An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/rasoolsomji/django-security

Django is great! Here are some ways to make it safer

audit csrf cybersecurity django nginx owasp pentest python security vulnerabilities xss

Last synced: 14 Mar 2025

https://github.com/FrozenAssassine/EasePass

A powerful but simple, password manager that stores all your passwords locally and offline. Written in C# WinUI3

2fa-client 2factor app csharp password password-manager passwordmanager security totp windows winui3

Last synced: 31 Mar 2025

https://github.com/chadmcox/azure_ad_conditional_access_policies

Tools to help implement Conditional Access Policies in Azure AD

azuread azuread-b2b azuread-reporting conditional-access mfa security

Last synced: 28 Jun 2025

https://github.com/tersesystems/ocaps

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 08 Mar 2026

https://tersesystems.github.io/ocaps/

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 23 Sep 2025

https://github.com/m-thirumal/oauth-authorization-server

New OAuth2.1 Authorization Server using Spring Boot & PostgreSQL

authentication oauth oauth2 oauth2-1 oauth2-server postgresql security spring-boot

Last synced: 14 Aug 2025

https://github.com/cipherstash/encrypt-query-language

Index and search encrypted data in PostgreSQL with SQL

encryption encryption-in-use postgres postgresql security

Last synced: 09 Apr 2025

https://github.com/sitebatch/waffle-go

Waffle is a library for integrating a Web Application Firewall (WAF) into Go applications.

golang security waf

Last synced: 12 Jan 2026

https://github.com/slok/bilrost

Kubernetes controller/operator to set up OAUTH2/OIDC security on any ingress based service

controller ingress k8s kubernetes oauth2 oidc operator proxy security

Last synced: 25 Mar 2025

https://github.com/marcosimioni/omigood

OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research team, specifically CVE-2021-38647.

cve-2021-38647 omigod omigood security

Last synced: 12 May 2025

https://github.com/fphammerle/docker-onion-service

hidden tor .onion service ๐Ÿณ

docker network onion-service podman security tor

Last synced: 04 May 2025

https://github.com/jpcertcc/toolanalysisresultsheet_jp

ๅˆ†ๆžใƒ„ใƒผใƒซ็ตๆžœใ‚ทใƒผใƒˆ

security

Last synced: 09 Apr 2025

https://github.com/luizbizzio/siteguard

๐Ÿ›ก๏ธ A JavaScript utility that detects when developer tools are opened in web browsers. It blocks right-click actions, drag events, and certain keyboard shortcuts to enhance the protection of web content from unauthorized inspection or tampering.

blocker content-protection copy detector devtools iot javascript legacy library lock open-source prevent privacy safety script security siteguard web web-tools website

Last synced: 27 Apr 2025

https://github.com/thejefflarson/soundcheck

Simple security reviews for AI agents

llms security skills

Last synced: 10 Jun 2026

https://github.com/prontolabs/pronto-brakeman

Pronto runner for Brakeman, security vulnerability scanner for RoR

analyzer brakeman pronto pronto-runner ruby-on-rails security security-scanner

Last synced: 24 Oct 2025

https://github.com/airlock/microgateway

Artifacts for Airlock Microgateway, a Kubernetes native WAAP (Web Application and API Protection) solution to protect microservices.

airlock cilium ergon gateway-api istio k8s kubernetes kubernetes-operator microgateway openshift security waap waf web-application-security

Last synced: 13 May 2026

https://github.com/advanced-security/probot-security-alerts

Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts

ghas nodejs probot sample security security-alerts typescript

Last synced: 23 Oct 2025

https://github.com/celenityy/grapheneos-settings

My recommendations for the ultimate GrapheneOS Configuration :)

android anti-tracking grapheneos hardened hardening privacy privacy-protection security tracking

Last synced: 08 Jun 2026

https://github.com/postgrespro/libblobstamper

Framework for Structure Aware Fuzzing. Allows to build own stamps that would convert pulp-data that came from fuzzer to data with structure you need

fuzzing sdl security structure-aware-fuzzing

Last synced: 28 Feb 2026

https://github.com/jakub-przepiora/ps-scan-prestashop-scanner

This tool serves as an initial version scanner specifically designed for PrestaShop, a popular e-commerce platform. The primary purpose of the scanner is to analyze PrestaShop instances for various aspects, such as module information, version details, and potential security vulnerabilities.

cve prestashop security security-tools

Last synced: 24 Oct 2025

https://github.com/sinewaveai/prooflayer-rules

Open-source runtime security rules engine for MCP servers and AI agents. Detects prompt injection, command injection, jailbreaks, and data exfiltration.

ai-agents ai-security mcp mcp-protocol prompt-injection runtime-security security

Last synced: 16 Jun 2026

https://github.com/azureanimations/azureanimations.github.io

Azure Animations, where we make hard-to-understand Azure cloud concepts easier and more fun to learn!

ai azure copilot devops microsoft openai security

Last synced: 30 Jun 2025

https://github.com/CharlesAverill/DEFFS

Distributed, Encrypted, Fractured File System - A custom distributed file system written in C with FUSE

filesystem fuse linux security

Last synced: 06 Mar 2025

https://github.com/inspexco/scstg

Smart Contract Security Testing Guide (SCSTG)

best-practices blockchain defi guide security smart-contracts solidity

Last synced: 14 Aug 2025

https://github.com/k--chow/solana-security

A compilation of solana security resources.

auditing ethereum security smart solana

Last synced: 11 Mar 2025

https://github.com/nccgroup/yocto-whitepaper-examples

Example code included in the "Improving Your Embedded Linux Security Posture with Yocto" whitepaper

linux openembedded security yocto

Last synced: 26 Apr 2025

https://github.com/m3ssap0/spring-break_cve-2017-8046

This is a Java program that exploits Spring Break vulnerability (CVE-2017-8046).

cve-2017-8046 exploit security security-tools spring-break spring-data-rest vulnerability vulnerability-scanners

Last synced: 01 Mar 2026

https://github.com/Azure/AzureKeyVault

R interface to Azure Key Vault

azure azure-key-vault azure-sdk-r r security

Last synced: 29 Jul 2025

https://github.com/wookey-project/manifest

The WooKey project manifest repository, use repo init -u https://github.com/wookey-project/manifest.git

embedded iot security wookey

Last synced: 22 Feb 2026

https://github.com/tijme/binaries

A mirror of several precompiled standalone red-teaming tools.

binaries cyber hacking mirror precompiled redteam security standalone tools

Last synced: 25 Apr 2025

https://github.com/mindpatch/pmg

Extract parameters/paths from urls

bugbounty bugbounty-tool bughunting python regex security

Last synced: 12 Jul 2025

https://github.com/geminishkv/course_labs

ะ›ะฐะฑะพั€ะฐั‚ะพั€ะฝั‹ะต ั€ะฐะฑะพั‚ั‹ ะฟะพ ะบัƒั€ัะฐะผ ะดะปั AppSec, Risk Analysis, Securty Champion: Toolchain, Orchestration, CI/CD, UML, etc.

appsec appsec-tutorials bash bmstu containersecurity course dast docker growth-team lerning-platform owasp-top-10 python sast sca secretdetection security security-team-testing toolchain tools training-materials

Last synced: 01 Apr 2026

https://github.com/3nock/ote-templates

Community curated list of templates for the OSINT template engine.

attack-surfaces bugbounty fingerprinting osint recon security templates

Last synced: 09 Feb 2026

https://github.com/cocopuff2u/macos_admin_scripts

macOS Admin Script/Tool Collection

jamf macos mdm scripts security

Last synced: 01 Apr 2026

https://github.com/cerbos/demo-rest

Demo of using Cerbos to secure a Go REST API.

access-control cerbos go policy rest-api security

Last synced: 18 Sep 2025

https://gitlab.com/i2pplus/I2P.Plus

I2P+ is a soft-fork of the Java I2P Anonymizing Network Layer. License: AGPL v.3 https://i2pplus.github.io/

anonymity privacy security

Last synced: 13 Jun 2025

https://github.com/avast/authenticode-parser

Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.

cryptography security

Last synced: 07 Apr 2025

https://github.com/zaproxy/action-af

A GitHub Action for running ZAP Automation Framework plans

actions dast devsecops github-actions security

Last synced: 30 Jun 2025

https://github.com/vmagamedov/security-framework

Step-by-step personal cybersecurity guide

2fa fido2 security yubikey

Last synced: 18 Jan 2026

https://github.com/sjinks/ssh-honeypotd

A low-interaction SSH honeypot written in C

honeypot security ssh ssh-honeypot ssh-honeypotd

Last synced: 27 Jun 2025

https://github.com/miathedev/kubeauth

A kubernetes multi type authentication provider using webhook token auth

auth authentication authorization identity k8s kubernetes ldap security

Last synced: 09 Apr 2025

https://github.com/lahirulhr/nova-lock-screen

Simple lock screen feature to Laravel nova dashboard

laravel lock nova php security

Last synced: 11 Jun 2025

https://github.com/brunocampos01/encrypt-file

:lock: :page_with_curl: CLI to encrypt or decrypt files with only one command.

aes aes-encryption aes-gcm decrypt decryption encrypt encryption encryption-decryption pbkdf2 pip python security security-tools sha256

Last synced: 01 Sep 2025

https://github.com/openagentidentityprotocol/agentidentityprotocol

Agent Identity Protocol - Zero-trust security layer for AI agents. Policy enforcement proxy for MCP with Human-in-the-Loop approval, DLP scanning, and audit logging.

agent-identity-protocol ai-agents ai-safety cursor-ide dlp golang human-in-the-loop llm mcp model-context-protocol policy-enforcement security zero-trust

Last synced: 29 May 2026

https://github.com/bbva/gitsec

gitsec: GIT Secret Discovery

dvcs secrets security

Last synced: 15 Aug 2025

https://github.com/tjenkinson/gh-action-auto-merge-dependency-updates

A GitHub action that will automatically approve and merge a PR that only contains dependency updates, based on some rules. Also possible to disable the merge and use the `success` output to use in combination with other actions.

action automation automerge dependabot dependency gh-action merge security updater

Last synced: 06 Apr 2025

https://github.com/rsc-dev/ishtar

.NET applications hacking toolset

c-sharp dll-injection hacking security

Last synced: 23 Jul 2025

https://github.com/valpackett/pysectools

A small Python library that contains various security things

python security unix

Last synced: 22 Apr 2025

https://github.com/ntkme/security-trust-settings-tools

:lock: OS X Keychain Trust Settings Tools.

certificate macos security

Last synced: 28 Jul 2025

https://github.com/anotherhadi/github-recon

Retrieves and aggregates public OSINT data about a GitHub user using Go and the GitHub API. Finds hidden emails in commit history, previous usernames, friends, other GitHub accounts, and more.

cybersecurity github osint recon security

Last synced: 30 Aug 2025

https://github.com/rapidlua/sandals

A lightweight process isolation tool, requiring absolutely no privileges to run

cgroups-v2 chroot linux linux-namespaces process-isolation sandbox seccomp-bpf security

Last synced: 30 Mar 2025

https://github.com/syss-research/icebreaker-glitcher

Simple voltage glitcher implementation for the iCEBreaker FPGA board

fpga glitching ice40 ice40up5k icebreaker it-security security security-tools security-vulnerability tool

Last synced: 04 Sep 2025

https://github.com/artginzburg/2fatotray

๏ฃฟ Copy 2FA tokens in a click (macOS)

2fa app macos security totp

Last synced: 31 Aug 2025

https://github.com/neuralegion/sectester-js-demo

This is a demo project for the SecTester JS SDK framework, with some installation and usage examples.

appsec brightsec demo e2e jest nestjs pentesting qa security test testing typescript

Last synced: 05 Apr 2025

https://github.com/offa/keygen

KeyGen is a generator for keys and passwords.

c c11 cmake key-generator openssl password-generator security

Last synced: 14 May 2025

https://github.com/dl-solarity/audits

Distributed Lab public Solidity audits

auditing security solarity solidity

Last synced: 31 Oct 2025

https://github.com/000pp/extensions-wordlist

๐Ÿ” Improve your files enumeration with specific extensions!

extension extensions files pentest security wordlist wordlists

Last synced: 12 Nov 2025

https://github.com/rennf93/two-fast-auth

FastAPI middleware that provides seamless two-factor authentication implementation. It integrates with FastAPI to offer robust 2FA protection for your application routes.

2fa fastapi middleware python security

Last synced: 14 Apr 2025

https://github.com/akaunting/signed-url

Signed (unique) URL package for Laravel

laravel php security signed unique url

Last synced: 07 Jul 2025

https://github.com/jasona7/ChatCVE

ChatCVE is an app using the Langchain SQL Language Tool to give a LLM prompt experience to CVE and SBOM DevSecOps Triage Data

devsecops python sbom security

Last synced: 04 Apr 2025

https://github.com/bwireman/go-over

A tool to audit Erlang & Elixir dependencies, to make sure your โœจ gleam projects really sparkle!

audit beam cli dependencies dependency elixir erlang ghsa gleam javascript security security-audit security-tools tools vulnerable

Last synced: 28 Oct 2025

https://github.com/briandfoy/cpan-audit

Check CPAN modules for known security vulnerabilities

cve perl perl-module perl-tool security security-audit

Last synced: 13 Apr 2025

https://github.com/adityaoberai/rolebasedauthsample

ASP.NET Web API sample to showcase RBAC via JWTs in .NET 8

authentication dotnet dotnet-8 jwt security

Last synced: 06 May 2025

https://github.com/storopoli/dead-man-switch

Rust no-BS Dead Man's Switch library, TUI and Web Interface

dead-man-switch privacy security tui web

Last synced: 02 Feb 2026

https://github.com/Ovi3/awvs_xray

AWVS13ๅ’Œxray็š„่‡ชๅŠจๅŒ–ๆ‰ซๆ่„šๆœฌ

scanner-web security vulnerability vulnerability-scanners web-security

Last synced: 11 Jul 2025

https://github.com/marvinjwendt/traefik-guardian

๐Ÿ‘ฎ A dead simple forward auth provider to protect Traefik services with passwords.

auth auth-provider authentication docker docker-image golang hacktoberfest security traefik traefik-middleware user-authentication

Last synced: 15 Dec 2025

https://github.com/neuralegion/sslscanner

SSL Scanner written in Crystal

crystal openssl scanner security ssl

Last synced: 07 May 2025

https://github.com/beevik/nts

network time security client package for go

go ntp ntp-client ntp-protocol nts nts-client nts-protocol security time

Last synced: 12 Apr 2025

https://github.com/nozaq/terraform-aws-secure-vpc

A terraform module to create a VPC with secure default configurations.

aws aws-auditing cis-benchmark devops hardening security security-hardening security-tools terraform vpc

Last synced: 06 May 2025

https://github.com/sripwoud/ethernaut

๐Ÿง‘โ€๐Ÿš€ Web3/Solidity based wargame, played in the Ethereum Virtual Machine

blockchain ctf ethereum ethernaut evm forge foundry hack security solidity web3

Last synced: 16 Mar 2026

https://github.com/ph4r05/tinyosids

Intrusion Detection System (IDS) for Wireless Sensor Networks (WSN)

ids iot research security tinyos

Last synced: 11 Jul 2025

https://github.com/maximthomas/blazewall

Open Source Single-Sign-On and Access Management platform built in microservice architecture

authentication authorization cloud-native gateway-service go go-gin golang information-security microservice microservices security sso sso-solution

Last synced: 15 Dec 2025