An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/SDA-SE/cluster-image-scanner

Discover vulnerabilities and container image misconfiguration in production environments.

image kubernetes scanning security security-tools

Last synced: 12 Jul 2025

https://github.com/eventonehq/npm-audit-html

🔒 Generate a HTML report for NPM Audit

hacktoberfest html npm npm-audit reporter security

Last synced: 10 Apr 2025

https://github.com/paulveillard/cybersecurity-infosec

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Information Security in Cybersecurity.

information-security information-security-management information-security-policies information-technology infosec infrastructure it it-security security security-scan security-tools

Last synced: 10 Apr 2025

https://github.com/user1342/Oversight

A Completely Modular LLM Reverse Engineering, Red Teaming, and Vulnerability Research Framework.

ai artificial-intelligence large-language-models llm machine-learning ml red-teaming security vulnerability-scanners

Last synced: 22 Jan 2026

https://github.com/prbinu/touch2sudo

Two-factor authentication using Mac Touch ID for sudo over SSH

authentication biometric fingerprint-authentication macosx pam security ssh ssh-agent-forwarding sudo touch2sudo touchid

Last synced: 29 Jan 2026

https://github.com/nativescript-community/https

Secure HTTP client with SSL pinning for Nativescript - iOS/Android

api client http https nativescript security ssl

Last synced: 02 Apr 2026

https://github.com/gpestana/p2psec

research on privacy and security in p2p and decentralised systems

networking p2p privacy research security

Last synced: 16 Feb 2026

https://github.com/kubescape/lens-extension

A Lens extension for viewing Kubescape security information

kubernetes kubescape lens security

Last synced: 07 Apr 2025

https://github.com/hhhparty/security

About cyber security, data scrapy , aisec analysis, vulnerability analysis, enterprise security, and so on.

lectures security

Last synced: 28 Sep 2025

https://github.com/theodesp/stable-systems-checklist

An opinionated list of attributes and policies that need to be met in order to establish a stable software system.

architecture continuous-delivery continuous-integration fault-tolerance reliability-engineering security

Last synced: 07 Jan 2026

https://github.com/reconmap/web-client

Reconmap's web client written in React. Manage all your pentest projects from a single place.

chakra-ui frontend hacktoberfest infosec pentesting react reactjs security typescript

Last synced: 08 Oct 2025

https://github.com/antagon/TCHunt-ng

Reveal encrypted files stored on a filesystem.

cryptography encryption forensics security truecrypt

Last synced: 12 May 2025

https://github.com/appvia/psp-migration

Recreation of common Pod Security Policy configuration in other common Kubernetes policy engines

gatekeeper hacktoberfest k8s kubernetes kubernetes-security kubewarden kyverno opa pod-security-policy podsecuritypolicies podsecuritypolicy policy-as-code psp security yaml

Last synced: 06 Jun 2026

https://github.com/r1b/cve-2017-13089

PoC for wget v1.19.1

cve-2017-13089 docker security wget

Last synced: 08 Apr 2025

https://github.com/qeeqbox/woodpecker

Custom security distro for remote penetration testing

linux pentest security security-tools tor ubuntu vpn

Last synced: 13 Apr 2025

https://github.com/drego85/htpw

htpw is a project to increase the security of your WordPress!

apache htaccess security wordpress

Last synced: 21 Aug 2025

https://github.com/dev-sec/postgres-baseline

DevSec PostgreSQL Baseline - InSpec Profile

audit baseline devsec hardening inspec postgresql security

Last synced: 04 Jul 2025

https://github.com/melandlabs/openloomi

Openloomi is your open-source proactive AI Mates that remembers all work details.

agent ai claw context-engineering gmail graph harness-engineering llm llm-model mcp memory message promt-engineering rag security skills slack telegram whatsapp

Last synced: 29 May 2026

https://github.com/s4u/pgpverify-maven-plugin

Verify Open PGP / GPG signatures plugin

gpg hacktoberfest java maven-plugin pgp security verify

Last synced: 05 Sep 2025

https://github.com/ochronasec/ochrona-cli

A command line tool for detecting vulnerabilities in Python dependencies and doing safe package installs

dependency-analysis developer-tools devsecops pip pipfile python requirements security security-tools supply-chain vulnerabilities vulnerability-scanners

Last synced: 12 Jul 2025

https://github.com/anonrig/awacs

Next-gen mobile first analytics server (think Mixpanel, Google Analytics) with built-in encryption supporting HTTP2 and gRPC. Node.js, headless, API-only, horizontally scaleable.

grpc http2 javascript microservice privacy security

Last synced: 15 Apr 2025

https://github.com/deniskore/nand_nor

C++ Compile time NAND/NOR obfuscation

compile-time emulation nand nor obfuscation security

Last synced: 23 Apr 2025

https://github.com/amoghbl1/tor-browser

Orfox - A Tor Browser for Android

anonymity browser fennec firefox mozilla privacy security tor

Last synced: 10 Apr 2025

https://github.com/hydrabus/rhme-2016

The RHme2 (Riscure Hack me 2) is a low level hardware CTF challenge that comes in the form of an Arduino Nano board. The new edition provides a completely different set of new challenges to test your skills in side channel, fault injection, cryptoanalysis and software exploitation attacks.

challenge crypto fault-injection hardware-hacking hydrabus-board reverse security side-channel

Last synced: 18 Oct 2025

https://github.com/twofas/2fas-pass-ios

Source code for 2FAS Pass iOS app

ios password-manager security

Last synced: 21 Jan 2026

https://github.com/davidmatousek/tachi

Automated threat modeling toolkit — STRIDE + AI-specific threats in one command

agentic-security ai-security attack-trees claude-code cybersecurity devsecops llm-security sarif security stride threat-modeling

Last synced: 02 May 2026

https://github.com/codingchili/kibana-mithril

Kibana nodejs/hapi plugin adds support for LDAP and 2-factor OTP authentication to dashboards.

2-factor javascript kibana kibana-plugin ldap nodejs otp plugin security

Last synced: 17 Mar 2025

https://github.com/tpm2-software/tpm2-pytss

Python bindings for TSS

security tpm2

Last synced: 08 Apr 2025

https://github.com/cr4sh/secretnet_expl

LPE exploits for Secret Net and Secret Net Studio

0day crapware driver exploit fakeav idiots kernel lpe russian-imbiciles security vulnerability windows

Last synced: 09 Apr 2025

https://github.com/htrgouvea/zarn

A lightweight static security analysis tool for modern Perl Apps

sast security static-analysis static-code-analysis

Last synced: 14 Oct 2025

https://github.com/zeek/zeek-docs

Documentation for Zeek

bro dfir network-monitoring nsm pcap security zeek

Last synced: 13 Jun 2025

https://github.com/anchore/anchore-charts

Helm charts for Anchore tools and services

helm helm-charts kubernetes security security-vulnerability-assessment

Last synced: 01 Apr 2026

https://github.com/gamemann/the-dpdk-examples

Program examples utilizing the DPDK. The DPDK is a kernel-bypass network library that allows for very fast network packet processing. This is great for (D)DoS mitigation and low-latency packet inspection, manipulation, and forwarding.

cyber cyber-security cybersecurity data-plane dpdk dpdk-code dpdk-examples drop fast firewall intel low-level networking packet processing security stats udp

Last synced: 28 Aug 2025

https://github.com/parsiya/go-security

My Go security projects

go golang security security-tools

Last synced: 11 Apr 2025

https://github.com/dev-sec/chef-nginx-hardening

This chef cookbook provides secure nginx configurations.

chef chef-cookbook devops hardening nginx security

Last synced: 04 Jul 2025

https://github.com/DCSO/fever

fast, extensible, versatile event router for Suricata's EVE-JSON format

bloom-filter eve golang intrusion-detection json monitoring netsec pdns security suricata

Last synced: 01 Apr 2025

https://github.com/google/picatrix

Picatrix is a library designed to help security analysts in a notebook environment, such as colab or jupyter.

colab jupyter security

Last synced: 04 Oct 2025

https://github.com/cymmetria/ciscoasa_honeypot

A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.

cisco cisco-asa execution-vulnerability honeypot security security-tools security-vulnerability vulnerability

Last synced: 04 Apr 2026

https://github.com/w0h1v/mcp-dnstwist

MCP server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage.

dns javascript mcp phishing security typosquatting

Last synced: 10 Jun 2026

https://github.com/jnMetaCode/shellward

AI Agent Security Middleware — 8-layer defense, DLP data flow, prompt injection detection, zero dependencies. SDK + OpenClaw plugin.

agent-security ai-agent ai-firewall ai-safety ai-security claude-code cursor data-exfiltration dlp guardrails langchain llm-security mcp mcp-security openclaw pii-detection prompt-injection runtime-security security shellward

Last synced: 02 Apr 2026

https://github.com/burghardt/clamfs

ClamFS is a FUSE-based user-space file system for Linux and BSD with on-access anti-virus file scanning

antivirus clamav clamd fuse fuse-filesystem linux on-demand security viruses

Last synced: 06 Oct 2025

https://github.com/tineola/tineola

Blockchains. Destruction. Mayhem.

blockchain enterprise hyperledger-fabric security

Last synced: 14 Jan 2026

https://github.com/aragossa/pii-shield

Zero-code K8s sidecar for log sanitization. Detects secrets via Entropy Analysis, preserves JSON integrity, and redacts PII deterministically. 🛡️

devsecops entropy gdpr golang json kubernetes log-sanitization log-sanitizer logging pii-redaction security sidecar soc2

Last synced: 18 Apr 2026

https://github.com/thunlp/advbench

Code and data of the EMNLP 2022 paper "Why Should Adversarial Perturbations be Imperceptible? Rethink the Research Paradigm in Adversarial NLP".

adversarial-examples benchmark natural-language-processing security

Last synced: 03 Aug 2025

https://github.com/chichou/grab.js

simple TCP banner grabbing with node.js

cybersecurity nmap port-scanner security

Last synced: 25 Aug 2025

https://github.com/parsiya/Go-Security

My Go security projects

go golang security security-tools

Last synced: 21 Apr 2025

https://github.com/dawsbot/skrub

Irreversible file deletion on every OS

file-deletion iteration overwrites security

Last synced: 16 May 2025

https://github.com/parksb/darim

A private journal application that supports client-side encryption

calendar client-side-encryption diary markdown note personal-journal security

Last synced: 02 Mar 2026

https://github.com/michaelmsonne/signtoolgui

This tool is a user-friendly Graphical User Interface (GUI) tool that simplifies and streamlines the process of digitally signing files using Microsoft's signtool.exe. This tool is designed to provide a straightforward interface, enabling users to apply digital signatures to software executables, drivers, DLLs, and other file types effortlessly.

certificate gui microsoft pfx security signtool trusted-signing windows

Last synced: 01 Aug 2025

https://github.com/rphang/evilbpf

Weaponizing the Linux Kernel (Hide Files/PID, SSH backdoors, SSL Sniffer, ...) by poking around eBPF/XDP

ebpf kernel linux-kernel-hacking offensive-security rootkit security sshd xdp

Last synced: 10 Apr 2025

https://github.com/calebstewart/python-sigma

Python API for interacting with sigma rules.

blueteam cyber detection security sigma

Last synced: 13 Apr 2025

https://github.com/jenkinsci/matrix-auth-plugin

Matrix-based authorization strategies for Jenkins

authentication jenkins plugin security

Last synced: 05 Apr 2025

https://github.com/CodeShield-Security/Log4JShell-Bytecode-Detector

Local Bytecode Scanner for the Log4JShell Vulnerability (CVE-2021-44228)

bytecode cve-2021-44228 log4j2 log4jshell log4shell scanner security

Last synced: 10 Jul 2025

https://github.com/dcso/fever

fast, extensible, versatile event router for Suricata's EVE-JSON format

bloom-filter eve golang intrusion-detection json monitoring netsec pdns security suricata

Last synced: 20 Jun 2025

https://github.com/damienbod/apijwtwithtwosts

Web API authorization, multi-IDP solutions in ASP.NET Core

aspnet-core authorization dotnet dotnetcore jwt net6 oauth oauth2 security

Last synced: 12 Sep 2025

https://github.com/jwilk/git-landmine

create local malicious git repo

security

Last synced: 12 Apr 2025

https://github.com/tyrchen/cellar

A password tool for user to derive a large amount of application passwords deterministically based on a passphrase. Cryptographically strong.

cryptography password security

Last synced: 10 Apr 2025

https://github.com/krptn/krypton

Data encryption at rest and IAM for Python

authentication cryptography django encryption fido2 fips flask iam python security totp webauthn

Last synced: 04 May 2025

https://github.com/dosx-dev/passbycode

A password generator that uses your secrets as a seed!

confidential gui manager password-generator secret security vbnet windows

Last synced: 07 May 2025

https://github.com/xlab-si/iac-scan-runner

Service that scans your Infrastructure as Code for common vulnerabilities

devsecops iac runner scan scanner scanning security vulnerability

Last synced: 13 Jul 2025

https://github.com/lionheart/pwnedpasswords

A Python Library and CLI for the Pwned Passwords v2 API

cli command-line passwords python security

Last synced: 21 Mar 2025

https://github.com/flowshield/flowshield

Global web3.0 decentralized private retrieval of data security network,Building Cyber Sovereignty. by @IceFireLabs

blockchain dao decentralized ethereum fvm ipfs libp2p nerovs network p2p security web3 zero-trust

Last synced: 13 Apr 2025

https://github.com/scipag/powershellutilities

PowerShellUtilities provides various utility commandlets.

exploitation kleptokitty mimikatz penetration-testing powershell-script psexec security wmi wmic

Last synced: 28 Oct 2025

https://github.com/openfga/java-sdk

OpenFGA SDK for Java - https://central.sonatype.com/artifact/dev.openfga/openfga-sdk

access-control authorization fga fine-grained-authorization hacktoberfest java openfga openfga-client security zanzibar

Last synced: 18 Feb 2026

https://github.com/techlab-innov/llmtrace

Zero-code LLM security & observability proxy. Real-time prompt injection detection, PII scanning, and cost control for OpenAI-compatible APIs. Built in Rust.

agentic ai-agents ai-infrastructure ai-security aiops chatgpt llm-inference llm-monitoring llm-security llm-security-compliance-prompt-injection llmops mlops observability openai pii-detection prompt-injection proxy rust security

Last synced: 13 Jun 2026

https://github.com/ajitpratap0/GoSQLX

High-performance SQL parser, formatter, linter & security scanner for Go — 1.5M+ ops/sec, multi-dialect, zero-copy, race-free

ast cli dialect go golang lsp mysql parser postgresql query-analyzer security sql sql-formatter sql-injection sql-linter sql-parser sql-validator sqlite wasm zero-copy

Last synced: 18 Mar 2026

https://github.com/ajitpratap0/gosqlx

High-performance SQL parser, formatter, linter & security scanner for Go — 1.5M+ ops/sec, multi-dialect, zero-copy, race-free

ast cli dialect go golang lsp mysql parser postgresql query-analyzer security sql sql-formatter sql-injection sql-linter sql-parser sql-validator sqlite wasm zero-copy

Last synced: 15 Mar 2026

https://github.com/Chrilleweb/dotenv-diff

Validate environment variable usage in codebase

cli developer-tools dotenv-cli environment-variables open-source security typescript

Last synced: 28 May 2026

https://github.com/fingerprintjs/fingerprintjs-pro-android

Official Android agent & SDK for 100% accurate device identification, created for the Fingerprint Pro identification API.

android fingerprint identification security

Last synced: 18 Feb 2026

https://github.com/gabamnml/hoper

Security tool to trace URL's jumps across the rel links to obtain the last URL

hoper recon redirects security security-audit security-scanner tool

Last synced: 20 Apr 2025

https://github.com/gcarq/arp-spoof

Minimal ARP-Spoofing tool written in Rust

arp arp-spoofing linux network pcap rust security

Last synced: 22 Mar 2025

https://github.com/arkerone/api-key-auth

Express/Restify middleware to authenticate HTTP requests based on api key and signature.

api authentication express expressjs javascript middleware nodejs restify restifyjs security

Last synced: 15 May 2026

https://github.com/macmod/stars

A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services that could possibly lead to subdomain takeover scenarios.

aws azure cloud cloudflare cybersecurity digitalocean dns domain-takeover gcp infosec pentesting python python3 scanner security security-research security-tools subdomain subdomain-takeover takeover

Last synced: 14 Apr 2025

https://github.com/magemojo/magesecuritypatcher

Magento 1 Security Patcher from MageMojo

magento1 patches security security-tools

Last synced: 21 Jan 2026

https://github.com/anas-aso/ssllabs_exporter

Getting deep analysis of the configuration of any SSL web server on the public Internet à la blackbox_exporter style.

prometheus prometheus-exporter security ssl ssllabs tls

Last synced: 15 Feb 2026

https://github.com/parsiya/eslinter

Manual JavaScript Linting is a Bug

burpsuite eslint javascript security

Last synced: 28 Feb 2026

https://github.com/lprat/static_file_analysis

Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules

analysis clamav defensive-security docker malware-analysis security security-tools sigma static-analysis yara yara-rules

Last synced: 16 Jan 2026

https://github.com/nikshepsvn/scatterfly

An attempt to improve user privacy by intelligent data obfuscation.

noise privacy python security selenium selenium-webdriver

Last synced: 28 Oct 2025

https://github.com/abourget/secrets-bridge

Secrets bridge - Secure build-time secrets injection for Docker

docker golang security ssh-agent

Last synced: 30 Jun 2025

https://github.com/iterweb/watcher

If you want know, who use your computer when you are not nearby!

privacy python security watch watcher windows

Last synced: 11 Mar 2026

https://github.com/croz-ltd/nrich

Nrich is a Java library developed at CROZ whose purpose is to make development of applications on JVM a little easier.

croz csrf encryption jackson java jpa nrich query search security spring-boot spring-framework validation

Last synced: 07 Apr 2025

https://github.com/nasa/scrub

SCRUB is a platform for orchestration and aggregation of static code analysis tools.

code-quality code-review python security static-analysis

Last synced: 26 Jan 2026

https://github.com/wahengchang/nodejs-security-must-know

It is a note about security on nodejs

command injection node nodejs security

Last synced: 05 Mar 2026