Security
Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
- GitHub: https://github.com/topics/security
- Wikipedia: https://en.wikipedia.org/wiki/Computer_security
- Aliases: security-tools, security-vulnerability, security-audit,
- Last updated: 2026-07-02 00:27:53 UTC
- JSON Representation
https://github.com/5GSEC/security-intents
Repository to hold security intents in standard template format.
5g blueprints intents k8s kubernetes o-ran security
Last synced: 16 Jun 2026
https://github.com/louis3797/xss-shield
A powerful middleware for securing your express.js applications against cross-site scripting (XSS) attacks
express-middleware middleware node security typescript xss xss-attacks xss-filter xss-sanitizer xss-shield
Last synced: 07 Apr 2025
https://github.com/windblaze/aegis
MITM protection for MacOS
arp-poisoning arp-spoofing guard macos man-in-the-middle mitm protection security
Last synced: 09 Jul 2025
https://github.com/havendv/namedpipeserverstream.netframeworkversion
.NET Standard version of NamedPipeServerStream that contains PipeSecurity constructor.
access-control csharp dotnet ipc namedpipeserverstream netstandard netstandard20 pipes pipesecurity security serverstream system windows
Last synced: 19 Apr 2025
https://github.com/yandex-cloud-examples/yc-mk8s-copy-fail-mitigation
DaemonSet для митигации уязвимости CVE-2026-31431 (Copy Fail)
kubernetes mk8s security yandex-cloud yandexcloud
Last synced: 25 Jun 2026
https://github.com/sadhasivamx/boar-hunting-yolov8
YoloV8-based boar detection system with Arduino-triggered buzzer for enhanced security.
arduino artificial-intelligence computer-vision custom machinelearning security yolov8
Last synced: 07 Oct 2025
https://github.com/ebrasha/abdal-security-headers
Abdal Security Headers is a powerful WordPress plugin that enhances your website's security through HTTP security headers. It provides an easy-to-use interface for managing security policies and protecting against common web vulnerabilities.
abdal abdal-security-group ebrahim-shafiei ebrasha hsts security security-headers wordpress wordpress-plugin wp
Last synced: 26 Jan 2026
https://github.com/soufantech/arx
Arx is an access control library for Node.js apps, strongly focused on efficiency, type safety and overall composability.
access-control authorisation permissions policy security
Last synced: 12 Apr 2025
https://github.com/akimrx/python-yc-lockbox
Python Yandex Lockbox client (secrets vault).
cloud lockbox python-lockbox-client python3 secrets security vault yandex yandex-cloud yandex-lockbox yandex-lockbox-client yandexcloud yc-lockbox yc-secrets
Last synced: 16 Jan 2026
https://github.com/lirantal/security-report
Report a security vulnerability
Last synced: 21 Apr 2025
https://github.com/damienbod/clientipaspnetcoreiis
ASP.NET Core Middleware
aspnet-core middleware remote-ip safe-list security
Last synced: 05 Mar 2026
https://github.com/iolivergithub/jane
Jane Attestation Server
arm attestation cca ccc confidential-compute confidential-computing confidential-container forensics mars security sgx sgx-enclaves tdx tpm tpm2 trust trustzone uefi
Last synced: 08 Jan 2026
https://github.com/hleliofficiel/exaaiagent
ExaAiAgent — Advanced AI-powered penetration testing framework with Docker sandbox, multi-agent workflows, and 50+ integrated cybersecurity tools.
ai-agent bug-bounty cybersecurity hacking llm pentesting prompt-injection python security vulnerability-scanner
Last synced: 01 Apr 2026
https://github.com/born05/craft-enforcepassword
Craft plugin for incrementally enforced new and secure passwords.
craftcms craftcms-plugin security
Last synced: 10 Apr 2025
https://github.com/kaanguru/lock4it
Offline hardware and software asset management tool for IT professionals.
cross-platform password-manager privacy pwa pwa-apps security skeleton svelte sveltekit tailwindcss typescript
Last synced: 01 Sep 2025
https://github.com/righettod/code-snippets-security-utils
Provides different utilities methods to apply processing from a security perspective.
appsecurity code-snippets java security
Last synced: 31 Aug 2025
https://github.com/samuel-lucas6/doublesec
A simple, double-paranoid encryption library inspired by TripleSec.
aes aes-ctr blake2b blake2b-512 cascade-encryption cascade-encryption-scheme crypto cryptography encryption hmac hmac-sha512 libsodium libsodium-core libsodium-net multiple-encryption security triplesec xchacha20
Last synced: 15 Apr 2025
https://github.com/kostasereksonas/tp-link-tl-wr841n-security-analysis
Security analysis of a TP Link tl-wr841n router.
cybersecurity nmap router security security-analysis security-vulnerability tp-link tp-link-wr841n vulnerability wr841n
Last synced: 28 Feb 2026
https://github.com/openwall/owl
Openwall GNU/*/Linux (Owl) is a small security-enhanced Linux distribution for servers. Owl has effectively reached its end-of-life, but its legacy lives on in a few other distributions (most notably, ALT Linux) and upstream projects. This is a tentative export of the Owl CVS repository into Git, which will possibly be redone later.
hardening linux security userland
Last synced: 09 Apr 2025
https://github.com/jpcertcc/huiloader-research
HUI Loader analysis research
Last synced: 05 Feb 2026
https://github.com/kolteq/validating-admission-policies-pss
Kubernetes Pod Security Standards implemented using Kubernetes Validating Admission Policies. Support of Enforce Baseline and Restricted profiles natively with configurable policy exclusions.
compliance kubeapt kubernetes pod-security pod-security-admission security validating-admission-policy
Last synced: 04 Feb 2026
https://github.com/eyevinn/node-cat
Node library for generating and validating Common Access Tokens (CTA-5007)
cat commonaccesstoken contentprotection cwt security
Last synced: 06 Oct 2025
https://github.com/rix4uni/paramfinder
Find input and textarea hidden parameters in html.
bug-bounty bugbounty bugbountytips hacking hidden-parameters infosec osint osint-resources osint-tool parameters penetration-testing pentest-tool pentesting recon reconnaissance security security-tools threat-intelligence
Last synced: 20 Jan 2026
https://github.com/rix4uni/gf-patterns
grep parameters (allparam,idor,lfi,rce,redirect,sqli,ssrf,ssti,xss)
bug-bounty bugbounty bugbountytips gf gf-patterns hacking infosec osint osint-resources osint-tool penetration-testing pentest-tool pentesting recon reconnaissance security security-tools threat-intelligence
Last synced: 12 Feb 2026
https://github.com/winnpixie/log4noshell
A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").
apache cve log4j patch security vulnerability
Last synced: 11 Jul 2025
https://github.com/aw-junaid/android-security
Explore Android security: secure app development, reverse engineering, vulnerability testing, and best practices for data protection and encryption.
android android-rat androidsecurity hacking hacking-tool security vulnerabilities
Last synced: 01 Jul 2025
https://github.com/petemcw/ansible-role-hardening
Ansible role for basic server hardening
Last synced: 14 Apr 2025
https://github.com/fodinabor/esposecsignauth
Module for EspoCRM that uses SecSign for Two-Factor Authentication.
Last synced: 01 Aug 2025
https://github.com/dzek69/html-safe-json
Small wrapper for JSON-stringify that makes result safe to embed directly into HTML `<script>` tag.
javascript json node security xss
Last synced: 22 Sep 2025
https://github.com/bocaletto-luca/systemauditdashboard
SystemAuditDashboard is a centralized Linux system monitoring dashboard implemented in Python using Tkinter. It provides a real-time overview of key system information including: Kernel Version Operating System Details Logged-in User Number of Active Processes Number of Open Ports Load Average (1 min, 5 min, 15 min) Available Memory (in MB)...
admin-tool bocaletto-luca gui linux python security security-tool system-audit system-audit-dashboard system-tool tkinter
Last synced: 17 Sep 2025
https://github.com/contributte/security
:sparkles: Extra contrib to nette/security (@nette)
authentication authorization contributte nette nette-framework security
Last synced: 12 Apr 2025
https://github.com/chriszarate/know-your-deps
Picks a random dependency from your project and splains it to you.
Last synced: 20 Aug 2025
https://github.com/tankerhq/sdk-python
Tanker Python SDK - mirror of https://gitlab.com/TankerHQ/sdk-python
cryptography encryption end-to-end privacy python sdk security tanker
Last synced: 09 Sep 2025
https://github.com/nolze/imagesteg
A simple image steganalysis (steganography analysis) tool in Python with web-based GUI
ctf security steganalysis steganography
Last synced: 13 Aug 2025
https://github.com/retirenet/packages
JSON files containing vulnerable packages
dotnet-core dotnetcore security
Last synced: 21 Sep 2025
https://github.com/panther-labs/pysigma-backend-panther
pySigma Panther Backend
Last synced: 12 Aug 2025
https://github.com/janloebel/nipca
Network IP Camera Application Programming Interface (NIPCA) - Client
client ip-camera ipcamera javascript nipca node security
Last synced: 15 Jul 2025
https://github.com/infineon/pkcs11-optiga-tpm
OPTIGA™ TPM-Based PKCS #11 Token Setup and User Guide
pkcs11 raspberry-pi security tpm2
Last synced: 06 Apr 2025
https://github.com/jonzeolla/lab-wifisecurity
A lab illustrating how some basic wifi hacking tools work.
information-security infosec lab security wifi-security
Last synced: 13 May 2025
https://github.com/celenityy/macos-settings
My recommendations for the ultimate macOS Configuration :)
apple apple-silicon hardened hardening imac mac macbook macbook-configuration macbook-setup macbooks macos macos-setup macosx osx osx-setup privacy privacy-protection security security-hardening
Last synced: 10 Jun 2025
https://github.com/jmaczan/ktotu
Identify devices in your network and monitor it against intruders
linux monitoring netsec netsecurity network network-monitoring network-security python security
Last synced: 02 Aug 2025
https://github.com/revanmalang/thm-offensive-security
security security-tools thm-offensive-security
Last synced: 04 Jan 2026
https://github.com/chinmay29hub/stegmoji
Stegmoji is a client-side steganography tool. Encode secret messages into emoji or text using invisible Unicode characters (variation selectors, zero-width joiners). Supports three embedding modes (Tail, Interleaved, ZWJ-aware), optional compression, AES-GCM encryption, and full Unicode analysis/visualization
client-side compression cryptography data-visualization javascript nextjs open-source privacy react security steganography unicode web-app web-crypto
Last synced: 17 Jan 2026
https://github.com/authress/authress-sdk.py
The Python Authress SDK provides authorization as a service with fully compatible REST apis.
authorization authorization-backend authorization-framework authorization-middleware authorization-server authorizationservice authress python security
Last synced: 13 May 2025
https://github.com/muayyad-alsadi/oneway
a tool to drop privileges for docker entry-points
containers docker init-system jail privileges security
Last synced: 18 May 2026
https://github.com/reconmap/mobile-client
React-native based mobile client for Reconmap
android infosec mobile pentesting react-native security vulnerabilities
Last synced: 10 Sep 2025
https://github.com/kyopark2014/aws-security-token-service
It shows how to generate and use temporary security credential using AWS STS.
aws aws-lambda aws-sdk lambda security temporary-credentials
Last synced: 12 Apr 2025
https://github.com/albertito/kxd
[mirror] Key exchange daemon
encryption-key go-application key-management security
Last synced: 02 Aug 2025
https://github.com/aran112000/nope-php
Nope! A lightweight tool for monitoring your log files and dynamically blocking nuisance or malicious IPs based on easy to define, dynamic rules which you control
anti-bot attack-prevention ban-hosts ban-management ips linux log-analyzer monitoring php php-cli rate-limiting security
Last synced: 22 Apr 2025
https://github.com/geniuszly/cve-2022-44149
it is script designed to interact with a router by sending a payload to its system tools. The script retrieves the router's configuration from environment variables to ensure security. It includes functions for generating an authorization header, sending a payload, and logging the process.
cve cve-2022-44149 cybersecurity ethical-hacking exploit exploit-development linux payload penetration-testing poc privilege-escalation security vulnerability vulnerability-research
Last synced: 11 Apr 2025
https://github.com/geniuszly/cve-2022-45701
it is script designed to exploit certain vulnerabilities in routers by sending payloads through SNMP (Simple Network Management Protocol). The script automates the process of authorization, payload generation, and execution, allowing for remote command execution on the target device.
arris arris-modem arris-router buffer-overflow cve cve-2022-45701 cybersecurity ethical-hacking exploit exploit-development linux penetration-testing poc python security snmp vulnerability vulnerability-research
Last synced: 11 Apr 2025
https://github.com/dimon222/py-gitsshgen
Automatic generation of SSH keys for VCS
automation git hacktoberfest python security ssh vcs
Last synced: 29 Oct 2025
https://github.com/itszeeshan/subdomainx
all-in-one subdomain enumeration and reconnaissance tool designed for modern cybersecurity professionals, penetration testers, and security researchers.
amass assetfinder bug-bounty cybersecurity dnsrecon findomain hacking httpx infosec nmap offensive-security osint penetration-testing port-scanning reconnaissance red-team security security-tools subdomain-discovery subfinder
Last synced: 09 Sep 2025
https://github.com/skyzyx/engineering-for-site-reliability
Overall map of topics to cover for my “Engineering for Site Reliability” blog series.
ci-cd cicd devops docker security site-reliability site-reliability-engineering sre terraform
Last synced: 25 Mar 2025
https://github.com/fabian-hk/secure-two-party-computation
Python implementation of the TPC protocol from the paper "Authenticated Garbling and Efficient Maliciously Secure Two-Party Computation"
google-protocol-buffers multi-party-computation network-communication python3 secure-computation security tpc two-party-computation
Last synced: 14 Apr 2025
https://github.com/douglascamata/passman_cli
A CLI for Passman.
passman password python security
Last synced: 19 Mar 2025
https://github.com/jsign/timing-attack
Timing attack proof-of-concept in Go
go security statistics timing-attack
Last synced: 18 Mar 2025
https://github.com/muqsit/2fa
[In-dev] Two-factor authentication for your PocketMine-MP (PMMP) server. Currently there are no documentations or doc comments.
2fa mfa pmmp pocketmine-mp security
Last synced: 05 Aug 2025
https://github.com/bonedaddy/postables-solidity-modules
Collection of reusable contracts and libraries I use in contracts I write.
blockchain contracts cryptocurrency ethereum libraries modules openzeppelin safemath security solidity upgradeable utilities
Last synced: 12 May 2025
https://github.com/eqstlab/cve-2024-48914
Arbitrary File Read and DoS in vendure-ecommerce exploit
cve exploit poc proof-of-concept security typescript vulnerability
Last synced: 27 Jul 2025
https://github.com/jmcph4/fuzzbang
Python 3 package providing basic fuzzing support
fuzz fuzz-testing fuzzer fuzzing python security vulnerability-detection
Last synced: 07 Apr 2025
https://github.com/fkie-cad/bidcos-security-doc
A documentation of the Bidcos (homematic) radio protocol with focus on practical security aspects
eq3 home-automation homematic security urh
Last synced: 06 May 2025
https://github.com/didjacome/modules.azure
This repository aims to have modules and scripts created for Microsoft Azure administration
accounts assessment azure engineer management powershell rbac resources security snapshot
Last synced: 17 Jan 2026
https://github.com/habilelabs/cvss-v3.1-react
React CVSS v3.1 Base Score Calculator
cvss cvssv3 reactjs security security-vulnerability
Last synced: 20 Jun 2025
https://github.com/lombiq/orchard-login-as-anybody
Orchard module for site owners to be able to log in as any user.
orchard orchard-cms orchard-core orchard-module security
Last synced: 17 Aug 2025
https://github.com/akshatvg/secure-hashed-authentication
blake2b & md5 based registration and login in PHP to show a secure hashed password.
algorithm authentication blake2b blake2b-hash-algorithm cyber-security hashing login md5 networks nis php project register security
Last synced: 31 Jul 2025
https://github.com/base4security/dolos-t
Deceptive Operations: Lure, Observe, and Secure Tool
automation containerization containers containers-as-a-service deception deception-defense deception-technology deceptive-defense deceptive-design docker dockerfiles framework gplv3 honeypot honeytoken network-security open-source orchestrator python3 security
Last synced: 11 Jul 2025
https://github.com/0xedward/fisherman
a fisherman catches phishes - a tool to look up reputation of email addresses
email infosec phishing python security security-tools threat-intelligence
Last synced: 04 Oct 2025
https://github.com/weixian-zhang/fuzzie
A VSCode GUI-based fuzzer for Rest API and GraphQL
fuzzing python3 rest-api security vscode-extension
Last synced: 30 Dec 2025
https://github.com/goldstrike77/ansible-role-linux-wazuh
Ansible role for install and configure Wazuh manager on Linux operating system.
ansible ansible-role compliance file-integrity-management hids ids incident-response intrusion-detection log-analysis loganalyzer ossec pci-dss policy-monitoring security security-awareness security-hardening vulnerability-detection wazuh
Last synced: 05 May 2025
https://github.com/strmprivacy/data-plane-helm-chart
Care about your data leaving your VPC/environment in SaaS mode? With our self-hosted option you can run our privacy focused Data Plane in your own Kubernetes Cluster. Just (1) sign-up, (2) request a self-hosted installation, (3) use our values.yaml on your own k8s clusters and (4) run your (customer) data inside your own cloud like 🪄
charts data helm kubernetes privacy security
Last synced: 23 Jun 2025
https://github.com/grapheneos-archive/device_google_crosshatch
Pixel 3 and Pixel 3 XL device sources.
Last synced: 04 Oct 2025
https://github.com/ahliweb/awcms
AWCMS (AhliWeb Content Management System) — an enterprise-grade, multi-tenant, ABAC-secured CMS built with React, Supabase, and modern web architecture.
abac audit-log cloudflare cms cms-framework enterprise-cms headless-cms multi-tenant postgresql react rls saas security supabase vite workflow-engine
Last synced: 08 Mar 2026
https://github.com/wolftech-innovations/cybr
Welcome to cybr
deployable distro fast foss kernel kordos linux linux-distribution linuxdistros operating-system os secure security ubuntu wolftech
Last synced: 21 Jun 2025
https://github.com/jpts/coredns-enum
Discover K8s Services & Pods through DNS Records in CoreDNS
coredns enumeration kubernetes networking security
Last synced: 12 May 2025
https://github.com/sakryukov/storage-free-pass
Storage-Free Pass is a generator of highly secure passwords based on cryptographic hash and master password, which should be memorized; no password storage is involved
authentication criptographic-hash cryptography css html javascript security
Last synced: 07 May 2025
https://github.com/dodo325/flytrap
People tracker on the Internet. OSINT analysis and research tool by dodo325. Catch a user using your URL!
flask hacking hacking-tool ngrok osint security security-tools social-engineering
Last synced: 09 Apr 2025
https://github.com/eziriz/dotnet-reactor-install-action
.NET Reactor Install Action
licensing net-obfuscator obfuscation obfuscator protection security
Last synced: 15 Jan 2026
https://github.com/sigseg5/thgtoa-ru
[WIP] Russian version of The Hitchhiker’s Guide to Online Anonymity
activism anonymity anonymization anticensorship gpg privacy privacy-aware privacy-by-design privacy-enhancing-technologies privacy-online privacy-policy privacy-protection privacy-tools qubes-os security security-hardening tails veracrypt whonix
Last synced: 01 Feb 2026
https://github.com/sap/sanitizer-checker
A tool to evaluate the security of JavaScript sanitizer functions.
cross-site-scripting injection javascript sanitizer security
Last synced: 09 Aug 2025
https://github.com/sarathsp06/py2factor
Python two factor authenticator app for linux,experimental
2factor cli multifactor-authentication python security
Last synced: 28 Jul 2025
https://github.com/anuran-roy/mapsec_server
MapSec Backend Server prototype (built on FastAPI)
api backend cybersecurity fastapi internet-of-things iot mapsec open-source opensource python python3 rest-api scanner security tinydb
Last synced: 02 May 2026
https://github.com/piiiico/proof-of-commitment
Supply chain risk scorer for npm and PyPI — single-maintainer CRITICAL flags before attacks happen
audit cargo cli dependencies github-action go golang mcp mcp-server npm openssf pypi rust scorecard security software-supply-chain supply-chain supply-chain-security
Last synced: 13 Jun 2026
https://github.com/picobaz/pyformblaster
PyFormBlaster: A sleek Python web form fuzzer for ethical security audits. Blast forms with random and malicious inputs to uncover XSS, SQL Injection, and more. Features auto-field detection, CSV logging, and modular config. Test responsibly!
cybersecurity ethical-hacking form-fuzzer fuzzing penetration-testing python security web-security
Last synced: 09 Oct 2025
https://github.com/fivexl/terraform-aws-ssl-checker
Simple SSL check and expiring certificates reminder with additional DNS check and host availability check.
heartbleed lambda security ssl terraform terraform-module tls tls-certificate-checker tls-scan tls13
Last synced: 09 Apr 2025
https://github.com/happyhackingspace/privacy-policy-analyzer
A command-line tool that automatically fetches, analyzes, and scores website privacy policies using AI to highlight strengths, risks, and recommendations.
Last synced: 13 Oct 2025
https://github.com/volkansah/minigrex
MiniGreX will be designed with security in mind, and the code will be written to minimize the risk of SQL injection attacks and other security vulnerabilities. To ensure maximum security, we recommend keeping the CMS up-to-date with the latest security patches and using strong passwords for all user accounts.
authentication cms cms-backend cms-framework codeigniter content-management content-management-system hacker mariadb mysql php pod posgresql prepared-statements security security-audit security-tools user-interface usermanagement xss-filter
Last synced: 12 Apr 2025
https://github.com/devsebastian44/ctf-desafios
CTF Retos de Captura la bandera resueltos.
ctf ctf-challenges exploit hacking hackthebox hard kali kali-linux pentesting security vulnhub
Last synced: 09 Oct 2025