An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/0x4d31/honeybits-win

Windows version of honeybits - a PoC tool to create breadcrumbs and honeytokens, to lead the attackers to your honeypots!

deception go golang honeybits honeypot honeytoken honeytrap security

Last synced: 12 May 2025

https://github.com/sigstore/rekor-tiles

Signature Transparency Log designed for ease of use, low cost, and minimal maintenance

provenance security supply-chain transparency-log

Last synced: 17 Jan 2026

https://github.com/traut/jupyter-widget-stixview

STIX2 graph widget for Jupyter notebooks, powered by stixview library

cti cyber-security cyber-threat-intelligence cybersecurity graph jupyter jupyter-notebook jupyter-widget security stix2

Last synced: 05 Oct 2025

https://github.com/jurerotar/wordpress-security-and-performance

Apache configuration and useful functions for more secure and performant Wordpress sites.

apache htaccess php security wordpress wordpress-development wordpress-security wp

Last synced: 23 Apr 2025

https://github.com/cbrnrd/netsploit

๐Ÿ“ก A security research tool with shodan integration

network security shodan

Last synced: 15 Oct 2025

https://github.com/david942j/honest

Are your installed packages _really_ the same as you saw on GitHub?

package-manager security

Last synced: 25 Mar 2025

https://github.com/vialab/semantic-guesser

Training and testing of linguistic passwords models.

cracking nlp passwords pcfg security

Last synced: 22 Jan 2026

https://github.com/vzhou842/definitely-secure-bank

A definitely (read: not) secure online banking site. Built for demo purposes as an example of common security vulnerabilities / what NOT to do.

csrf csrf-attacks csrf-prevention demo security web-security

Last synced: 27 Mar 2025

https://github.com/fabianacampanari/top-trumps

๐Ÿƒ Creation of the Top Trumps game where the theme and cards were inspired by great names responsible for the technology revolution and I dedicate it to Ada Lovelace to honor her contributions to humanity as one of the leading women in science and math.

css3 figma github github-action github-pages html5 javascript license-management love-and-joy photoshop programming security

Last synced: 05 May 2025

https://github.com/odwyersoftware/azure-ad-verify-token

Verify JWT issued by Azure Active Directory B2C in Python ๐Ÿ

authentication azure azure-active-directory-b2c jwt-authentication python-library security

Last synced: 11 Apr 2025

https://github.com/citp/anomalous-tor-keys

Analysis of archived Tor relay RSA public keys

cryptography factorization hidden-services security tor-network

Last synced: 03 Jan 2026

https://github.com/1farz1/ecommerce-api-nodejs

This full E-Commerce API build using Express and MongoDb, and other Npm Packages listed below , for learning purposes. Here it contains all the required functionalities of a full-fledged E-commerce API

api bcryt clean-code ecommerce ecommerce-api ecommerce-website express helmetjs mongodb mvc-architecture nodejs rest-api security solid-principles

Last synced: 12 Apr 2025

https://github.com/greenboxal/wifi-hijack

Wifi DNS hijacker

dns dns-spoof hijack security wifi

Last synced: 11 Jul 2025

https://github.com/chen-keinan/lxd-probe

Open Source runtime scanner for Linux containers (LXD / LXC), It performs security audit checks based on CIS Linux containers Benchmark specification

audit cis-benchmark containers linux linuxcontainers lxd security

Last synced: 17 Mar 2025

https://github.com/kylmakalle/devicecheck

Reduce fraudulent use of your services by managing device state and asserting app integrity via Apple DeviceCheck API with this Python wrapper.

api apple appsec devicecheck ios macos python security swift

Last synced: 28 Oct 2025

https://github.com/hungtruong/deadringer

A proof of concept iPhone X lock screen spoof

apple iphone passcode security

Last synced: 09 Jul 2025

https://github.com/jenkinsci/folder-auth-plugin

Authorization Plugin for Jenkins that works on folders

authorization folder gsoc-2019 jenkins security

Last synced: 03 Apr 2025

https://github.com/ItsIgnacioPortal/hacker-scoper

Automagically filter URLs with Bug Bounty program scope rules scraped from the internet.

bugbounty bugcrowd enumeration filter go golang hackerone infosec pentesting recon scopes security security-tools websec websecurity

Last synced: 11 Jul 2025

https://github.com/gyulyvgc/nullnet-firewall

Rust-based firewall for network drivers

firewall network-programming networking rust security

Last synced: 17 Mar 2025

https://github.com/john-science/exif_delete

Secure your photographs by stripping them of all the EXIF data.

exif exif-deletion image-processing images photos privacy python security security-tools

Last synced: 07 May 2026

https://github.com/cbuijs/sdproxy

DNS Proxy that is simple and fast with not so simple features. Focused on routed DNS forwarding, filtering and parental control.

ads blocking control dns doh doh3 doq filtering forwarding golang https openwrt parental-control proxy quic security tcp tls tracking udp

Last synced: 01 Apr 2026

https://github.com/cipherstash/ore.rs

Order-revealing encryption library used by the CipherStash searchable encryption platform.

cryptography encryption rust searchable-encryption security

Last synced: 05 May 2026

https://github.com/embetrix/meta-oqs

OpenEmbedded/Yocto layer dedicated to Post-Quantum Cryptography providing experimental integration of quantum-safe algorithms to embedded linux

crypto-agility cryptography embedded-linux embedded-systems open-quantum-safe openembedded oqs post-quantum-cryptography pqcrypto security yocto

Last synced: 02 Apr 2026

https://github.com/webpwnized/mutillidae-dockerhub

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security enthusiasts.

application cyber-security cybersecurity docker docker-compose environment lab learning-labs mysql owasp owasp-top-10 security training web

Last synced: 13 Jul 2025

https://github.com/olivier127/rbac-bundle

PhpRBACBundle is symfony 7 bundle with full access control library for PHP. It provides NIST Level 2 Standard Hierarchical Role Based Access Control as an easy to use library to PHP developers. It's a rework of the phprbac.net library made by OWASP for synfony 7

access-control access-management acl authorization permission permissions php phprbac rbac security symfony-bundle symfony6

Last synced: 10 Oct 2025

https://github.com/benrayfield/wikibinator203

Lambda called on lambda finds/creates lambda, each with lazy-evaled 256 bit global DAG ids. Each lambda has 2 child lambdas. A kind of number that is a universal-pattern-calculus-combinator. Axgob.js (in dagball project, lib dir) is incomplete newer version of this. A fork-editable multiverse of all possible lambdas.

antivirus combinator drag-and-drop evolutionary-algorithms game-theory games googolplex gpu lambda lazy-evaluation massively-multiplayer merkle-tree neuralnet number-crunching number-theory pattern-calculus peer-to-peer science security zero-knowledge-proof

Last synced: 10 Jul 2025

https://github.com/lkorth/auto-fi

An Android app to automatically connect to open wifi networks and tunnel traffic over a VPN

android openvpn security vpn wifi

Last synced: 09 Oct 2025

https://github.com/function61/passitron

Hardware-based password/SSH key/secret manager for people serious about security

hardware-security-module keepass keepass-related raspberry-pi secret-management security store-secrets

Last synced: 09 Oct 2025

https://github.com/vulsio/go-msfdb

CVEs <--> Metasploit-Framework modules

cve cve-search golang metasploit security

Last synced: 26 Oct 2025

https://github.com/securesauce/precli

Precaution CLI - command line static application security testing tool

command-line go java python sast security security-tools static-analysis static-code-analysis

Last synced: 09 Apr 2025

https://github.com/imagemlt/webshellmanager

WebShellManager build on cpp with libcurl

cpp libcurl security

Last synced: 28 Jul 2025

https://github.com/rnehra01/web-cheats

Exploit web-vulnerabilities

code-injection security sqli web

Last synced: 03 Jan 2026

https://github.com/reviewdog/action-detect-secrets

GitHub Action: Run detect-secrets with reviewdog

detect-secrets github-actions review reviewdog security

Last synced: 12 Jul 2025

https://github.com/teambion/kubectl-irsa

The kubectl plugin which allows us to test IRSA configuration AWS sa

aws irsa kubectl kubernetes oidc security

Last synced: 18 Aug 2025

https://github.com/leechristensen/getntlmchallenge

Obtains a crackable hash for the current user account

ntlm security

Last synced: 26 Jun 2025

https://github.com/tmaestrini/easygovernance

governance and validation for configuration baselines in M365 โ€“ made as easy as possible

governance microsoft365 powershell provisioning security

Last synced: 07 May 2025

https://github.com/sap-archive/security-research-differentially-private-generative-models

SAP Security research sample code and tutorials for generating differentially private synthetic datasets using generative deep learning models

dp-gans dp-vae sample sample-code security

Last synced: 11 Apr 2025

https://github.com/upinar/contrastapi

Security intelligence MCP server for AI agents โ€” 47 tools + 7 Resources + 3 Prompts: CVE/EPSS/KEV (340K+), MITRE CWE/ATLAS/D3FEND, domain recon, IOC threat intel, OSINT, code security, web intelligence (robots.txt, redirects, email verify, brand, SEO). Free, no API key, 100 req/hr.

ai-agents ai-security api claude cve cybersecurity domain-recon email-validation llm-tools mcp mitre-atlas mitre-d3fend model-context-protocol osint security threat-intelligence vulnerability-management web-intel

Last synced: 17 May 2026

https://github.com/github/entitlements-github-plugin

Entitlements plugin to manage GitHub Orgs and Team memberships and access

entitlements github iam security

Last synced: 09 Apr 2025

https://github.com/aligent/magento2-pci-4-compatibility

Magento 2 module that provides compatibility with PCI DSS 4.0 requirements

magento2 pci-dss security

Last synced: 01 Jul 2025

https://github.com/mezantrop/sclocka

The real screensaver/lock for terminals

c pty screenlock screenlocker screensaver security terminal terminal-based

Last synced: 07 May 2025

https://github.com/luke-park/swiftgcm

An implementation of Galois/Counter Mode for Swift 4.0.

aes encryption gcm security swift swift4 symmetric-key-cryptography

Last synced: 18 Feb 2026

https://github.com/siemens/libuta

Unified Trust Anchor Library

security tpm2 trust-anchor

Last synced: 29 Jun 2025

https://github.com/snyk/artifactory-snyk-security-plugin

Allow Artifactory users to test their applications against the Snyk vulnerability database

artifactory security

Last synced: 16 Jan 2026

https://github.com/cassanof/safe-llvm

LLVM Without The ROP Gadgets!

buffer-overflow compilers security

Last synced: 13 Apr 2025

https://github.com/hupe1980/aisploit

๐Ÿค–๐Ÿ›ก๏ธ๐Ÿ”๐Ÿ”’๐Ÿ”‘ Tiny package designed to support red teams and penetration testers in exploiting large language model AI solutions.

ai ai-red-team generative-ai langchain llm pentest red-team red-team-tools responsible-ai security

Last synced: 16 Apr 2025

https://github.com/bendrucker/terraform-credentials-keychain

A Terraform credentials helper that stores your credentials in the system keychain

keychain security terraform terraform-cloud

Last synced: 21 Jul 2025

https://github.com/vi/syscall_limiter

Start Linux programs with only selected syscalls enabled (libseccomp-based)

libseccomp linux seccomp security syscalls

Last synced: 15 Apr 2025

https://github.com/SOMEGOSPODINPJ/i2pchat

๐ŸŒ€ i2pchat's old repo. This repo is deprecated in favor of https://github.com/i2pchat/i2pchat which is now the main repo.

anonymity i2p i2p-chat instant-messaging messenger privacy security

Last synced: 13 Sep 2025

https://github.com/arya-f4/worldshellfinder

Web Shell finder using grep, where it has wordlist around the world to grep inside using regex and wordlist. So Lightweight and fast!

backdoor backdoor-defense backdoor-finder cyber-security cybersecurity finder finder-shell security security-scanner shell shell-detection shell-detector shell-finder shell-script web-shell webshell worldfind worldshellfinder

Last synced: 15 Apr 2025

https://github.com/joaoassalim/weapons-and-knives-detector-with-yolov8

Weapons and Knives Detection Using YOLO v8 for Surveillance System

cnn security torch weapon yolo yolov8

Last synced: 14 Apr 2025

https://github.com/alyssais/secure-pbcopy

pbcopy(1) replacement that marks data as confidential

clipboard macos nspasteboard security

Last synced: 18 Oct 2025

https://github.com/wolfssl/wolfprovider

wolfCrypt and wolfCrypt FIPS provider for OpenSSL

cryptography fips fips-140-2 fips-140-3 openssl openssl-provider security wolfcrypt wolfssl

Last synced: 11 Feb 2026

https://github.com/girorme/binoculo

Binoculo is a lightning-fast banner grabbing tool built with Elixir, designed to swiftly retrieve service banners from target hosts

banner-grabbing elixir networking pnscan redteam security security-tools sockets

Last synced: 26 Feb 2026

https://github.com/hsz/webpack-nodesecurity-plugin

Run Node Security check on your package.json file using Webpack

javascript node-security nodejs npm security webpack

Last synced: 10 Apr 2025

https://github.com/codingo/cracknet

A .net Crackme Challenge made for the SecTalks Brisbane 2017 Capture the Flag Event. Writeup/solution included.

capture-the-flag challenge challenges ctf ctf-challenges ctf-solutions ctf-writeups decompile ida radare2 reverse-engineering security vulnerable vulnerable-application writeup

Last synced: 16 Sep 2025

https://github.com/jenkinsci/oidc-provider-plugin

OpenID Connect Provider Plugin for Jenkins

aws google-cloud security

Last synced: 17 Feb 2026

https://github.com/ait-aecid/kyoushi-environment

Scripts to deploy virtual testbed for log data analysis and anomaly detection.

anomaly-detection cyber-attacks data-mining hids ids kyoushi log-data logs monitoring nids security simulation

Last synced: 20 Jan 2026

https://github.com/zelon88/registry_monitor

A Windows script to monitor registry hives for modifications & notify you when modifications have occured.

admin-tools defender notifications registry registry-monitor security vbs windows

Last synced: 05 May 2025

https://github.com/fisco-bcos/scstudio

Making Smart Contract Development More Secure and Easier

blockchain security smart-contracts

Last synced: 15 Apr 2025

https://github.com/egphilippov1/i2pchat

๐ŸŒ€ i2pchat's old repo. This repo is deprecated in favor of https://github.com/i2pchat/i2pchat which is now the main repo.

anonymity i2p i2p-chat instant-messaging messenger privacy security

Last synced: 02 Oct 2025

https://github.com/markiv/swiftui-unscreenshottable

Prevent screenshots and screen sharing of sensitive content on iOS.

ios privacy screenshot security sensitive swiftui

Last synced: 01 Apr 2025

https://github.com/gastonchenet/hopmytrack

๐Ÿ•ต๏ธโ€โ™‚๏ธ HopMyTrack is an powerful OSINT tool to check for your information around the world wide web.

bun cli information-gathering intelligence osint security typescript

Last synced: 15 Apr 2025

https://github.com/aripalo/vegas-credentials

AWS credential_process utility to assume AWS IAM Roles with Yubikey Touch and Authenticator App TOTP MFA to provide temporary session credentials; With encrypted caching and support for automatic credential refresh.

amazon-web-services aws credential-helper credential-process credential-provider iam mfa multifactor-authentication security ykman yubikey

Last synced: 11 Sep 2025

https://github.com/cloudina/hawk

Multi Cloud Antivirus Scanning API using YARA and CLAMAV for AWS S3, Azure Blob Storage and GCP Cloud Storage

antivirus api-rest aws azure azure-blob-storage clamav-antivirus clamav-scanning cloud cloudsecurity gcp gcp-cloud-storage infosec rest-api s3scanner security security-tools virus-scanner virus-scanning yara yara-scanner

Last synced: 11 Jan 2026

https://github.com/ulfox/nettrust

Dynamic Outbound Firewall Authorizer

dns-proxy firewall nftables security

Last synced: 12 May 2025

https://github.com/oopsguy/kaptcha-spring-boot

Kaptcha Spring Boot Starter help you use Google Kaptcha with Spring Boot easier. ไธ€ไธช็ฎ€ๅ•ๅฐ่ฃ…ไบ† Kaptcha ้ชŒ่ฏ็ ๅบ“็š„ Spring Boot Starter

captcha java kaptcha security spring spring-boot springboot starter verify yaml

Last synced: 04 Apr 2026

https://github.com/ragibhasan894/phishing_website_detection

This project is based on detecting phishing/fraud/malicious website using Random Forest Classification formula. Implemented using Python programming language and Django framework.

cyber-security data-mining data-science django django-framework machine-learning phsihing python random-forest scikit-learn security

Last synced: 26 Oct 2025

https://github.com/SasanLabs/owasp-zap-fileupload-addon

OWASP ZAP add-on for finding vulnerabilities in File Upload functionality.

dast fileupload hacktoberfest java sasanlabs scanner security security-tools zap zaproxy

Last synced: 11 Jul 2025

https://github.com/brittandeyoung/ckia

ckia (cloud know it all), an open source tool for making recommendations for target cloud account. An open source alternative to AWS Trusted Advisor.

aws cost-optimization security

Last synced: 05 May 2025

https://github.com/gdgd009xcd/RequestRecorder

A ZAPROXY Add-on that allows testing of web application vulnerabilities by recording complex multi-step sequences. You can test applications that need to access pages in a specific order, such as shopping carts or registration of member information.

activescan addon authentication csrf multistep multistep-form security security-testing security-tools vulnerability-scanners web-security webcrawler websecurity zap-extension zaproxy

Last synced: 31 Oct 2025