An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/brosck/bugbountytricks

「🐞」Bug Bounty Tricks

bounty bug bugbounty security tips tricks

Last synced: 21 Jan 2026

https://github.com/dilawarm/federated

Federated Learning with Differential Privacy and Homomorphic Encryption.

differential-privacy federated-learning homomorphic-encryption privacy-preserving-machine-learning security tensorflow

Last synced: 16 Jan 2026

https://github.com/dajiaji/crystals-kyber-js

An ML-KEM (NIST FIPS 203) and CRYSTALS-KYBER implementation written in TypeScript.

cryptography crystals-kyber fips203 javascript kem kyber ml-kem mlkem post-quantum pqc security typescript

Last synced: 08 Mar 2026

https://github.com/hakky54/java-tutorials

📝 A repository containing different java tutorials

elasticsearch grpc java log-captor mockito security spring ssl tls tutorial unit-testing websocket

Last synced: 14 Apr 2025

https://github.com/alessiomaffeis/iOScanX

iOScanX (iOS Application Scanner for OS X) is a Cocoa application for semi-automated iOS app analysis and evaluation

analysis application automated-analysis automation ios macos scanning security workflow

Last synced: 18 Apr 2025

https://github.com/openfga/python-sdk

OpenFGA SDK for Python 3 - https://pypi.org/project/openfga-sdk/

access-control authorization fga fine-grained-authorization hacktoberfest openfga security zanzibar

Last synced: 09 Apr 2025

https://github.com/falcosecurity/falco-website

Source code of the official Falco website

cncf containers documentation hacktoberfest security

Last synced: 26 Jan 2026

https://github.com/pelock/jobfuscator

JObfuscator is a source code obfuscator for the Java language. Protect Java source code & algorithms from hacking, cracking, reverse engineering, decompilation & technology theft.

decompiler decompiler-java java mangle mangler obfuscate obfuscate-code obfuscate-strings obfuscated obfuscation obfuscator obfuscators security source-code

Last synced: 30 Jul 2025

https://github.com/captaincodeman/svelte-api-keys

API Key Generation, Validation, and Rate Limiting for SvelteKit

api firestore keys permissions rate-limiting redis security svelte svelte-kit throttle token-bucket

Last synced: 26 Apr 2025

https://github.com/WillOram/cyber-incident-management

Notes on managing and coordinating the response to major cyber incidents

crisis-management cybersecurity incident-management incident-response security

Last synced: 11 Jul 2025

https://github.com/qaware/heimdall

Secure Password Storage

algorithm hash heimdall pbkdf2 security

Last synced: 08 Apr 2025

https://github.com/umutphp/wp-vulnerability-check

A command line took to check the WPScan Vulnerability Database via API to identify the security issues of WordPress plugins installed.

continuous-integration hacktoberfest security vulnerability-checker wordpress wordpress-plugin wordpress-security wordpress-security-scanner

Last synced: 23 Apr 2025

https://github.com/1n3/cloudhunter

Find unreferenced AWS S3 buckets which have CloudFront CNAME records pointing to them

1n3 amazon aws buckets cloud cloudfront cloudhunter cname dns public s3 scanner security

Last synced: 07 May 2025

https://github.com/wandapeter/pam-authramp

pam-authramp | The AuthRamp PAM module provides an account lockout mechanism based on the number of authentication failures.

brute-force pam pam-authentication pam-module rust security security-tools

Last synced: 24 Jun 2025

https://github.com/xen0l/iam-lint

Github action for linting AWS IAM policy documents

aws iam security

Last synced: 02 Jan 2026

https://github.com/redfast00/malidate

A logging DNS and HTTP(S) server. Opensource alternative to some parts of the Burpsuite Collaborator server.

http-server malidate security security-tools

Last synced: 18 Apr 2026

https://github.com/nasbench/eventlog_compendium

The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.

detection-engineering eventlog security windows

Last synced: 06 May 2025

https://github.com/deadbits/shells

collection of useful shells for penetration tests

c penetration-testing python security

Last synced: 07 May 2025

https://github.com/zmre/awesome-security-for-ai

Awesome products for securing AI systems includes open source and commercial options and an infographic licensed CC-BY-SA-4.0.

ai appsec awesome awesome-list cybersecurity genai lists llm machine-learning ml mlops privacy resources security

Last synced: 17 Jun 2025

https://github.com/grapheneos/script

Scripting for generating signed production releases of AOSP and metadata for the Updater app along with partially automated maintenance of out-of-tree patch sets.

android grapheneos privacy security

Last synced: 09 Sep 2025

https://github.com/cokeBeer/go-sec-code

Go-sec-code is a project for learning Go vulnerability code.

cors go jsonp security sqli ssrf ssti xss xxe

Last synced: 16 Feb 2026

https://github.com/quantumsheep/warshield

Warshield is a file encryption and decryption CLI using AES 256 algorithm

aes-256 aes-256-gcm cli decryption encryption file-encryption protection security sha512

Last synced: 06 Mar 2026

https://github.com/cyberark/pas-orchestrator

CyberArk Privileged Access Security automatic deployment using Ansible

ansible ansible-playbook core-pas cyberark security

Last synced: 03 May 2025

https://github.com/sentinella-enterprises/cyber-security-framework

The CyberSecurity Framework (CSF for short) is a local Python3 scripting package which aims directly on Cyber Security auditing, where you can execute and create new programs for any purpuse that go under your own responsibility to fit your needs. (You can still use/extend it to fit on any unrelated needs of your own).

csf cyber cyber-security framework python python36 security

Last synced: 09 Jul 2025

https://github.com/dosx-dev/js-hooker

Just load this .js module and it will start tracking all external calls by a JS-application

debugging hacktoberfest infosec javascript js reverse-engineering security

Last synced: 07 May 2025

https://github.com/k8gege/phpstudydoor

PhpStudy 2016 & 2018 BackDoor Exploit

backdoor exploit hacking k8cscan pentest pentest-tool phpstudy security

Last synced: 04 Sep 2025

https://github.com/vante-dev/vante-bots

Turbo Sistemli Setuplı v14 Public / Ekip Botları

discord discord-bot discord-js moderation security statistics

Last synced: 09 Aug 2025

https://github.com/openfga/js-sdk

OpenFGA SDK for node.js and JavaScript - https://www.npmjs.com/package/@openfga/sdk

access-control authorization fga fine-grained-authorization openfga security zanzibar

Last synced: 16 Apr 2025

https://github.com/eth-sri/soltix

SOLTIX: Scalable automated framework for testing Solidity compilers.

ethereum fuzzing security smartcontracts solidity testing

Last synced: 23 Jul 2025

https://github.com/pyrohost/clavis

A Rust library for secure, encrypted communication over asynchronous streams

async communication encryption security

Last synced: 31 Aug 2025

https://github.com/theparanoids/rdfp

Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt

fingerprinting monitoring network nsm rdp security threat-hunting

Last synced: 17 Jan 2026

https://github.com/nyxnor/onionjuggler

Manage your Onion Services via CLI or TUI on Unix-like operating system with a POSIX compliant shell.

cli descentralized encryption foss hidden-service hiddenservice onion-service onionservice open-source portable posix privacy security self-hosted shell shellscript tor tor-onion-service tui unix

Last synced: 15 Apr 2025

https://github.com/edoverflow/h1-cli

A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.

hackerone security

Last synced: 23 Apr 2025

https://github.com/chen-keinan/kube-knark

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

ebpf ebpf-programs golang kubernetes linux scanner security

Last synced: 22 Mar 2025

https://github.com/SkuldNorniern/fluere

Fluere is a powerful and versatile tool designed for network monitoring and analysis. It is capable of capturing network packets in pcap format and converting them into NetFlow data, providing a comprehensive view of network traffic. It also Provides Terminal User Interface.

cross-platform flowlogs fluere hacktoberfest netflow netflow-exports netflow-v5 network-analysis network-capture network-monitoring network-security packet packet-capture packet-sniffer packets pcap rust security security-scanner security-tools

Last synced: 16 Jul 2025

https://github.com/danielhenrymantilla/shellcode-factory

Tool to create and test shellcodes from custom assembly sources (with some encoding options)

8086 alphanumeric asm assembly bytes decoder fast gas hex-bytes intel linux make script security shellcode tool useful x86 x86-64 xor

Last synced: 21 Mar 2025

https://github.com/jkkj93/mint-webshell-defender

:leaves:薄荷WEBSHELL防御系统,是一款WEBSHELL查杀/防御软件,采用PYTHON编写。不同于依靠特征库进行查杀的传统WEBSHELL扫描软件。本软件以防御为主,经过适当配置后可以100%防御,并清除任何WEBSHELL后门。

security

Last synced: 11 May 2025

https://github.com/yahoo/rdfp

Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt

fingerprinting monitoring network nsm rdp security threat-hunting

Last synced: 25 Feb 2025

https://github.com/wh1t3fox/polenum

Uses Core's Impacket Library to get the password policy from a windows machine

enum4linux impacket-library polenum security windows

Last synced: 13 Apr 2025

https://github.com/m-mizutani/zlog

Secure logger in Go to avoid output sensitive data in log

golang logger security

Last synced: 27 Apr 2025

https://github.com/asterinas/jinzhao-disk

Jinzhao Disk (JinDisk) is a log-structured secure block device for TEEs. This repo is JinDisk's Linux version.

linux security storage tee

Last synced: 31 May 2026

https://github.com/fairwindsops/bif

Fairwinds Base Image Finder CLI

docker fairwinds-incubator security vulnerabilities

Last synced: 04 Sep 2025

https://github.com/captainzero93/security_harden_linux

Semi-automated bash scripts that provide security hardening for Linux, Debian based, 2024, attempts DISA STIG and CIS Compliance

debian security ubuntu

Last synced: 10 Apr 2025

https://github.com/CERN-CERT/pDNSSOC

Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.

dns dnstap misp security security-tools threat-intelligence

Last synced: 27 Sep 2025

https://github.com/qvl/httpsyet

Crawler to find links you can update to HTTPS

automation https security slack tls

Last synced: 11 Mar 2025

https://github.com/luisfer/ubon

Peace of mind for vibe-coded apps

nextjs python react security typescript vibe-coding vibe-coding-assistant

Last synced: 01 Feb 2026

https://github.com/datatheorem/flake8-alfred

Alfred is a flake8 plugin to warn on unsafe/obsolete symbols.

flake8 flake8-plugin python3 security

Last synced: 21 Apr 2025

https://github.com/microsoft/scitt-ccf-ledger

Supply Chain Integrity Transparency and Trust ledger application using Confidential Consortium Framework (CCF)

ccf cryptography scitt security supply-chain

Last synced: 05 Apr 2025

https://github.com/stackrox/bsidessf-2020-workshop

Materials for a live workshop at BSidesSF on deployment-level Kubernetes security controls

bsidessf k8s kubernetes security workshop

Last synced: 31 Aug 2025

https://github.com/alcideio/kaudit

Alcide Kubernetes Audit Log Analyzer - Alcide kAudit

alcide-kaudit audit-log forensic-analysis forensics kubernetes security security-tools vault

Last synced: 30 Dec 2025

https://github.com/giuseppe/easyseccomp

DSL language to write seccomp filters

containers seccomp seccomp-bpf seccomp-filter security

Last synced: 04 Sep 2025

https://github.com/GDATASoftwareAG/vaas

Verdict-as-a-Service SDKs: Analyze files for malicious content

antivirus g-data it-security malware malware-analysis malware-detection security

Last synced: 12 Jul 2025

https://github.com/mikeprivette/ai-security-shared-responsibility

AI Security Shared Responsibility Model

ai model security

Last synced: 04 Mar 2026

https://github.com/merklejerk/honeypause

Permissionless onchain exploit bounties tied to a circuit breaker

etherum security solidity

Last synced: 22 Apr 2025

https://github.com/presidio-oss/hai-guardrails

A TypeScript library providing a set of guards for LLM (Large Language Model) applications

defence governance guardrails guards hai halucination human-ai llm-guardrails presidio prompt-injection redaction security typescript

Last synced: 06 Feb 2026

https://github.com/fdonnet/yarp-security-api-and-ui

Security layer (API) that you can use to protect your Yarp routes and the apis behind it. A Blazor ui is available to configure your things (subscriptions and tenants management included). A Sveltekit client is included as a very simple client.

api blazor blazor-fluentui csharp hybridcache masstransit multitenant net9 oauth openid-connect security sveltekit yarp

Last synced: 16 May 2025

https://github.com/jedisct1/rust-privdrop

A simple Rust crate to drop privileges

rust security

Last synced: 10 Apr 2025

https://github.com/belval/ml-ids

An IDS implementation using machine learning

ids security

Last synced: 12 Apr 2025

https://github.com/autolist/sekreto

Use AWS Secrets Manager from Ruby, with rails support

aws aws-secrets-manager rails rails-gem ruby-gem security

Last synced: 07 Apr 2025

https://github.com/machine1337/pyobfuscate

A simple and efficent script to obfuscate python payloads to make it completely FUD

crypter crypters empire evasions fud hacking hacking-tools metasploit obfuscation payloads rats security stealers

Last synced: 25 Apr 2025

https://github.com/alulsh/drive-public-files

Audit your public Google Drive files.

google-drive infosec security

Last synced: 25 Apr 2025

https://github.com/anton-abyzov/vskill

Secure multi-platform AI skill installer — scan before you install. 49 agents, 12 plugins, 41 expert skills.

ai ai-agents claude-code cli copilot cursor developer-tools npm-package plugin-marketplace security skills windsurf

Last synced: 31 May 2026

https://github.com/devops-ia/helm-opencti

Helm chart for Open Cyber Threat Intelligence Platform

charts cti cyber cybersecurity helm intelligence kubernetes opencti osint security threat-intelligence

Last synced: 23 Apr 2026

https://github.com/csm-actions/securefix-action

GitHub Action to fix code securely

cicd github-actions oss security

Last synced: 25 Apr 2026

https://github.com/pigri/cf-n8n-proxy

Cloudflare worker for n8n proxy

cf cloudflare firewall n8n proxy rate-limit security

Last synced: 29 Dec 2025

https://github.com/paulveillard/cybersecurity-security-harderning

A collection of awesome security hardening software, libraries, learning tutorials & documents, e-books, best practices, checklists, benchmarks about hardening in Cybersecurity

ami linux-hardening os-hardening security security-audit security-hacks security-hardening ubuntu-hardening ubuntu-sec-tools vulnerability vulnerability-assessment vulnerability-detection vulnerability-identification vulnerability-scanning windows-hardening

Last synced: 07 Jul 2025

https://github.com/bytemare/opaque

Go implementation of OPAQUE, the asymmetric password-authenticated key exchange protocol.

cryptography elliptic-curves encryption go golang opaque password-safety ristretto255 security

Last synced: 10 Apr 2025

https://github.com/jpcertcc/cobaltstrike-config

Repository for archiving Cobalt Strike configuration

malware security

Last synced: 16 Feb 2026

https://github.com/hybridgroup/tinygo-tkey

Develop applications for the Tillitis TKey-1 an open source, open hardware FPGA-based USB security token using TinyGo

embedded fpga golang riscv security security-token tillitis tinygo tkey usb-devices

Last synced: 02 Apr 2026

https://github.com/maxlambrecht/rust-spiffe

A collection of crates for SPIFFE workload identity, Workload API clients, SPIRE-specific APIs, and TLS integration.

authentication mtls rust security spiffe spire tls workload-identity

Last synced: 11 May 2026

https://github.com/ahoo-wang/cosec

RBAC-based And Policy-based Multi-Tenant Reactive Security Framework | 基于 RBAC 和策略的多租户响应式安全框架

authentication authorization cloud-native gateway identity java jwt kotlin microservice multi-tenant oauth2 policy project-reactor rbac reactive redis security spring-boot spring-cloud spring-cloud-gateway

Last synced: 01 Apr 2026

https://github.com/grapheneos/platform_packages_apps_updater

Automatic background updater for modern Android. See https://github.com/GrapheneOS/script/blob/15/generate_metadata.py for the server metadata generation tool.

android grapheneos privacy security

Last synced: 07 Apr 2025

https://github.com/ariary/httpcustomhouse

HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets

bug-bounty burp cli http-client http-request-smuggling infosec learning pentest-tool request-smuggling security websecurity

Last synced: 26 Apr 2025

https://github.com/ossf/scorecard-monitor

Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts

github-actions open-source-management openssf-scorecard security security-audit security-tools

Last synced: 09 Oct 2025

https://github.com/nusenu/ornetstats

Stats about the Tor network (website)

metrics security statistics tor tor-network

Last synced: 04 Jan 2026