connections from client pods.

gke gke-helmsman kubernetes kubernetes-engine networking security

Last synced: 20 Oct 2025

https://github.com/secdec/attack-surface-detector-burp

The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters

dast pentesting security vulnerability

Last synced: 19 Apr 2025

https://github.com/snawoot/steady-tun

Secure TLS tunnel with pool of prepared upstream connections

network-wrapper pool-server pooling pooling-utility security ssl ssl-pool tcp-proxy tls tls-proxy tls-tunnel

Last synced: 21 Jun 2025

https://github.com/cert-lv/exchange_webshell_detection

Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065)

blueteam exchange-server infosec iocs security security-audit

Last synced: 12 Jul 2025

https://github.com/valpackett/secstr

Secure string library for Rust | now on https://codeberg.org/valpackett/secstr

rust security

Last synced: 30 Apr 2025

https://github.com/tenable/kaimonkey

KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.

aws security terraform

Last synced: 06 Apr 2025

https://github.com/itbackyard/CryptoNet

CryptoNet is simple, fast and a lightweight asymmetric and symmetric encryption library.

aes asymmetric-encryption cryptography csharp decryption encryption rsa rsa-cryptography security symmetric-encryption x509

Last synced: 14 Mar 2025

https://github.com/cloudposse/terraform-aws-sso

Terraform module to configure AWS Single Sign-On (SSO)

security terraform terraform-modules

Last synced: 05 Mar 2026

https://github.com/diekmann/iptables_semantics

Verified iptables Firewall Ruleset Analysis

access-control firewall haskell iptables ipv4 ipv6 isabelle security

Last synced: 05 Sep 2025

https://github.com/igorhrcek/wp-cli-secure-command

Secure package for WP CLI, built to provide an easier way of securing your WordPress installation

apache hardening nginx security wordpress wp-cli wp-cli-package

Last synced: 01 Feb 2026

https://github.com/cycodehq/cycode-cli

Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning

code cycode sast sca secrets secure security

Last synced: 04 Feb 2026

https://github.com/spr-networks/super

📡 SPR: Open Source, secure, user friendly and fast wifi routers for your home. One wifi password per device. Ad Blocking & Privacy Blocklists. Policy Based Network Access

adblock alerting coredns golang homelab nftables router security security-tools self-hosted vpn wifi wifi-security wireguard

Last synced: 04 May 2026

https://github.com/odino/wasec

Examples of security features (or mishaps) on web applications -- these are mostly examples and tutorials from the WASEC book.

book clickjacking csp security wasec websecurity xss

Last synced: 16 Mar 2025

https://github.com/Kitura/BlueSSLService

SSL/TLS Add-in for BlueSocket using Secure Transport and OpenSSL

linux macos networking security socket swift

Last synced: 25 Mar 2025

https://github.com/vitalk/ansible-secure-ssh

The ansible playbook to improve the security of your SSH

ansible security sensible-defaults ssh

Last synced: 16 Mar 2025

https://github.com/htrgouvea/spellbook

Framework for rapid development of offensive security tools

bugbounty ctf exploit framework offensive-security pentest perl security security-tools

Last synced: 03 Sep 2025

https://github.com/c2fmzq/tlsproxy

TLSPROXY is a TLS termination proxy that provides automatic TLS encryption for various network services. It supports SSO, client authentication, and can act as a web server or reverse proxy.

ech golang http3 lets-encrypt mtls oidc passkey passkeys pki quic reverse-proxy security self-hosted sso tls-proxy tlspassthrough tpm

Last synced: 11 Feb 2026

https://github.com/thehlopster/hfuzz

Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templates, web-scanners, seclist, bo0m, and more.

bugbounty fuzz fuzzing hacking pentesting security web-fuzzing wordlist

Last synced: 21 Apr 2025

https://github.com/Snowflake-Labs/sansshell

A non-interactive daemon for host management

administration automation go reliability security unshelled

Last synced: 12 May 2025

https://github.com/zeroknots/slotmachine

detect hazardous storage writes in Solidity contracts

evm security solidity yul

Last synced: 15 Jun 2025

https://github.com/remvze/pswd

🔑 Simple secure password generator.

password password-generator privacy privacy-tools security security-tools

Last synced: 11 May 2025

https://github.com/dreadnode/airtbench-code

Code Repository for: AIRTBench: Measuring Autonomous AI Red Teaming Capabilities in Language Models

agents ai ai-agents artificial-intelligence benchmark benchmark-datasets benchmarking ctf cyber-evals cybersecurity evaluations hacking llm offensive-security research security

Last synced: 30 Apr 2026

https://github.com/rdohms/DMS-Filter

Library that offers Input Filtering based on Annotations for use with Objects. Check out 2.dev for 2.0 pre-release.

annotations filtering hacktoberfest security

Last synced: 16 Nov 2025

https://github.com/opencomputeproject/security

Security Project

security

Last synced: 16 Feb 2026

https://github.com/lirantal/essential-nodejs-security-book

Documentation for Essential Node.js Security

appsec nodejs owasp security

Last synced: 10 Jul 2025

https://github.com/wkrzywiec/keycloak-security-example

Sandbox project to play around with keyclaok and integrating it with Spring Boot and Angular apps (using OAuth 2.0 protocol)

angular java jwt keycloak learning learning-by-doing oauth2 security spring-boot

Last synced: 06 Mar 2026

https://github.com/web3batman/multi-chain-casino

Completed Casino(Crashr, Coinflip, Mines, BlackJack, etc) supported multi-chain(eth, sol, base, bitcoin, inj)

bitcoin casino-games encryption ethereum injective-protocol security solana

Last synced: 18 Oct 2025

https://github.com/bkbilly/AlarmPI

🚨 Home Security Intrusion Detection for Raspberry PI or any other linux OS

alarm android-application diy hikvision home-assistant ifttt-maker mqtt python raspberry-pi restful-api security voip zigbee

Last synced: 27 Jul 2025

https://github.com/jcsec-security/CosmWasm-audit-roadmap

Roadmap to get up to speed with CosmWasm smart contract audits and security vulnerabilities

audit blockchain bug bugbounty contract cosmos cosmossdk cosmwasm dapp defi hacking roadmap rust security smart smartcontract vulnerabilities

Last synced: 27 Aug 2025

https://github.com/aleluff/uktools

Upgrade latest Linux kernel automatically for Ubuntu and derivatives 🐧

bodhi-linux drivers elementary-os kernel linux linux-ck linux-kernel linux-mint purge security ubuntu update zorin-os

Last synced: 03 Apr 2025

https://github.com/lucas-c/pre-commit-hooks-safety

A pre-commit hook to check your Python dependencies against safety-db

git-hooks pre-commit python safety-db security

Last synced: 05 Apr 2025

https://github.com/GoogleCloudPlatform/gke-security-scenarios-demo

This project demonstrates a series of best practices for improving the security of containerized applications deployed to Kubernetes Engine. You will deploy multiple instances of the same container image with a variety of security settings to illustrate the use of RBAC, security contexts, and AppArmor policies.

containers gke gke-helmsman google-cloud-platform kubernetes kubernetes-engine security

Last synced: 30 Apr 2025

https://github.com/rdohms/dms-filter

Library that offers Input Filtering based on Annotations for use with Objects. Check out 2.dev for 2.0 pre-release.

annotations filtering hacktoberfest security

Last synced: 09 Apr 2025

https://github.com/justinmayer/kagi

WebAuthn security keys and TOTP multi-factor authentication for Django

2fa authentication django multi-factor-authentication security totp u2f webauthn

Last synced: 09 Apr 2025

https://github.com/lk-geimfari/secrets.clj

A library designed to generate cryptographically strong random numbers suitable for managing data such as passwords, account authentication, security tokens, and related secrets.

authentication choices clj clojure cryptography drng jvm password prng random rng secrets secure security timestamp tokens uuid xkcd

Last synced: 06 May 2025

https://github.com/Turing-Space/Honeypots-on-Blockchain

This repo collects almost all the smart contract honeypots that you could find in the first three pages of Google search.

blockchain ethereum hack honeypots security smart-contracts

Last synced: 12 May 2025

https://github.com/interlynk-io/sbomasm

sbomasm: The Complete SBOM Management Toolkit

cyclonedx devsecops go golang gomodule oss sbom sbom-generator sbom-tool security spdx

Last synced: 12 Jan 2026

https://github.com/tegal1337/shelly

Simple Backdoor Manager with Python (based on weevely)

python python-backdoor python3 security shell shelly

Last synced: 06 Apr 2025

https://github.com/googlecloudplatform/gke-security-scenarios-demo

This project demonstrates a series of best practices for improving the security of containerized applications deployed to Kubernetes Engine. You will deploy multiple instances of the same container image with a variety of security settings to illustrate the use of RBAC, security contexts, and AppArmor policies.

containers gke gke-helmsman google-cloud-platform kubernetes kubernetes-engine security

Last synced: 25 Oct 2025

https://github.com/judecoin/judecoin

Website of the judecoin Ecosystem project

blockchain cryptonote judecoin privacy security

Last synced: 04 Jun 2026

https://github.com/nicohood/gpgit

A shell script that automates the process of signing Git sources via GPG

git gpg security signature

Last synced: 09 Oct 2025

https://github.com/k8gege/porttran

PortTran (.NET端口转发工具,支持任意权限)

hacking lcx pentest-tool portforward porttran security tunnel

Last synced: 23 Aug 2025

https://github.com/dionysio/haveibeenpwned_lastpass

Check if your lastpass passwords have been pwned by someone

haveibeenpwned lastpass password-manager python security

Last synced: 09 Jul 2025

https://github.com/banxian/edureviver

J-Link v10/v11/v12 USB exploit utility

embedded-systems security usb

Last synced: 06 Apr 2025

https://github.com/GrapheneOS/platform_bionic

Hardened Android standard C library. Some of the past hardening has not yet been ported from Marshmallow, Nougat and Oreo to this Android Pie repository. Most is available via archived tags in https://github.com/AndroidHardeningArchive/platform_bionic (check both the most recent Oreo and Nougat tags).

android grapheneos libc security

Last synced: 08 May 2025

https://github.com/Netflix-Skunkworks/historical

A serverless, event-driven AWS configuration collection service with configuration versioning.

aws cloudtrail dynamodb events lambda python s3 security securitygroups serverless

Last synced: 16 May 2025

https://github.com/BugBountyResources/targets

A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bulk operations.

bugbounty cybersecurity information infosec recon reconnaissance security security-tools

Last synced: 11 Jul 2025

https://github.com/cr0hn/dockerfile-security

Static security checker for Dockerfiles

devops devsecops docker security static-analyzer

Last synced: 20 Aug 2025

https://github.com/rewindio/aws-security-hub-CIS-metrics

Metrics and alarms for AWS security hub for the CIS standard

alarm aws cis-benchmark cloudformation cloudformation-templates security

Last synced: 16 May 2025

https://github.com/rootup/smuggleshield

Protection against HTML smuggling attempts.

blueteam htmlsmuggling purpleteam redteam security

Last synced: 07 Apr 2025

https://github.com/leobeosab/sharingan

Offensive Security recon tool

dns go nmap recon security

Last synced: 16 Jan 2026

https://github.com/doyensec/ajpfuzzer

A command-line fuzzer for the Apache JServ Protocol (ajp13)

ajp ajp13 fuzzer security

Last synced: 02 Jul 2025

https://github.com/samogod/bugradar

Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.

automation bounty bug bug-bounty bugbounty bugbounty-tool bugcrowd hackerone osint recon recontool security security-automation security-tools

Last synced: 11 Jul 2025

https://github.com/initstring/lyricpass

Password wordlist generator using song lyrics for targeted bruteforce audits / attacks. Useful for penetration testing or security research.

infosec kali-linux password-generator penetration-testing security

Last synced: 25 Mar 2025

https://gitlab.com/expliot_framework/expliot

EXPLIoT - Internet of Things Security Testing and Exploitation framework

Exploitatio Internet of Things hacking iot security testing

Last synced: 01 Apr 2025

https://github.com/0x48piraj/incarcero

Incarcero is a tool that creates Virtual Machines (VMs) preconfigured with malware analysis tools and security settings tailored for malware analysis without any user interaction.

malware malware-analysis malware-detection malware-research malware-samples research security

Last synced: 25 Aug 2025

https://github.com/falcosecurity/event-generator

Generate a variety of suspect actions that are detected by Falco rulesets

go kubernetes-auditing security security-testing syscall

Last synced: 05 Apr 2025

https://github.com/leesoh/yams

A collection of Ansible roles for automating infosec builds.

ansible penetration-testing security security-automation

Last synced: 09 May 2025

https://github.com/nowsecure/dirtycow

radare2 IO plugin for Linux and Android. Modifies files owned by other users via dirtycow Copy-On-Write cache vulnerability

android cve dirtycow exploit security

Last synced: 09 Apr 2025

https://github.com/hexa-org/policy-orchestrator

Hexa Policy Orchestrator enables you to manage all of your access policies consistently across software providers.

cloud-native policy-as-code security

Last synced: 30 Apr 2025

https://github.com/WinMin/Protocol-Vul

Some Vulnerability in the some protocol are collected.

protocol security vulnerabilities

Last synced: 11 Jul 2025

https://github.com/oleiade/motus

A dead simple password generator

cli password-generator rust security

Last synced: 12 May 2025

https://github.com/EdOverflow/hacks

Some random scripts. Just trying to be like the cool kids.

security

Last synced: 06 Apr 2025

https://github.com/edoverflow/hacks

Some random scripts. Just trying to be like the cool kids.

security

Last synced: 23 Apr 2025

https://github.com/mitre/inspec_tools

A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results and data

checklist cis compliance converter disa disa-checklist inspec json mitre-corporation mitre-inspec security stig xccdf

Last synced: 20 Aug 2025

https://github.com/Foxboron/age-plugin-tpm

:key: TPM 2.0 plugin for age

age go-tpm golang security tpm tpm2

Last synced: 07 May 2025

https://github.com/poshsecurity/posh-syslog

Send SYSLOG messages from PowerShell

powershell powershell-gallery security syslog syslog-messages

Last synced: 10 Aug 2025

https://github.com/jordanpotti/offensiveclouddistribution

Leverage the ability of Terraform and AWS or GCP to distribute large security scans across numerous cloud instances.

bugbounty recon redteam scanning security

Last synced: 05 Oct 2025