An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/yashvardhan-kukreja/kube-bench-exporter

:whale: :rocket: Helps you to export your kube-bench reports to multiple targets like Amazon S3 buckets with ease.

aquasec exporter kube-bench kubernetes security

Last synced: 11 Apr 2025

https://github.com/daggerok/csrf-spring-webflux-mustache

This repository is contains example application using spring boot 2.0, webflux, spring security 5, reactive mongodb and mustache template engine: spring security 5, CSRF protection with mustache, spring webflux functional routes security, method security, authorization decision, etc

controller-advice csrf csrf-protection csrf-tokens css-grid css-grid-layout maven mongodb mustache reactive reactive-mongo reactive-programming security spring-boot spring-mvc spring-security spring-web spring-webflux webflux

Last synced: 20 Oct 2025

https://github.com/rix4uni/tldscan

A high-performance domain scanner that discovers active domains by testing multiple Top-Level Domains (TLDs) for given domain names.

bug-bounty bugbounty bugbountytips hacking infosec osint osint-resources osint-tool penetration-testing pentest-tool pentesting recon reconnaissance security security-tools threat-intelligence tldfinder tldscanner

Last synced: 20 Apr 2026

https://github.com/lithnet/ad-password-protection-lists

Banned word lists for use with Lithnet Password Protection for Active Directory

active-directory lithnet-password-protection lpp password security

Last synced: 07 Feb 2026

https://github.com/proxylity/wg-client

Standalone UdpClient-compatible WireGuard client for .NET. Implements the Noise_IKpsk2_25519_ChaChaPoly_BLAKE2s handshake with ChaCha20-Poly1305 transport encryption.

api-client dotnet network-programming security udp wireguard

Last synced: 16 Jun 2026

https://github.com/charlesjones-dev/claude-code-plugins-dev

Automate developer busy work with AI-powered plugins for Claude Code.

ai claude claude-code developer-tools git git-tools llm performance performance-tools security security-tools

Last synced: 01 Apr 2026

https://github.com/tomwechsler/cyber_and_information_security_knowledge_base

A structured knowledge base of cybersecurity and information security standards, frameworks, best practices, and guidelines. Covers key resources such as NIST, ISO/IEC, OWASP, CIS, ISACA, and more — to support professionals, students, and organizations in building a solid foundation for secure systems, compliance, and risk management.

cybersecurity information-security knowledge-base security

Last synced: 13 Feb 2026

https://github.com/docker-secret-operator/dso

Zero-persistence secret injection for Docker. CNCF Sandbox project. AWS, Azure, Vault support.

cncf cncf-sandbox devops docker docker-plugin kubernetes secret-management security

Last synced: 02 Jun 2026

https://github.com/dneprdroid/chrome-poc-demo

Example for the Google Chrome cache attack to inject custom code into web pages (macOS, Linux, browser version: 124.0.6367.62 and older)

attack cache google-chrome poc proof-of-concept security

Last synced: 05 Mar 2026

https://github.com/quodeq/quodeq

AI-powered code quality and security scanner. Open source, MIT, runs locally. <🧭>

ai-tools cli code-analysis code-quality cwe devtools iso-25010 llm open-source python quality-assurance security static-analysis vulnerability-scanner

Last synced: 10 May 2026

https://github.com/rezen/zap-tutorial

WIP - A tutorial for OWASP ZAP

security tutorial zap

Last synced: 30 Aug 2025

https://github.com/ansible/ansible-sign

The `ansible-sign` utility for signing and verifying Ansible project directory contents.

ansible ansible-dev-tools awx cryptography gpg security

Last synced: 01 Aug 2025

https://github.com/mattdl/dua

Source code "Unsupervised Model Personalization while Preserving Privacy and Scalability: An Open Problem." @ CVPR2020

cvpr2020 framework importance personalization privacy scalability security unsupervised-learning

Last synced: 21 Jul 2025

https://github.com/elliotwutingfeng/2fas-backup-decryptor

CLI tool to decrypt backup files exported from the 2FAS Authenticator app. This application is neither affiliated with Two Factor Authentication Service, Inc. nor 2FAS.

2fa 2fas aes aes-gcm android backup cryptography cybersecurity decryption encrypt encryption hmac-sha256 ios linux macos otp pbkdf2 security totp windows

Last synced: 29 Apr 2025

https://github.com/netguru/mobile-security-review

Security review guidelines for mobile projects

android ios owasp security

Last synced: 11 Sep 2025

https://github.com/heartsucker/rust-csrf

Primitives for CSRF protection.

cryptography csrf csrf-protection http rust security

Last synced: 07 Aug 2025

https://github.com/hannesm/ocaml-hkdf

HMAC-based Extract-and-Expand Key Derivation Function (HKDF) (RFC 5869)

hkdf ocaml rfc5869 security

Last synced: 07 Aug 2025

https://github.com/ramborogers/cyberchat

CyberChat - P2P Zero Config Chat and Files

chat golang mdns p2p security

Last synced: 25 Jun 2025

https://github.com/datalux/notification-sniffer

An Android Library that implements a Notification Sniffer

android android-library notifications security sniffing

Last synced: 23 Jul 2025

https://github.com/a3r0id/php-rate-limiting

A simple system to rate-limit site visitors by time interval/request amount.

include measures php rate-limiting security simple turnkey turnkey-script

Last synced: 06 Apr 2025

https://github.com/mishakorzik/detectvpn

Free vpn, tor, datacenter, threat detection on IP

detect detection information ip ipv4 ipv4-address ipv6 ipv6-address security tor vpn

Last synced: 02 Jan 2026

https://github.com/chhayac/awesome-dga

Domain Generation Algorithms research papers, datasets and code

cybersecurity deeplearning dga dga-detection dgapapers domaingenerationalgorithms machinelearning security

Last synced: 02 Jan 2026

https://github.com/lukehinds/fastllm

FastLLM - Rust based LLM Inference API

inference llama llm mistral rust security speed

Last synced: 15 Apr 2025

https://github.com/milouk/sphinx-bullhead

Sphinx Custom Linux Kernel for Bullhead (Nexus 5X)

android battery bullhead kernel lineageos linux-kernel nexus-5x oreo performance security stability

Last synced: 13 May 2025

https://github.com/nsneruno/magisk_detector

Flutter Support for integrating Magisk Detector for Android Application. Based from MagiskDetector.

android android-library c dart flutter flutter-library flutter-plugin magisk ndk root-detection root-detection-bypass security

Last synced: 09 May 2025

https://github.com/teverett/fbsd-secured

Ansible playbook to harden FreeBSD installations

ansible freebsd security

Last synced: 22 Mar 2025

https://github.com/lorddashme/php-simple-captcha

A simple captcha package that fit to any type of web application built on php.

anti-spam captcha free php security simple

Last synced: 13 Apr 2025

https://github.com/MonaxGT/gosddl

GoSDDL converter

go rights sddl security sid windows

Last synced: 11 May 2025

https://github.com/byt3n33dl3/novaoutcast

NOC is an Integration Bypasser, Change PoC Binary to quirks of working with the LLVM.

bypass bypassav docker linux macos security windows

Last synced: 20 Jul 2025

https://github.com/tarzan/leaked_passwords

Checking for leaked passwords through haveibeenpwned v2 API using the hash-range checker

elixir haveibeenpwned leaks password security

Last synced: 24 Jul 2025

https://github.com/sysdiglabs/sysdig-operator

Sysdig agent Operator configure Sysdig platform in your Kubernetes cluster

kubernetes monitoring security sysdig

Last synced: 13 Jul 2025

https://github.com/bytehide/securelocalstorage

SecureLocalStorage for .NET: A simple and lightweight extension that allows you to safely store data locally.

dotnet dotnet-core localstorage security security-tools storage

Last synced: 03 Jan 2026

https://github.com/sleventyeleven/kubernetes-harvester

Credential and sensitive information harvester for kubernetes environments.

devops devops-tools kubernetes kubernetes-harvester oscp security

Last synced: 12 Apr 2025

https://github.com/abhisheknaiidu/arm

Management for users, to upload,download and manage important documents of a particular discipline. We'll be maintaining our Database on CRUD Functionalities.

bootstrap4 css3 dbms dbms-project documents hacktoberfest hacktoberfest2020 html5 js php security ui ux

Last synced: 02 Apr 2026

https://github.com/antgroup/yasa-engine

YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, designed to support multiple programming languages. Built on top of UAST, YASA provides a highly accurate static analysis framework.

antgroup program-analysis security taint-analysis

Last synced: 14 Sep 2025

https://github.com/peter-juhasz/aspnetcoresecurity

Security extensions for ASP.NET Core

asp-net content-security-policy dotnet security

Last synced: 22 Mar 2025

https://github.com/jonlabelle/docker-nmap

Minimal Docker image with Nmap Network Security Scanner pre-installed.

alpine docker docker-image linux network nmap security

Last synced: 21 Mar 2025

https://github.com/hartwork/antijack

:ninja: seccomp-based anti-TTY-hijacking proof-of-concept (prevents TIOCSTI and TIOCLINUX)

c99 command-injection doas ioctl libseccomp linux seccomp seccomp-filter seccomp-filtering seccomp-tools security sudo syscall-filter syscalls tioclinux tiocsti tty

Last synced: 18 Sep 2025

https://github.com/experience-monks/adviser

Jam3 quality advisor. Integrates checking for best practices at Jam3

accessibility best-practices performance security

Last synced: 14 May 2025

https://github.com/ancat/meatball

A host monitoring proof of concept that uses python and ebpf to watch for bad behavior and optionally take action on it.

ebpf host-monitoring python security

Last synced: 06 May 2025

https://github.com/cloudposse/terraform-aws-ec2-admin-server

Terraform Module for providing a EC2 instance capable of running admin tasks and provisioned by Ansible

ansible aws bastion ec2 instance security ssh terraform

Last synced: 29 Apr 2025

https://github.com/eqstlab/cve-2024-8353

GiveWP PHP Object Injection exploit

cve exploit php poc proof-of-concept security vulnerability

Last synced: 19 Jun 2025

https://github.com/ignis-sec/cve-details-extension

Hover over cve id's on the website to get a helpful summary.

cve infosec security

Last synced: 06 May 2025

https://github.com/manuelberrueta/bst

🏴‍☠️ BST is an ever-evolving collection of 🛠 tools to help in security and administration tasks 😉

applicationsecurity appsec azure blueteam cloud containers dfir incident-response kubernetes offensive-security offensivesecurity redteam redteam-tools redteaming security threat-hunting threathunting

Last synced: 23 Jun 2025

https://github.com/ctrlaltdev/rtlo-attack

☠️ Python script and example file to test the Right-To-Left Override attack

attachments attack bash filename infosec python rlo rtlo security unicode

Last synced: 04 Apr 2025

https://github.com/piomin/sample-secure-eureka-discovery

secure discovery between client and server with spring cloud netflix eureka and spring boot

https keytool netflix-eureka security spring-boot spring-cloud spring-cloud-netflix ssl

Last synced: 16 Jun 2025

https://github.com/polachok/seccomp-sys

low-level bindings to libseccomp

linux rust rust-library seccomp security

Last synced: 16 Jun 2025

https://github.com/parasoft/run-cpptest-action

A GitHub Action for running Parasoft C/C++test analysis

analysis c code compliance cpp cpptest lint parasoft quality security static test testing

Last synced: 11 Jul 2025

https://github.com/univ-of-utah-marriott-library-apple/app-playpen

A python GUI application that provides framework & automation to secure macOS applications with exceptional requirements.

macadmin macos nibbler py2app python sandbox security

Last synced: 10 Apr 2025

https://github.com/yash-rajsingh/despoina

Website that lets you:- • Generate strong new passwords • Check the strength of your password and • Find the time it would take a hacker to bruteforce your password

password security security-tools

Last synced: 19 Mar 2025

https://github.com/brosck/processinjection

「💉」Simple Windows Process Injection Script

hacking injection process security shellcode windows

Last synced: 06 May 2025

https://github.com/geekmasher/quibble

A container security tool written in Rust focusing on making security easy for compose based configurations

containers docker docker-compose podman podman-compose security

Last synced: 20 Mar 2025

https://github.com/amboxer21/sshmonitor

Notifies you of any ssh attempts to your computer, whether the attempts are successful or not. Please fork instead of clone.

c c-programming daemon gtk2 gui linux monitor notify pytailf python python2 python3 security ssh ssh-monitor

Last synced: 30 Apr 2025

https://github.com/dajiaji/pyhpke

A Python Implementation of HPKE (Hybrid Public Key Encryption)

cryptography e2ee encryption hpke security

Last synced: 17 Mar 2025

https://gitlab.com/ignis-build/sarif-converter

Convert from [SARIF](https://sarifweb.azurewebsites.net/) to GitLab Code Quality and SAST report.

SARIF SAST gitlab go security

Last synced: 20 Mar 2025

https://github.com/cerbos/express-jwt-cerbos

An example application of integrating Cerbos with an Express server using JSON Web Tokens - via express-jwt - for authentication.

authorization cerbos express jwt node security

Last synced: 21 Jun 2025

https://github.com/rust-ammonia/rust-content-security-policy

Parse and validate Web Content-Security-Policy level 3

crates security web

Last synced: 21 Jun 2025

https://github.com/germdz/andesuser

Base para otros proyectos con la parte de usuarios resuelta

base php security symfony symfony-component

Last synced: 10 Apr 2025

https://github.com/jbrower95/crop

ROP Payload Compiler

compiler rop rop-gadgets security

Last synced: 07 Jul 2025

https://github.com/dwoz/salt-rekey

Re-key Salt masters and minions

minions privatekey publickey salt-master security

Last synced: 29 Apr 2025

https://github.com/tomatophp/filament-developer-gate

Secure your selected route by using a middleware with static password for developers only

developer-access developer-tools filamentphp filamentphp-plugin gate security

Last synced: 10 Oct 2025

https://github.com/voku/anti-xss-twig

AntiXSS for Twig

hacktoberfest html php php7 security xss

Last synced: 09 Apr 2025

https://github.com/betagouv/sillon

A knowledge base and recommendations in the choices of implementation of a digital product within a French administration (but not only)

cicd devops dsfr figma french guide guidelines javascript nextjs nodejs postgresql prisma product project react security storybook testing trpc typescript

Last synced: 27 Jul 2025

https://github.com/cerberauth/openapi-oathkeeper

openapi-oathkeeper is a CLI for generating Ory Oathkeeper rules from an OpenAPI 3 contract and save a lot of time and effort, especially for larger projects with many endpoints or many services.

api-rest authorization cybersecurity golang oathkeeper openapi openapi3 ory ory-oathkeeper security swagger

Last synced: 14 Apr 2026

https://github.com/damienbod/bff-aspnetcore-angular-downstream-api

BFF using downstream API and OAuth client credentials

angular aspnetcore bff iam nx oauth openidconnect security

Last synced: 19 Apr 2025

https://github.com/cdimascio/express-openapi-validator-example

simple openapi validation examplewith express-openapi-validator

api express file-upload openapi request-validation response-validation security validation

Last synced: 28 Apr 2025

https://github.com/supercowpowers/scp-labs

SCP Labs (Open Source Team for SuperCowPowers)

data-analysis data-science pandas python scikit-learn security

Last synced: 06 May 2025

https://github.com/federicoceratto/nim-seccomp

Seccomp (libseccomp2) adapter for the Nim language

nim nim-lang seccomp security

Last synced: 09 Apr 2025

https://github.com/anvilsecure/hominoid

Proof of concept for an anti-phishing browser plugin, working by comparing pages screenshots with perceptual hashing algorithms.

browser-extension perceptual-hashing phishing proof-of-concept security

Last synced: 07 Jan 2026

https://github.com/nitrokey/openpgp-card

Sample code of the OpenPGP Card

cryptography security smartcard

Last synced: 06 Jan 2026

https://github.com/wh0isdxk/Security-by-Design

Conceitos sobre Security-by-Design e alguns passos sobre como implementar isso no dia-a-dia.

information-security security security-by-design seguranca seguranca-da-informacao

Last synced: 10 Jul 2025

https://github.com/inpher/sb

Resilient SSH bastion providing authentication, authorization, traceability and auditability

bastion devops infrastructure jumphost security ssh ttyrec

Last synced: 14 Jan 2026

https://github.com/t0mer/SafeUrl

SafeUrl is a small and lite [FastAPI]( https://fastapi.tiangolo.com/) based web application intended to help us validate any URL safely before clicking it.

docker fastapi ipinfo python security spam virustotal

Last synced: 16 Apr 2025

https://github.com/wp-cli/super-admin-command

Lists, adds, or removes super admin users on a multisite installation.

admin cli hacktoberfest security superadmin wordpress wp-cli wp-cli-package

Last synced: 12 Jun 2025

https://github.com/quarkiverse/quarkus-antivirus

Virus scan files using ClamAV or VirusTotal

antivirus clamav file quarkus-extension security virustotal

Last synced: 24 Apr 2025

https://github.com/kosasih/pinet-guardian

Decentralized AI-Powered IoT Security System for the Pi Network

ai iot pi-network pi-network-ecosystem security security-system

Last synced: 23 Apr 2025

https://github.com/brightdigit/stealthystash

A Swifty database interface into the Keychain Services.

keychain keychain-wrapper password security swift

Last synced: 21 Apr 2025

https://github.com/mhausenblas/aws-container-security-survey-2020

AWS container security survey 2020

2020 aws containers security survey

Last synced: 12 Apr 2025

https://github.com/minio/kms-go

MinIO Key Managment SDK

golang kes kms sdk security

Last synced: 06 Oct 2025

https://github.com/gardener/diki

Diki is a compliance checker that aims to enhance the security posture of your Kubernetes clusters.

compliance compliance-checklist hardening kubernetes kubernetes-hardening reporting security stig stig-compliant

Last synced: 12 Apr 2025

https://github.com/jery0843/torforge

🧅 Experimental transparent Tor proxy with AI-powered circuit selection, post-quantum encryption, and leak protection. Route all system traffic through Tor with zero configuration.

ai anonymity censorship-circumvention encryption golang iptables kill-switch linux network-security post-quantum privacy proxy security tor transparent-proxy

Last synced: 21 Jan 2026