An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/unchartedsky/prowler

Docker image for toniblyx/prowler

docker security unchartedsky

Last synced: 11 Feb 2026

https://github.com/theori-io/web3-publications

Collection of Web3 Audits and Publications by ChainLight of Theori

blockchain ethereum exploit fuzzing publications security smart-contract web3

Last synced: 08 May 2025

https://github.com/mlshv/exactify

CLI tool that removes ^ prefix from package.json dependecies and replaces them with specific versions from package-lock.json

cli javascript packagejson security

Last synced: 25 Jun 2025

https://github.com/githubixx/ansible-role-cfssl

Ansible role for installing Cloudflares CFSSL PKI toolkit on Ubuntu

ansible ansible-role certificate certificate-authority cfssl cloudflare-pki-toolkit kubernetes security

Last synced: 26 Jun 2025

https://github.com/lawndoc/github-leak-audit

A GitHub workflow to identify employees that have leaked your organization's code

automation cybersecurity devops devsecops github leak-detection leaks organizations security

Last synced: 18 Jul 2025

https://github.com/kjlaw89/webwatcher

Know when your websites are misbehaving!

elementaryos linux monitoring performance security vala

Last synced: 08 May 2025

https://github.com/secure-software-engineering/authcheck

Analysis for access-control vulnerabilities in Java Spring Security applications.

access-control authentication authorization java security soot springframework

Last synced: 10 Apr 2025

https://github.com/FIWARE-Ops/docs.academy

:mortar_board: Video tutorials, slide decks and other training materials for developers learning about the FIWARE ecosystem.

context-broker contextual-data data-publication fiware generic-enablers iot-agent monetization processing robotics security tutorial video-tutorial

Last synced: 30 Mar 2025

https://github.com/elongl/viper

Remote control agent and controller.

agent controller rat security

Last synced: 16 Jul 2025

https://github.com/cr0hn/nginx-wordpress-docker-sec

Anti-hacking tools deployment config of Nginx for Wordpress

hacking hardening nginx nmap plecost security wordpress wp-scan wp-scanner

Last synced: 25 Jun 2025

https://github.com/nsneruno/magisk_detector

Flutter Support for integrating Magisk Detector for Android Application. Based from MagiskDetector.

android android-library c dart flutter flutter-library flutter-plugin magisk ndk root-detection root-detection-bypass security

Last synced: 09 May 2025

https://github.com/teverett/fbsd-secured

Ansible playbook to harden FreeBSD installations

ansible freebsd security

Last synced: 22 Mar 2025

https://github.com/aiven-open/pghostile

Pghostile is a tool to automate the exploitation of PostgreSQL® specific vulnerabilities that could lead to privilege escalation. It can be used to identify security issues in PostgreSQL extensions, to test system hardening and for security research in general.

exploitation postgresql security security-audit security-tools

Last synced: 29 Apr 2025

https://github.com/modem-dev/drizzle-scoped-db

Scope-enforced DB queries for Drizzle ORM

db drizzle drizzle-orm security

Last synced: 04 Jul 2026

https://github.com/thecyberarcher/respect-my-internet

Opensnitch / LittleSnitch - No-Gafam (blocklist for facebook, google, microsoft, amazon, huawei, tencent, apple, xiaomi ...) - aggressive privacy and protection (trackers, spywares, malwares, cti feeds, malicious ips, phishing...) - 99% in adsblockers tests !

anonymity blocklist firewall firewall-configuration firewall-rules netfilter nftables-rules no-amazon no-apple no-batx no-facebook no-gafam no-microsoft open-source opensnitch privacy-protection privacy-tools respect-privacy script security

Last synced: 13 Apr 2025

https://github.com/fi5t/nimbussrp-android

Classic NimbusSRP library is optimized for Android

android android-library nimbusds security srp-6a

Last synced: 09 May 2025

https://github.com/ansible/ansible-sign

The `ansible-sign` utility for signing and verifying Ansible project directory contents.

ansible ansible-dev-tools awx cryptography gpg security

Last synced: 01 Aug 2025

https://github.com/r-net-tools/net.security

Security R package with a set of utils to analyse the different industry standards (MITRE and NIST).

attck capec cpe cve cwe mitre nist oval r sard security

Last synced: 18 Feb 2026

https://github.com/chhayac/awesome-dga

Domain Generation Algorithms research papers, datasets and code

cybersecurity deeplearning dga dga-detection dgapapers domaingenerationalgorithms machinelearning security

Last synced: 02 Jan 2026

https://github.com/elliotwutingfeng/2fas-backup-decryptor

CLI tool to decrypt backup files exported from the 2FAS Authenticator app. This application is neither affiliated with Two Factor Authentication Service, Inc. nor 2FAS.

2fa 2fas aes aes-gcm android backup cryptography cybersecurity decryption encrypt encryption hmac-sha256 ios linux macos otp pbkdf2 security totp windows

Last synced: 29 Apr 2025

https://github.com/netguru/mobile-security-review

Security review guidelines for mobile projects

android ios owasp security

Last synced: 11 Sep 2025

https://github.com/milouk/sphinx-bullhead

Sphinx Custom Linux Kernel for Bullhead (Nexus 5X)

android battery bullhead kernel lineageos linux-kernel nexus-5x oreo performance security stability

Last synced: 13 May 2025

https://github.com/grapheneos/platform_external_pdfviewer

PdfViewer app prebuilt using the latest official release of the PdfViewer app.

android grapheneos pdf pdf-viewer security

Last synced: 13 Apr 2025

https://github.com/mishakorzik/detectvpn

Free vpn, tor, datacenter, threat detection on IP

detect detection information ip ipv4 ipv4-address ipv6 ipv6-address security tor vpn

Last synced: 02 Jan 2026

https://github.com/AmoloHT/CVE-2022-26134

「💥」CVE-2022-26134 - Confluence Pre-Auth RCE

confluence cve cve-2022-26134 exploit hacking infosec rce security

Last synced: 10 Mar 2025

https://github.com/phosphore/cwmpwn

Leveraging CWMP (CPE WAN Management Protocol) to extract vendor specific secrets and configurations from CPEs

cpe cwmp security tr-069

Last synced: 29 Apr 2025

https://github.com/ilya-smut/blue-book

Blue Book is an application that generates multiple-choice preparation questions for IT certifications, e.g. CompTIA A+, Network+, and Security+.

ai certification comptia cybersecurity it mock-tests security

Last synced: 12 Feb 2026

https://github.com/ansiblebook/ansible_role_ssh

🗝 Improve the security of the SSH server beyond "National Security"

almalinux centos-stream crypto-policies cryptography debian-linux rhel8 rocky-linux security sshd-hardening ubuntu2004

Last synced: 10 Apr 2025

https://github.com/groupe-edf/watchdog

Watchdog allows to define custom hooks in YAML format. When attached to the official repository, some of these can serve as a way to enforce policy by rejecting certain commits or branches.

ci devops devsecops git gitea gitguardian gitlab go gogs golang secrets security

Last synced: 14 Jan 2026

https://github.com/0xle0ne/socknet

PropTypes style for secure your socket.io application

argument-parser framework nodejs security socket-io websockets

Last synced: 02 Apr 2026

https://github.com/shadowjonathan/dustls

Pure-Rust DTLS

dtls rust rustls security tls

Last synced: 14 Oct 2025

https://github.com/daggerok/csrf-spring-webflux-mustache

This repository is contains example application using spring boot 2.0, webflux, spring security 5, reactive mongodb and mustache template engine: spring security 5, CSRF protection with mustache, spring webflux functional routes security, method security, authorization decision, etc

controller-advice csrf csrf-protection csrf-tokens css-grid css-grid-layout maven mongodb mustache reactive reactive-mongo reactive-programming security spring-boot spring-mvc spring-security spring-web spring-webflux webflux

Last synced: 20 Oct 2025

https://github.com/fxamacker/webauthn-demo

WebAuthn server demo for registration and authentication (Go/Golang)

authentication fido2 passwordless security web-application webauthn webauthn-demo yubikey

Last synced: 28 Apr 2025

https://github.com/ffmancera/ping_of_death

Some scripts to do a ping of death attack.

ddos-attacks networking python3 scapy security

Last synced: 09 Oct 2025

https://github.com/rennf93/flaskapi-guard

A security library for Flask that provides an extension to control IPs, log requests, and detect penetration attempts. It integrates seamlessly with Flask to offer robust protection against various security threats.

api extension flask ip python rest security

Last synced: 03 Jun 2026

https://github.com/mitocgroup/www

Mitoc Group is a technology company focusing on cloud adoption in private equity. Our track record includes helping private equity portfolio companies migrate to public clouds, as well as establish devops and dataops processes using cloud native services and industry best practices.

assurance development documents legal policy process quality security software

Last synced: 26 Jan 2026

https://github.com/rix4uni/tldscan

A high-performance domain scanner that discovers active domains by testing multiple Top-Level Domains (TLDs) for given domain names.

bug-bounty bugbounty bugbountytips hacking infosec osint osint-resources osint-tool penetration-testing pentest-tool pentesting recon reconnaissance security security-tools threat-intelligence tldfinder tldscanner

Last synced: 20 Apr 2026

https://github.com/raforg/libslack

A UNIX/C library of general utilities for programmers with Slack

bsd c daemon daemonize debian freebsd library linux macos macosx netbsd openbsd posix redhat security svr4 ubuntu unix

Last synced: 16 Oct 2025

https://github.com/open-horizon/kubearmor-integration

KubeArmor runtime security integration with Open Horizon

docker edge horizon kubearmor security

Last synced: 19 Jan 2026

https://github.com/socialgouv/hasura-permissions-viewer

Generate human-friendly HTML table from hasura permissions list

hasura security

Last synced: 23 Feb 2026

https://github.com/weebdatahoarder/go-away

[Mirror] Self-hosted abuse detection and rule enforcement against low-effort mass AI scraping and bots.

ai-scraping http-proxy mirror security

Last synced: 16 May 2025

https://github.com/paulveillard/cybersecurity-ctf

A collection of CTF frameworks, libraries, resources, softwares and tutorials, books, resources and cool stuff in Cybersecurity

ctf ctf-challenges ctf-platform ctf-solutions ctf-tools cybersecurity frameworks security security-tools

Last synced: 10 Apr 2025

https://github.com/brosck/farllen

「🚪」Port forwarding tool to gain access to internal devices

c forwarding hacking network pivot port security tool

Last synced: 06 May 2025

https://github.com/leonklingele/securetemp

Secure temporary directories and files in Go (ram disk, tmpfs)

ramdisk security temporary-directories temporary-files tmpfile tmpfs

Last synced: 07 May 2025

https://github.com/epsylon/paranoia-browser

pArAnoIA - Tiny "Secure" Browser

browser cryptography privacy security toolkit

Last synced: 29 Jun 2025

https://github.com/rubennati/vulnerable-php-code-examples

Deliberately vulnerable PHP code examples for testing static analysis tools and security training, covering common vulnerabilities such as SQL Injection, XSS, CSRF, and more.

owasp php security static-analysis vulnerable

Last synced: 26 May 2026

https://github.com/wmeints/webauthn-sample

Sample demonstrating how to use FIDO2 keys with ASP.NET Core using WebAuthn

asp-net-core csharp dotnet fido2 npm nuget react security typescript webauthn

Last synced: 26 Jan 2026

https://github.com/grapheneos-archive/nginx-rotate-session-ticket-keys

Session ticket key rotation scripting / systemd units for nginx to work around the lack of built-in support. This may eventually be extended to support syncing keys across a group of servers providing the same service.

nginx privacy security

Last synced: 09 May 2025

https://github.com/simeononsecurity/saps

A collection of scripts to assist System Adminsitrators

automation documentation mitigations powershell powershell-script security

Last synced: 23 Apr 2025

https://github.com/orsinium-labs/flake8-warnings

Python linter (flake8, pylint, CLI) that warns you about using deprecated modules, classes, and functions

clean-code code-quality flake8 flake8-extension flake8-extensions flake8-plugin flake8-plugins linter pylint python python3 qa security

Last synced: 15 Apr 2025

https://github.com/mam-dev/security-constraints

Fetches security vulnerabilities and creates pip-constraints based on them.

dependencies pip python security supply-chain-security

Last synced: 01 Jul 2025

https://github.com/sercanarga/ipmap

ipmap is an open source, cross-platform and powerful network analysis tool.

ipmap linux macos security windows

Last synced: 10 Mar 2026

https://github.com/grapheneos-archive/device_google_coral

Pixel 4 and Pixel 4 XL device sources.

android grapheneos security

Last synced: 13 Apr 2025

https://github.com/tankerhq/sdk-android

Tanker client-side encryption SDK for Android

android cryptography encryption end-to-end java kotlin privacy sdk security tanker

Last synced: 09 Apr 2025

https://github.com/sap-samples/cloud-nodejs-oflm

This repository demonstrates how to implement security in a business scenario using the Node.js framework. The application is secured using the SAP BTP, Cloud Foundry environment Authorization and Trust Management Service.

cloud-foundry nestjs nodejs sample sample-code sap-btp-cloud-foundry sap-cloud-sdk security xsuaa

Last synced: 13 Apr 2025

https://github.com/tuxerrante/kapparmor

AppArmor profiles loader to deploy and update them through a Kubernetes daemonset

apparmor devsecops golang helm k8s kubernetes security

Last synced: 02 Mar 2026

https://github.com/hannesm/ocaml-hkdf

HMAC-based Extract-and-Expand Key Derivation Function (HKDF) (RFC 5869)

hkdf ocaml rfc5869 security

Last synced: 07 Aug 2025

https://github.com/proxylity/wg-client

Standalone UdpClient-compatible WireGuard client for .NET. Implements the Noise_IKpsk2_25519_ChaChaPoly_BLAKE2s handshake with ChaCha20-Poly1305 transport encryption.

api-client dotnet network-programming security udp wireguard

Last synced: 16 Jun 2026

https://github.com/quodeq/quodeq

AI-powered code quality and security scanner. Open source, MIT, runs locally. <🧭>

ai-tools cli code-analysis code-quality cwe devtools iso-25010 llm open-source python quality-assurance security static-analysis vulnerability-scanner

Last synced: 10 May 2026

https://github.com/swamithedev/password_strength

The Password Strength Checker project aims to help users assess the robustness of their passwords quickly and effectively.

frontendproject frontendprojects password password-checker password-generator password-strength password-strength-checker security swaminathanselvam swamithedev ui ui-components ui-design

Last synced: 19 Oct 2025

https://github.com/yashvardhan-kukreja/kube-bench-exporter

:whale: :rocket: Helps you to export your kube-bench reports to multiple targets like Amazon S3 buckets with ease.

aquasec exporter kube-bench kubernetes security

Last synced: 11 Apr 2025

https://github.com/zuazo/dradis-docker

A Docker image with Dradis: A collaboration and reporting platform for IT security experts.

devops docker dradis minimal repository security

Last synced: 13 Apr 2025

https://github.com/azu/github-advisory-database-rss

GitHub Advisory Database RSS Feeds.

github rss security

Last synced: 15 Jan 2026

https://github.com/thalesgroup/gose

GOSE = JOSE and friends for the Go developer

golang jsonwebtoken security

Last synced: 03 Oct 2025

https://github.com/dkorunic/axfr2hosts

Fetches one or more DNS zones via AXFR and dumps in Unix hosts format for local use

bind bind9 bind9-dns dns dns-server domain linux networking security sre sysops unix zone

Last synced: 12 Apr 2025

https://github.com/express-rate-limit/rate-limit-postgresql

A PostgreSQL store for express-rate-limit middleware

express-middleware nodejs postgresql rate-limiting security

Last synced: 30 Apr 2025

https://github.com/dneustadt/dneustadtcsrfcookiebundle

Symfony bundle that provides Cross Site Request Forgery (CSRF or XSRF) protection for client-side applications

ajax angular axios csrf react security vue xhr xsrf

Last synced: 03 Apr 2025

https://github.com/mika-f/plana

Plana is a powerful general purpose obfuscator for C#, but optimized for Unity and UdonSharp, containing a variety of features which provide protection for your source code from the hackers

csharp dotnet obfuscate obfuscation obfuscator protection security udonsharp unity vrchat

Last synced: 08 Jul 2025

https://github.com/containerscrew/rootisnaked

Simple root privilege escalation detection using eBPF 🐝

cilium-ebpf ebpf ebpf-go go golang linux-kernel privilege-escalation security

Last synced: 12 Apr 2025

https://github.com/bbva/masquerade

High-performance, real-time, multi-location data obfuscation tool

encrypted-data masquerade security tokenizer

Last synced: 21 Jun 2025

https://github.com/psecio/uri

A secure URI generation and validation library

security security-tools signature uri url

Last synced: 11 Apr 2025

https://github.com/tintinweb/vscode-chonky

🍣 Chonky - A Superhuman LLM Auditing Agent for Solidity

agentic-ai security solidity vscode-extension

Last synced: 15 May 2026

https://github.com/mubix/ctf

Capture The Flag Information

capture-the-flag ctf hacking learning security

Last synced: 11 Apr 2025

https://github.com/thalesgroup/security-risk-assessment-tool

The ISRA security-risk-assessment-tool project is an Electron based application used to do security risk assessments at a technical level

cvss cybersecurity engineering iso iso-27005 iso27005 risk-analysis risk-assessment security security-tools

Last synced: 17 Mar 2025

https://github.com/0x4f53/getperms

An Android wrapper library to quickly get app permissions and other package data.

android android-library apk demo icon java jitpack library localdatetime open-source package-manager packages permissions permissions-android phone security siem signature

Last synced: 01 May 2025

https://github.com/elsevierlabs-os/terraform-cloud-custodian-lambda

A collection of terraform modules that allow you to deploy and manage cloud-custodian lambda resources using native terraform as opposed to using the cloud-custodian CLI

aws aws-lambda c7n c7n-mailer cloud cloud-custodian compliance cost-optimization lambda rules-engine security serverless

Last synced: 06 Mar 2026

https://github.com/benwestgate/bitcoin-core-on-tails

Deprecated Setup script for installing Bitcoin Core to Tails persistent storage. Full node, wallet, backup and clone for a friend functions

bash bash-script bitcoin bitcoin-core debian full-node linux operating-system privacy security shell tails

Last synced: 28 Oct 2025

https://github.com/charlesjones-dev/claude-code-plugins-dev

Automate developer busy work with AI-powered plugins for Claude Code.

ai claude claude-code developer-tools git git-tools llm performance performance-tools security security-tools

Last synced: 01 Apr 2026

https://github.com/msfidelis/aws-vpc-best-pratices

Personal compilation for best pratices for VPC Network architectures on AWS to improve performance, high avalilability and security for your apps. :cloud:

aws cloud networking security terraform

Last synced: 13 Jun 2025

https://github.com/paretosecurity/aremykeyssafe

Find out if your SSH keys are safe!

public-key security ssh

Last synced: 12 Jul 2025

https://github.com/lithnet/ad-password-protection-lists

Banned word lists for use with Lithnet Password Protection for Active Directory

active-directory lithnet-password-protection lpp password security

Last synced: 07 Feb 2026