An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/debfx/runjail

ad-hoc sandboxes on Linux

linux sandbox seccomp security

Last synced: 21 Jan 2026

https://github.com/ibrahmsql/gocat

Modern, cross-platform netcat alternative written in Go with enhanced features for network communication, debugging, and security testing.

cli cross-platform go golang modern-netcat netcat network-debugging networking penetration-testing port-scanner security tcp udp

Last synced: 17 Mar 2026

https://github.com/zekiunal/openssl-certificate-authority-guide

Bu kılavuz, OpenSSL komut satırı araçlarını kullanarak kendi sertifika yetkilinizi (CA) kurup nasıl kullanacağınızı gösterir.

certificate-authority openssl security tls turkce turkish

Last synced: 28 Jan 2026

https://github.com/uzyn/passcay

🦎🔑 Secure & fast Passkey (WebAuthn) library for Zig

authentication passkey relying-party security webauthn zig zig-package ziglang

Last synced: 13 Jun 2025

https://github.com/rouanw/npm-audit-helper

Helps you understand and work through npm audit results

npm npm-audit security security-vulnerability

Last synced: 24 Apr 2025

https://github.com/nodesource/nscm

The NodeSource Certified Modules command line utility

certified-modules certified-packages cli modules nodejs nodesource npm nscm packages security whitelist

Last synced: 14 Jan 2026

https://github.com/ekeih/kube-shodan

Register your Kubernetes IPs to monitor.shodan.io

audit kubernetes monitoring security shodan

Last synced: 14 Jan 2026

https://github.com/futurragroup/securitykit

SecurityKit is a lightweight, easy-to-use Swift library that helps protect iOS apps according to the OWASP MASVS standard, chapter v8, providing an advanced security and anti-tampering layer.

cydia encryption-decryption jailbreak jailbreaking obfuscation owasp reverse-engineering security swift vpn

Last synced: 04 Mar 2026

https://github.com/eteissonniere/opsec-checklist

Checklist of simple and not so simple things to enhance your OPSEC.

checklist opsec security

Last synced: 27 Feb 2026

https://github.com/didinj/spring-boot-security-rest

Securing RESTful API with Spring Boot, Security, and Data MongoDB

api data example mongodb rest restful security spring springboot tutorial

Last synced: 05 Aug 2025

https://github.com/fkie-cad/ipal_transcriber

Industrial protocol transcriber - a common representation of industrial communication as input for protocol-independent industrial intrusion detection systems.

cip ids iec-60870-5-104 iec-61162-450 industry ipal modbus network nmea0183 protocols s7 security

Last synced: 06 May 2025

https://github.com/davidwells/dom-guard

🔐 Lock DOM node contents to protect people against scammers using browser devtools

dom-manipulation security

Last synced: 12 Apr 2025

https://github.com/hardenedlinux/lego-hardening

Hardening your OS/Profile is like building with LEGO, incorporating a couple of Grsecurity features and implementing aggressive security settings

apparmor hardening linux nixos nixos-config security

Last synced: 22 Apr 2025

https://github.com/cypwnpwnsocute/RedisHoneyPot

High Interaction Honeypot Solution for Redis protocol

gev golang honeypot security

Last synced: 01 Apr 2025

https://github.com/codingchili/enigmatic-mouse

The enigmatic mouse will keep your passwords safe - password manager on Android in Kotlin.

android android-application kotlin password-generator password-manager passwords security

Last synced: 11 Aug 2025

https://github.com/mk-fg/acme-cert-tool

Simple one-stop tool to manage X.509/TLS certs and all the ACME CA authorization stuff

acme-client certificates cryptography letsencrypt python security sysadmin tls tool web-pki x509

Last synced: 23 Apr 2025

https://github.com/subrose/thorn

🌹 Thorn is an open-source, data privacy vault to store and manage PII in a fully compliant manner.

ccpa data-privacy encryption gdpr hipaa pci pci-dss privacy privacy-by-default privacy-by-design privacy-engineering security subrose

Last synced: 10 Mar 2026

https://github.com/grapheneos-archive/kernel_msm-coral

Kernel sources for the Pixel 4, Pixel 4 XL and Pixel 4a.

android grapheneos privacy security

Last synced: 13 Apr 2025

https://github.com/tolitius/hubble

hubbling the universe nebula by nebula

clojure configuration consul security vault

Last synced: 23 Apr 2025

https://github.com/sagi/node-dns-over-tls

DNS-over-TLS API for Node.js

dns dns-over-tls dnstls nodejs privacy security tls

Last synced: 05 May 2025

https://github.com/ctnkaan/postman-sentinel

Postman Sentinel (Previously Postman Student Helper) is the Discord Bot that specializes in server security. It also has some fun commands to lighten up the mood. This bot has blocked more than 900 attacks!

bot discord discord-bot discord-js discrodjs javascript nodejs postman security typescript

Last synced: 23 Jun 2025

https://github.com/sqlsec/intranetsecurity

内网安全从零开始红队教程,这可能是国内最系统最适合小白的内网安全教程。

course mkdocs-site security

Last synced: 22 Apr 2025

https://github.com/jay-johnson/nerfball

Want to see how something like Internet Chemotherapy works without bricking your own vms? This is a jail to reduce the python runtime from doing bad things on the host when running untrusted code. Nerf what you do not need :space_invader: + :bug: :soccer: :football: :whale:

docker jail python reverse-engineering runtime-system security security-audit security-hardening untrusted-code

Last synced: 14 Apr 2025

https://github.com/jasondrawdy/shellgen

Dynamic and extensible shell code generator with multiple output types which can be formatted in binary, hexadecimal, and the typical shellcode output standard.

cryptography dotnet dynamic generator library security shellcode utilities

Last synced: 22 Apr 2025

https://github.com/alajusticia/laravel-logins

🔑 Sessions and Sanctum tokens tracking in Laravel apps. User notifications on new login, multiple remember tokens, IP geolocation, User-Agent parser.

authentication geolocation guard ip laravel login remember security session user-agent

Last synced: 10 Mar 2026

https://github.com/tagomaru/truffle-sca2t

Smart contract auditing assistant tool for Truffle Framework.

auditing ethereum ethereum-contract security smartcontract solidity

Last synced: 13 May 2025

https://github.com/yojiwatanabe/networkalarm

A tool to monitor local network traffic for possible security vulnerabilities. Warns user against possible nmap scans, Nikto scans, credentials sent in-the-clear, and shellshock attacks. Currently supports live monitoring and network capture (pcap) scanning.

hack-detection network-capture network-monitoring networking pcap scanning security security-automation security-scanner security-vulnerability

Last synced: 11 May 2025

https://github.com/bl4ck44/sandboxed

Menú de herramientas para análisis de malware y virus informáticos.

analysis bash bash-script linux python python3 remnux sandbox sandboxed security security-tools

Last synced: 12 Aug 2025

https://github.com/containers/space-grade-linux

Space Grade Linux is an advanced Linux-based operating system designed to meet the rigorous demands of aerospace, satellite, and other high-reliability environments.

autonomous cubesat cubesatellite cubesats kernel linux qm security space spaceship

Last synced: 06 Oct 2025

https://github.com/enigmatikk/torch

Torch is a fast, secure, and production-ready web framework for Rust. Built on Tokio and Hyper, it provides everything you need to build modern web applications with minimal configuration.

async backend hyper middleware performance rest-api rust security tokio tokio-rs web-framework

Last synced: 14 Oct 2025

https://github.com/Perufitlife/supabase-security-skill

Open-source Supabase security auditor: detects RLS-disabled tables, public buckets, exposed SECURITY DEFINER functions. Active anonymous probe confirms each leak with the anon key.

audit auditor cli devsecops leak mit-license nodejs open-source penetration-testing postgres rls scanner security security-audit supabase typescript vulnerability

Last synced: 25 Jun 2026

https://github.com/aydinnyunus/cve-2024-24576-exploit

CVE-2024-24576 Proof of Concept

1-day exploit rust security

Last synced: 29 Apr 2025

https://github.com/advanced-security/probot-security-alerts

Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts

ghas nodejs probot sample security security-alerts typescript

Last synced: 23 Oct 2025

https://github.com/airlock/microgateway

Artifacts for Airlock Microgateway, a Kubernetes native WAAP (Web Application and API Protection) solution to protect microservices.

airlock cilium ergon gateway-api istio k8s kubernetes kubernetes-operator microgateway openshift security waap waf web-application-security

Last synced: 13 May 2026

https://github.com/prontolabs/pronto-brakeman

Pronto runner for Brakeman, security vulnerability scanner for RoR

analyzer brakeman pronto pronto-runner ruby-on-rails security security-scanner

Last synced: 24 Oct 2025

https://github.com/checkmarx/ast-vscode-extension

The Checkmarx One Visual Studio Code plugin (extension) enables you to import results from a Checkmarx One scan directly into your VS Code console. You can view the vulnerabilities that were identified in your source code and navigate directly to the vulnerable code in the editor.

checkmarx checkmarx-ast security vscode-extension

Last synced: 02 Apr 2026

https://github.com/melonattacker/threat-thinker

AI-powered threat modeling that turns architecture diagrams into actionable risks

architecture diagrams python risk-analytics security security-tools threat-analysis threat-modelling

Last synced: 02 Apr 2026

https://github.com/sitebatch/waffle-go

Waffle is a library for integrating a Web Application Firewall (WAF) into Go applications.

golang security waf

Last synced: 12 Jan 2026

https://github.com/vincd/savoir

Savoir is a tool to perform tasks during internal security assessment

kerberos pentesting security windows

Last synced: 20 Jan 2026

https://github.com/plackemacher/secure_compare

A secure compare for Elixir.

elixir library package security

Last synced: 12 Apr 2025

https://github.com/chadmcox/azure_ad_conditional_access_policies

Tools to help implement Conditional Access Policies in Azure AD

azuread azuread-b2b azuread-reporting conditional-access mfa security

Last synced: 28 Jun 2025

https://github.com/hackeralert/heavypin

A lightweight HTTPS-based proxy for bypassing firewalls.

censorship circumvention firewall freedom https networking privacy proxy security vpn

Last synced: 17 Jun 2025

https://github.com/nimacodez/keygn

🪄 A Command Line Tool To Make random keys with different lengths for your different purposes.

authentication cli cmd decode encode hashing jwt jwt-token security token

Last synced: 14 Apr 2025

https://github.com/adrianlshaw/lightverifier

Simple and scalable Linux tools for verifying TPM-based remote attestations 🔬⚖️🔐⛓📏📜

attestation hacktoberfest ima security security-audit tcg tpm tpm-quote

Last synced: 01 Apr 2025

https://github.com/sebastienrousseau/password-generator

A fast, simple, and powerful open-source utility tool for generating strong, unique, and random passwords. The Password Generator supports various types of passwords including base64-encoded, memorable, and complex strong passwords.

crypto cryptography dictionary dictionary-tools generator javascript memorable-passphrases memorable-passwords nodejs npm passgen passgenerator password password-generator passwords security security-tools yeoman

Last synced: 16 Mar 2025

https://github.com/slok/bilrost

Kubernetes controller/operator to set up OAUTH2/OIDC security on any ingress based service

controller ingress k8s kubernetes oauth2 oidc operator proxy security

Last synced: 25 Mar 2025

https://github.com/MindPatch/pmg

Extract parameters/paths from urls

bugbounty bugbounty-tool bughunting python regex security

Last synced: 11 Jul 2025

https://github.com/cipherstash/encrypt-query-language

Index and search encrypted data in PostgreSQL with SQL

encryption encryption-in-use postgres postgresql security

Last synced: 09 Apr 2025

https://github.com/reinershir/lui-auth

一个使用简单的安全防护、权限验证、身份验证工具,无复杂配置,只需依赖jar并简单配置即可使用,目前拥有功能:角色、菜单、权限集成管理,IP限流,内部服务双向验证、自动打印请求日志等。 A simple and secure protection tool that is easy to use, with permission verification and identity authentication. No complex configuration is required, just rely on the jar file and simple configuration to use it.

authentication-backend lui-auth modified-preorder-tree-traversal permission security

Last synced: 14 Jan 2026

https://github.com/kasukusakura/kimiroyli

Kimiroyli 是一个致力于 JVM 安全的安全管理框架, 致力于保护整个系统不受恶意外部代码攻击 (WIP)

java javaagent jvm security

Last synced: 26 Apr 2025

https://github.com/veinar/envcloak

A secure and easy-to-use tool for managing sensitive data with built-in encryption, decryption, and key management. Protect your secrets during development, testing, and deployment with CLI command + Python library support.

cicd cicd-pipeline cli-tool decryption devops encryption encryption-decryption env environment-variables python-library secret-management secret-sharing secrets security sensitive-data-security tool tooling tools validation

Last synced: 11 Sep 2025

https://github.com/nebulab/umarell

All in one Ruby static code analyzer

linter rails ruby security static-analysis

Last synced: 14 Apr 2025

https://github.com/jpcertcc/toolanalysisresultsheet_jp

分析ツール結果シート

security

Last synced: 09 Apr 2025

https://github.com/hackeralert/paircrypt

A simple tool to securely communicate with others.

encryption password privacy security security-tools tweetnacl-js x25519 xsalsa20poly1305

Last synced: 10 Apr 2025

https://github.com/shellrow/nscan

Network scan tool for host and service discovery. Written in Rust.

cli-app cross-platform network rust scanner security

Last synced: 13 Apr 2025

https://github.com/fortify/ssc-restapi-client

Communicate with Fortify Software Security Center through REST API in java, a swagger generated client

api api-client application-security fortify fortify-api fortify-ssc integration openapi security

Last synced: 08 Apr 2026

https://github.com/rasoolsomji/django-security

Django is great! Here are some ways to make it safer

audit csrf cybersecurity django nginx owasp pentest python security vulnerabilities xss

Last synced: 14 Mar 2025

https://github.com/tersesystems/ocaps

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 08 Mar 2026

https://github.com/xi/ximatrix

filter net requests according to source, destination and type

ad-block firefox-extension security umatrix webextension

Last synced: 29 Jul 2025

https://github.com/prawee/cyber-security

Note for cyber security class

docker git security strapi

Last synced: 22 Sep 2025

https://tersesystems.github.io/ocaps/

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 23 Sep 2025

https://github.com/sozercan/guac-ai-mole

🥑 Inspect and understand an organization's software supply chain that enables stakeholders to make actionable decisions about software supply chain security

ai chatgpt gpt-4 guac openai sbom secure-supply-chain security security-tools streamlit supply-chain-security

Last synced: 28 Sep 2025

https://github.com/m-thirumal/oauth-authorization-server

New OAuth2.1 Authorization Server using Spring Boot & PostgreSQL

authentication oauth oauth2 oauth2-1 oauth2-server postgresql security spring-boot

Last synced: 14 Aug 2025

https://github.com/luizbizzio/siteguard

🛡️ A JavaScript utility that detects when developer tools are opened in web browsers. It blocks right-click actions, drag events, and certain keyboard shortcuts to enhance the protection of web content from unauthorized inspection or tampering.

blocker content-protection copy detector devtools iot javascript legacy library lock open-source prevent privacy safety script security siteguard web web-tools website

Last synced: 27 Apr 2025

https://github.com/joshuaquek/quickencrypt

Easily generate RSA Public-Private Keypairs and use them for secure asymmetric one-way encryption and decryption! - npmjs.com/package/quick-encrypt

asymmetric-cryptography cryptography decrypt decryption encrypt encryption javascript nodejs npm-package rsa security

Last synced: 05 May 2025

https://github.com/guiofsaints/backup-anything

Scripts to create a backup of anything.

backup bash bucket database mongodb mysql postgresql s3 script security tools

Last synced: 21 Nov 2025

https://github.com/thejefflarson/soundcheck

Simple security reviews for AI agents

llms security skills

Last synced: 10 Jun 2026

https://github.com/akshatvg/vulnerability-testing-solutions

Website for testing and preventing different attacks like XSS, SQL Injection & Spoofing for Nasscom (ISAA) Project.

audit cyber-security security spoofing sql-injection testing vulnerability website xss

Last synced: 11 Apr 2025

https://github.com/xi/xiMatrix

filter net requests according to source, destination and type

ad-block firefox-extension security umatrix webextension

Last synced: 26 Mar 2025

https://github.com/ko-ko-ko/php-assert

Fast flexible php assert

assert php security validation

Last synced: 11 Jan 2026

https://github.com/grapheneos/device_common

Common device sources.

android grapheneos security

Last synced: 07 Jul 2025

https://github.com/dutchcoders/identify

Identify web application versions

fingerprint security

Last synced: 11 Apr 2025

https://github.com/agent-receipts/obsigna

Agent Receipts — cryptographically signed audit trails for AI agent actions. Protocol spec, SDKs (Go, TypeScript, Python), and MCP proxy.

agent-receipts ai ai-agents audit cryptography ed25519 golang mcp model-context-protocol python receipts security typescript verifiable-credentials w3c-vc

Last synced: 12 Jun 2026

https://github.com/t2minator/mbp-tails

How to get Tails working on T2 Apple device (e.g. 2019 MacBook Pro) without needing external keyboard/mouse.

anonymity anonymous apple apple-t2 chroot debian debian-linux kernel linux linux-kernel macbook macbookpro macbooks mpb privacy security t2 t2tails tails tor

Last synced: 09 Jul 2025

https://github.com/monish-khatri/security-headers

Package provides a minimal and simple integration to attach OWASP security headers for building a secure Laravel application.

composer-package laravel owasp-top-10 php8 security security-headers

Last synced: 10 Apr 2025

https://github.com/polymer/polymer-resin

XSS mitigation for Polymer webcomponents that uses safe html type contracts

polymer security webcomponents xss

Last synced: 02 May 2025

https://github.com/danieljustus/symaira-vault

🔐 The password manager for terminal users and AI agents. Age-encrypted, keyring-cached, MCP-ready. Zero telemetry.

age-encryption agent-skills ai-agents claude-code cli codex-cli golang hermes-agent hermes-skill mcp mcp-server openclaw openclaw-skill opencode own-your-data password-manager security

Last synced: 11 Jun 2026

https://github.com/systemli/mail-tls-helper

Postfix helper for mandatory TLS

postfix postfix-helper python security tls

Last synced: 12 Jul 2025