An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/itz-hyperz/firewallgg

A simple program that will search all users in multiple database api's to see if they are banned in any of them. It will return a list of all databases the user is banned in as-well.

application database discord node-module passport security

Last synced: 03 Nov 2025

https://github.com/contrast-security-oss/safelog4j

Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning or upgrading

iast java log4j log4shell rasp security security-testing vulnerability vulnerability-scanner

Last synced: 11 Sep 2025

https://github.com/sdushantha/getroot

🛠️ Tool to bypass my school's security system to get sudo privileges on MacOS

bypass exploit root security sudo

Last synced: 19 Jul 2025

https://github.com/sparkfun/sparkfun_ateccx08a_arduino_library

An Arduino library to use with the Microchip ATECCX08a Cryptographic Co-processors.

arduino arduino-library ateccx08a security sparkfun sparkfun-products

Last synced: 14 Apr 2025

https://github.com/xvnpw/ai-threat-modeling-action

AI featured threat modeling and security review action

ai devsecops github-actions gpt langchain python security threat-modeling

Last synced: 22 Jul 2025

https://github.com/rsrdesarrollo/sarna

Security Assessment Report geNerated Automatically

docx docx-generator markdown markdown-to-docx report reporting security security-tools

Last synced: 26 Oct 2025

https://github.com/eduvpn/python-eduvpn-client

Linux client for eduVPN - moved to: https://codeberg.org/eduVPN/linux-app

eduvpn privacy python security vpn

Last synced: 03 Apr 2025

https://github.com/edoardottt/malicious-rmqr-codes

Collection of (4000+) malicious rMQR Codes for Penetration testing, Vulnerability assessments, Red Team operations, Bug Bounty and more

bug-bounty bugbounty malicious-payloads offensive-security payload-generator payloads qr-code qrcode qrcodes red-team red-team-tools redteam redteam-tools redteaming rmqr rmqrcode security security-tools web-security

Last synced: 21 Mar 2025

https://github.com/FadeMind/hosts.whitelists

Collection of whitelists hosts. See also hosts.extras [ https://git.io/J3b5A ] and StevenBlack's hosts project [ https://git.io/Je0XR ]

adblock hosts hostsfile security steven-black-hosts whitelist whitelists-hosts

Last synced: 03 Apr 2025

https://github.com/chris-short/devopsish.com

DevOps, Cloud Native, Hybrid Cloud, Open Source, industry news, culture, and the ‘ish between.

aws cloud cloud-native community containers devops gitops infrastructure infrastructure-as-code kubernetes linux newsletter open-source security

Last synced: 10 Apr 2025

https://github.com/pseudo-security/slacksecrets

Scans Slack for API tokens, credentials, passwords, and more using YARA rules

infosec python security slack yara yara-rules

Last synced: 08 Apr 2026

https://github.com/rog3rsm1th/kharma

Grammar-based fuzzing corpus generator

fuzzer fuzzing grammar python security

Last synced: 11 Sep 2025

https://github.com/fademind/hosts.whitelists

Collection of whitelists hosts. See also hosts.extras [ https://git.io/J3b5A ] and StevenBlack's hosts project [ https://git.io/Je0XR ]

adblock hosts hostsfile security steven-black-hosts whitelist whitelists-hosts

Last synced: 18 Feb 2026

https://github.com/zvory/csv-safe

Decorate the ruby CSV library to sanitize output CSV against CSV injection attacks.

csv csv-export csv-files csv-import injection-attacks ruby ruby-gem security

Last synced: 07 Apr 2025

https://github.com/keenrivals/bugsite-index

Index of websites publishing bugs along the lines of heartbleed.com

heartbleed mitm-attacks netsec security ssl tls

Last synced: 13 May 2025

https://github.com/cybercog/laravel-nova-ban

Laravel Nova Ban simplify blocking and banning Eloquent models.

access arrest ban block cog forbid jail justice laravel laravel-nova nova prison restrict security user

Last synced: 28 Jul 2025

https://github.com/turbot/steampipe-mod-gcp-compliance

Run individual configuration, compliance and security controls or full compliance benchmarks for CIS across all of your GCP projects using Powerpipe and Steampipe.

cis cis-benchmark compliance gcp hacktoberfest powerpipe powerpipe-mod security sql steampipe steampipe-mod

Last synced: 15 Apr 2025

https://github.com/cketti/safecontentresolver

A replacement for Android's ContentResolver that protects against the Surreptitious Sharing attack

android contentprovider contentresolver library security

Last synced: 01 Sep 2025

https://github.com/nicolonsky/itdr

Collection of Microsoft Identity Threat Detection and Response resources.

azuread entra itdr microsoft security

Last synced: 16 Mar 2025

https://github.com/shellrow/netscan

Cross-platform network scan library. Written in Rust.

network rust rust-crate rust-library scanner security

Last synced: 14 Apr 2025

https://github.com/ethicalml/sml-security

MLOps Cookiecutter Template: A Base Project Structure for Secure Production ML Engineering

machine-learning mlops security

Last synced: 08 Apr 2025

https://github.com/celenityy/phoenix

Phoenix is a suite of configurations & advanced modifications for Mozilla Firefox, designed to put the user first - with a focus on privacy, security, freedom, & usability.

anti-tracking browser firefox firefox-based firefox-browser gecko hardened hardening mozilla mozilla-firefox privacy private secure security settings speed tracking user-js userjs web-browser

Last synced: 02 Apr 2026

https://github.com/kkomelin/insecres

A console tool that finds insecure resources on HTTPS sites

crawler finder https security

Last synced: 22 Jun 2025

https://github.com/biw/chrome-spyware

Writing Spyware Made Easy - POC spyware Chrome Extension/Server

chrome-extension go golang javascript poc security spyware tutorial writeup

Last synced: 28 Jan 2026

https://github.com/mondoohq/cnspec-policies

This repository contains security policies for cnspec maintained by Mondoo and the cnspec community.

aws azure gcp kubernetes linux policy security windows

Last synced: 19 Oct 2025

https://github.com/panther-labs/panther_analysis_tool

Command line tool for working with Panther rules and policies

python security

Last synced: 16 Mar 2026

https://github.com/jasondrawdy/forerunner

Fast and extensible network scanning library featuring multithreading, ping probing, and scan fetchers.

library network-scanner network-scanning networking scanner security windows

Last synced: 22 Apr 2025

https://github.com/Gui774ume/network-security-probe

A process level network security monitoring and enforcement project for Kubernetes, using eBPF

ebpf enforcement kubernetes linux network-security profile security

Last synced: 09 Jul 2025

https://github.com/hschne/data-dead-drop

Simple, quick data sharing. For humans and machines 🤖

hotwire rails security

Last synced: 21 Aug 2025

https://github.com/fabacab/wp-pgp-encrypted-emails

:closed_lock_with_key: :e-mail: Encrypts WordPress emails using OpenPGP or S/MIME with a familiar API.

api-wrapper email encryption gpg openpgp pgp privacy security smime wordpress-plugin

Last synced: 26 Jun 2025

https://github.com/pixee/codemodder-java

a framework for building java codemods

codemods framework java library quality security static-analysis

Last synced: 11 Jan 2026

https://github.com/karanb192/claude-code-hooks

🪝 A growing collection of useful Claude Code hooks. Copy, paste, customize.

ai-tools anthropic automation claude claude-code claude-code-hooks cli developer-tools hooks notifications security

Last synced: 21 Feb 2026

https://github.com/nowsecure/nowsecure-action

The NowSecure Action delivers fast, accurate, automated security analysis of iOS and Android apps coded in any language

action analysis frida nowsecure security security-tools vulnerability-detection

Last synced: 04 Apr 2026

https://github.com/sap/stars

AI agent whose purpose is to conduct vulnerability tests on LLMs from SAP AI Core or from local deployments, or models from HuggingFace. The goal of this project is to identify and correct any potential security vulnerabilities.

ai ai-agents ai-security llm llm-security security

Last synced: 12 Jan 2026

https://github.com/jaybosamiya/fuzzing-numpy

:snake: Experiments in trying to find 0-days in numpy

0day experimental fuzzing numpy security

Last synced: 31 Mar 2025

https://github.com/yeasy/ai_security_guide

从原理到实践,全面掌握大语言模型安全攻防之道

ai book guide llm security

Last synced: 31 May 2026

https://github.com/offrange/keygo

An open-source password manager - a reliable solution prioritizing transparency and security. Utilizing AES encryption, one of the most trusted algorithms, your sensitive information stays confidential and safeguarded.

aes-encryption android digital-vault java local-storage mobile-app password-manager security vault

Last synced: 31 Aug 2025

https://github.com/joho1968/pomjs

POMjs is a random password generator in HTML and pure Javascript with no cookies and no trackers. It has been translated into several languages.

password password-generator random-password-generator security security-tools webapp website

Last synced: 30 Oct 2025

https://github.com/marcocesarato/php-aio-security

The objective of this class is offer an automatic system of protection for developers's projects and simplify some security operations as the check of CSRF or XSS all in a simple class. Infact you could just call the main method to have better security yet without too much complicated operations.

autocomplete class cleaning clickjacking compress cookies crypt csrf escape firewall hijacking htaccess injection php safety scanner security sql waf xss

Last synced: 21 Jun 2025

https://github.com/grumlimited/authenticator-rs

TOTP MFA/2FA application written in Rust and GTK3

2fa 2factor gnome gtk3 linux mfa rust security

Last synced: 05 Mar 2025

https://github.com/borchero/meerkat

Kubernetes Operator for a Cloud-Native OpenVPN Deployment.

kubernetes-operator openvpn security vault

Last synced: 06 Sep 2025

https://github.com/atholbro/paseto

Java Implementation of Platform-Agnostic Security Tokens - https://paseto.io

authentication java jwt paseto paseto-tokens security token token-authetication token-based-authentication

Last synced: 14 Jan 2026

https://github.com/trpkit/trpkit

Building zero-knowledge end-to-end encrypted web tooling

cryptography end-to-end-encryption nextjs nodejs open-source react security typescript

Last synced: 24 Oct 2025

https://github.com/dreamer1eh/ultimate_bughunter_tools

Ultimate Package Of 50 Bug Bounty Hunting Tools

bug-bounty bugbounty infosec security security-tools

Last synced: 12 Jul 2025

https://github.com/stefansundin/secrets-scanner

Find API keys in your code. :key:

cli security

Last synced: 18 Mar 2025

https://github.com/wizardforcel/android-app-sec-guidebook-zh

:book: [译] 安卓应用安全指南 中文版

android book jssec security

Last synced: 30 Apr 2025

https://github.com/haacked/aspnetmvc-action-checker

Drop in ASP.NET MVC Controller and Action that displays any actions that modify resources (HTTP POST, PUT, DELETE, and PATCH) that do not have an Authorize or ValidateAniForgeryToken attributes applied.

asp-net-mvc security

Last synced: 26 Mar 2025

https://github.com/hannesm/ocaml-otr

Off-the-record (OTR) messaging protocol, purely in OCaml

end-to-end ocaml otr security

Last synced: 10 Apr 2025

https://github.com/cqsd/daily-commonspeak2

commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. Please use it instead: https://github.com/assetnote/wordlists

bugbounty content-discovery security

Last synced: 11 Jul 2025

https://github.com/zelon88/ransomware_defender

A Windows Logon / Startup / Scheduled Task Script for Ransomware Detection & Early-Warning

antivirus av defender email-notification ransomware ransomware-defender ransomware-detection ransomware-mitigation ransomware-prevention security startup vbs

Last synced: 11 Jul 2025

https://github.com/arcus-azure/arcus.security

Security for Azure development in a breeze.

azure azure-key-vault security

Last synced: 04 Apr 2025

https://github.com/chipsalliance/caliptra-ss

HW Design Collateral for Caliptra Subsystem, which comprises Caliptra RoT IP and additional manufacturer controls.

caliptra ocp opencomputeproject root-of-trust rot security

Last synced: 02 Apr 2026

https://github.com/happyhackingspace/vt

Vulnerable Target (VT) is a specialized tool designed for security professionals, researchers, and educators that creates intentionally vulnerable environments across multiple platforms.

cybersecurity hacktoberfest repl security target vulnerable

Last synced: 21 Apr 2026

https://github.com/sysdiglabs/kube-apparmor-manager

Manage AppAmormor profiles for Kubernetes cluster

apparmor k8s prevention security

Last synced: 13 Jul 2025

https://github.com/didinj/mevn-stack-vue-2

Securing MEVN Stack (Vue.js 2) Web Application using Passport

app application express expressjs mevn mongo mongodb node nodejs passport passportjs secure securing security stack vue vue2 vuejs web

Last synced: 15 Sep 2025

https://github.com/tsotimus/csp

A vite plugin for your content security policy

csp security spa vite vite-plugin

Last synced: 26 Feb 2025

https://github.com/AmanoTeam/Unalix

Small, dependency-free, fast Python package for removing tracking fields from URLs.

internet python python3 security

Last synced: 22 Jul 2025

https://github.com/mrackwitz/jeroboam

Check all your apps on macOS for vulnerable Sparkle updaters

macos security security-scanner security-tools security-vulnerability

Last synced: 22 Sep 2025

https://github.com/duo-labs/efigy-gui

A Mac app that uses the Duo Labs EFIgy API to inform you about the state of your EFI firmware.

duo efi macos security

Last synced: 30 Apr 2025

https://github.com/soohoio/sooho

Toolbox for auditing and patching vulnerabilities in smart contracts.

security security-assessments smart-contract sooho

Last synced: 10 Apr 2025

https://github.com/acuciureanu/ppfang

A tool which helps identifying client-side prototype polluting libraries

bugbounty bugbounty-tool bugbountytips chromium cspp prototype-pollution security security-tools vulnerability-scanners

Last synced: 09 Apr 2025

https://github.com/pkcs11interop/pkcs11interop.x509store

Easy to use PKCS#11 based X.509 certificate store

crypto cryptography hsm pkcs pkcs11 security smartcard

Last synced: 14 Jan 2026

https://github.com/brosck/bugbountytricks

「🐞」Bug Bounty Tricks

bounty bug bugbounty security tips tricks

Last synced: 21 Jan 2026

https://github.com/whxitte/gixposed

Gixposed is a powerful command-line tool designed to search the commit history of Git repositories for sensitive information, such as API keys and access tokens. Its purpose is to help developers and security professionals quickly identify and remediate exposed sensitive informations in their codebases.

api-key automation code-analysis credentials cybersecurity cybersecurity-tools devsecops exposure git gitxposed-tool gixposed gixposed-github opensource scanning search secret-management secrets security vulnerability-detection

Last synced: 28 Apr 2025

https://github.com/magnologan/cncf-security-audits

List of all previous CNCF Project's Security Audit Reports

audit cncf kubernetes security

Last synced: 11 Oct 2025

https://github.com/mandiant/apooxml

Generate YARA rules for OOXML documents.

detection malware ooxml security yara

Last synced: 24 Apr 2025

https://github.com/alessiomaffeis/ioscanx

iOScanX (iOS Application Scanner for OS X) is a Cocoa application for semi-automated iOS app analysis and evaluation

analysis application automated-analysis automation ios macos scanning security workflow

Last synced: 16 Aug 2025

https://github.com/willhlaw/firestore-security-tests

Setup and run tests to verify Firestore security rules

firebaserules firestore google-apis rules security testing

Last synced: 21 Jan 2026

https://github.com/openfga/dotnet-sdk

OpenFGA SDK for .NET - https://www.nuget.org/packages/OpenFga.Sdk

access-control authorization fga fine-grained-authorization openfga security zanzibar

Last synced: 18 Apr 2025

https://github.com/breml/bidichk

Go linter which checks for dangerous unicode character sequences

go linter security unicode-characters

Last synced: 16 May 2025

https://github.com/appview-team/appview

Gain insight into any Linux command or application with no code modification

instrument linux monitoring observability privacy security

Last synced: 16 May 2025

https://github.com/tech-preta/kubesec

O projeto Kubesec é uma solução abrangente para análise e relatórios de segurança em clusters Kubernetes.

kubernetes security

Last synced: 12 May 2025

https://github.com/kevcui/obashfuscator

:performing_arts: A Bash script to obfuscate Bash script

bash bash-obfuscate bash-obfuscator bash-script obfuscation obfuscator security security-tools

Last synced: 18 Jul 2025

https://github.com/cinar/checker

Effortless input validation in Go with the power of struct tags. No dependencies, just pure simplicity. ✨ See how! 👀

checker customizable data-integrity data-validation form-validation go golang input-validation library lightweight localization no-dependencies normalization security struct-tags validation validator

Last synced: 12 Jan 2026

https://github.com/stephenhaunts/safepad

SafePad : Encrypted Text Editor. This text editor uses very strong encryption to let you protect your secrets. Great for storing passwords, credit card details or any else that you want to keep safe.

aes-encryption cryptography cryptography-tools encryption encryption-tool privacy privacy-enhancing-technologies privacy-protection privacy-tools screen-keyboard security security-tools

Last synced: 11 Apr 2025

https://github.com/xsscx/xnuimagefuzzer

XNU Image Fuzzer - iOS App for Fuzzing Images with Objective-C Code covering 12 CGCreateBitmap & CGColorSpace Functions working with Raw Data and String Injection.

crash debugging exploit file fuzz fuzzing graphics image imagefuzzer interposing ios iosonmac macos objective-c research security utt xcode xnu

Last synced: 28 Feb 2026

https://github.com/cioccarellia/billing-protector

Security purchases checker & validator for Android

android billing bypass defense defenses kotlin patch pirate protection purchase security

Last synced: 24 Aug 2025