An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/0dayctf/reverse-shell-generator

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

ctf generator hacking revshell security tryhackme

Last synced: 28 Apr 2025

https://github.com/kelvinben/appinfoscanner

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

android apk apk-dex hacking hacking-tool ipa network-security penetration-test penetration-testing-tools python3 scanner security security-tools tools web-hacking

Last synced: 13 Apr 2025

https://github.com/aquasecurity/Tracee

Linux Runtime Security and Forensics using eBPF

bpf docker ebpf golang kubernetes linux runtime-security security

Last synced: 30 Apr 2025

https://github.com/snooppr/snoop

Snoop — инструмент разведки на основе открытых данных (OSINT world)

blueteam ctf geo geocoder infosec ip nickname osint parser pentest police redteam scanner scraping security termux username username-checker username-search web-scraping

Last synced: 10 Apr 2025

https://github.com/0dayCTF/reverse-shell-generator

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

ctf generator hacking revshell security tryhackme

Last synced: 30 Mar 2025

https://github.com/security-onion-solutions/securityonion-saltstack

Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. It also includes other tools such as osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek.

case-management cyber-security endpoint-security information-security intrusion-detection-system monitoring network-security security security-tools threat-hunting

Last synced: 21 Feb 2025

https://github.com/Security-Onion-Solutions/securityonion

Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. It also includes other tools such as osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek.

case-management cyber-security endpoint-security information-security intrusion-detection-system monitoring network-security security security-tools threat-hunting

Last synced: 06 Apr 2025

https://github.com/animir/node-rate-limiter-flexible

Atomic counters and rate limiting tools. Limit resource access at any scale.

bruteforce dynamodb express hapi koa limit nestjs postgresql prisma rate-limiting ratelimter redis security sqlite throttle valkey

Last synced: 23 Apr 2025

https://github.com/google/nsjail

A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.

chroot linux linux-namespaces process-isolation seccomp-bpf-policies security

Last synced: 23 Apr 2025

https://github.com/kelvinBen/AppInfoScanner

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

android apk apk-dex hacking hacking-tool ipa network-security penetration-test penetration-testing-tools python3 scanner security security-tools tools web-hacking

Last synced: 19 Nov 2024

https://github.com/ngc660sec/ngcbot

一个基于✨HOOK机制的微信机器人,支持🌱安全新闻定时推送【FreeBuf,先知,安全客,奇安信攻防社区】,👯Kfc文案,⚡漏洞查询,⚡手机号归属地查询,⚡知识库查询,🎉星座查询,⚡天气查询,🌱摸鱼日历,⚡微步威胁情报查询, 🐛视频,⚡图片,👯帮助菜单。📫 支持积分功能,⚡支持自动拉人,,🌱自动群发,👯Ai回复(国内主流AI模型,扣子,FastGpt,Dify全面支持!),⚡视频号解析,😄自定义程度丰富,小白也可轻松上手!

bot crawler security wei-xin weixin wxbot

Last synced: 10 Apr 2025

https://github.com/google/honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

c fuzzing security

Last synced: 19 Mar 2025

https://github.com/maestron/botnets

This is a collection of #botnet source codes, unorganized. For EDUCATIONAL PURPOSES ONLY

botnet botnets malware security virus

Last synced: 02 Apr 2025

https://github.com/openziti/zrok

Geo-scale, next-generation peer-to-peer sharing platform built on top of OpenZiti.

file-sharing golang network peer-to-peer reverse-proxy security zero-trust

Last synced: 23 Apr 2025

https://github.com/nabla-c0d3/ssl-kill-switch2

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

blackbox cydia ios macos reverse-engineering security ssl ssl-pinning

Last synced: 13 Apr 2025

https://github.com/QData/TextAttack

TextAttack 🐙 is a Python framework for adversarial attacks, data augmentation, and model training in NLP https://textattack.readthedocs.io/en/master/

adversarial-attacks adversarial-examples adversarial-machine-learning data-augmentation machine-learning natural-language-processing nlp security

Last synced: 02 Apr 2025

https://github.com/qdata/textattack

TextAttack 🐙 is a Python framework for adversarial attacks, data augmentation, and model training in NLP https://textattack.readthedocs.io/en/master/

adversarial-attacks adversarial-examples adversarial-machine-learning data-augmentation machine-learning natural-language-processing nlp security

Last synced: 09 Apr 2025

https://github.com/google/OpenSK

OpenSK is an open-source implementation for security keys written in Rust that supports both FIDO U2F and FIDO2 standards.

ctap2 embedded fido2 firmware hardware opensk rust security security-key tock tock-os u2f webauthn

Last synced: 02 Apr 2025

https://github.com/kishikawakatsumi/uickeychainstore

UICKeyChainStore is a simple wrapper for Keychain on iOS, watchOS, tvOS and macOS. Makes using Keychain APIs as easy as NSUserDefaults.

keychain security touch-id

Last synced: 11 Apr 2025

https://github.com/buzzfeed/sso

sso, aka S.S.Octopus, aka octoboi, is a single sign-on solution for securing internal services

aes authentication go oauth security sso

Last synced: 09 Apr 2025

https://github.com/unikraft/unikraft

A next-generation cloud native kernel designed to unlock best-in-class performance, security primitives and efficiency savings.

application cloud cloud-native hacktoberfest kernel library microservice operating-system os osdev performance qemu security unikernel unikernels unikraft virtualization

Last synced: 25 Apr 2025

https://github.com/blokadaorg/blokada

The official repo for Blokada apps.

adblocker adblocking android blocker blokada dns ios privacy security vpn

Last synced: 10 Apr 2025

https://github.com/kishikawakatsumi/UICKeyChainStore

UICKeyChainStore is a simple wrapper for Keychain on iOS, watchOS, tvOS and macOS. Makes using Keychain APIs as easy as NSUserDefaults.

keychain security touch-id

Last synced: 06 Dec 2024

https://github.com/PurpleI2P/i2pd

🛡 I2P: End-to-End encrypted and anonymous Internet

anonymity c-plus-plus communication cryptography i2p i2p-client openssl p2p privacy security vpn

Last synced: 15 Mar 2025

https://github.com/sozu-proxy/sozu

Sōzu HTTP reverse proxy, configurable at runtime, fast and safe, built in Rust. It is awesome!

http http-proxy performance proxy rust security

Last synced: 22 Apr 2025

https://github.com/ngc660sec/NGCBot

一个基于✨HOOK机制的微信机器人,支持🌱安全新闻定时推送【FreeBuf,先知,安全客,奇安信攻防社区】,👯Kfc文案,⚡漏洞查询,⚡手机号归属地查询,⚡知识库查询,🎉星座查询,⚡天气查询,🌱摸鱼日历,⚡微步威胁情报查询, 🐛视频,⚡图片,👯帮助菜单。📫 支持积分功能,⚡支持自动拉人,,🌱自动群发,👯Ai回复,⚡视频号解析,😄自定义程度丰富,小白也可轻松上手!

bot crawler security wei-xin weixin wxbot

Last synced: 24 Mar 2025

https://github.com/decalage2/oletools

oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.

compound forensics macros malware-analysis ms-office-documents ole-files olefile parser pyparsing python python-library rtf security vba

Last synced: 27 Apr 2025

https://github.com/chipsec/chipsec

Platform Security Assessment Framework

firmware firmware-security firmware-tools security security-tools

Last synced: 23 Apr 2025

https://github.com/jokob-sk/NetAlertX

🖧🔍 WIFI / LAN intruder detector. Scans for devices connected to your network and alerts you if new and unknown devices are found.

arp-scan docker intrusion-detection ipam network-analysis network-security networking pi-hole security selfhosted wifi-network wifi-security

Last synced: 06 Apr 2025

https://github.com/milesmcc/shynet

Modern, privacy-friendly, and detailed web analytics that works without cookies or JS.

a17t analytics django docker kubernetes monitoring noscript privacy python security self-hosted web-analytics

Last synced: 10 Apr 2025

https://github.com/duffn/dumb-password-rules

A compilation of sites with dumb password rules.

hacktoberfest passwords security

Last synced: 28 Apr 2025

https://github.com/pallets/itsdangerous

Safely pass trusted data to untrusted environments and back.

hmac itsdangerous pallets python security serialization

Last synced: 30 Apr 2025

https://github.com/suse/portus

Authorization service and frontend for Docker registry (v2)

containers docker docker-distribution rails ruby security

Last synced: 19 Jan 2025

https://github.com/SUSE/Portus

Authorization service and frontend for Docker registry (v2)

containers docker docker-distribution rails ruby security

Last synced: 14 Mar 2025

https://github.com/legrandin/pycryptodome

A self-contained cryptographic library for Python

cryptography python security

Last synced: 01 May 2025

https://github.com/dependencytrack/dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

appsec bill-of-materials bom component-analysis cyclonedx devsecops hacktoberfest nvd ossindex owasp package-url purl sbom sca security security-automation software-composition-analysis software-security vulnerabilities vulnerability-detection

Last synced: 28 Apr 2025

https://github.com/DependencyTrack/dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

appsec bill-of-materials bom component-analysis cyclonedx devsecops hacktoberfest nvd ossindex owasp package-url purl sbom sca security security-automation software-composition-analysis software-security vulnerabilities vulnerability-detection

Last synced: 30 Mar 2025

https://github.com/hardentools/hardentools

Hardentools simply reduces the attack surface on Microsoft Windows computers by disabling low-hanging fruit risky features.

hardening security windows

Last synced: 31 Mar 2025

https://github.com/securitywithoutborders/hardentools

Hardentools simply reduces the attack surface on Microsoft Windows computers by disabling low-hanging fruit risky features.

hardening security windows

Last synced: 18 Dec 2024

https://github.com/chromium/badssl.com

:lock: Memorable site for testing clients against bad SSL configs.

browser chrome https mitm nginx python rcpp security sha1 ssl testing tls

Last synced: 13 Apr 2025

https://github.com/rizinorg/rizin

UNIX-like reverse engineering framework and command-line toolset.

debugging exploitation program-analysis reverse-engineering security

Last synced: 23 Apr 2025

https://github.com/crytic/echidna

Ethereum smart contract fuzzer

ethereum evm fuzzer security smart-contracts solidity testing

Last synced: 25 Apr 2025

https://github.com/airbnb/streamalert

StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define.

analysis aws kinesis lambda rules security serverless terraform

Last synced: 13 Apr 2025

https://github.com/JPCERTCC/LogonTracer

Investigate malicious Windows logon by visualizing and analyzing Windows event log

active-directory blueteam dfir event-log javascript python-3 security visualization

Last synced: 09 Apr 2025

https://github.com/jpcertcc/logontracer

Investigate malicious Windows logon by visualizing and analyzing Windows event log

active-directory blueteam dfir event-log javascript python-3 security visualization

Last synced: 11 Apr 2025

https://github.com/az0x7/vulnerability-checklist

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

bugbounty security sqlinjection vulnerability vulnerability-checklist web-vulnerability

Last synced: 23 Mar 2025

https://github.com/baidu/openrasp

🔥Open source RASP solution

devsecops iast rasp security waf

Last synced: 10 Apr 2025

https://github.com/Legrandin/pycryptodome

A self-contained cryptographic library for Python

cryptography python security

Last synced: 27 Mar 2025

https://github.com/inspec/inspec

InSpec: Auditing and Testing Framework

audit compliance devops devsec inspec security spec tdd tdd-utilities testing

Last synced: 01 Apr 2025

https://github.com/Az0x7/vulnerability-Checklist

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

bugbounty security sqlinjection vulnerability vulnerability-checklist web-vulnerability

Last synced: 16 Feb 2025

https://github.com/containerssh/containerssh

ContainerSSH: Launch containers on demand

containers devsecops docker kubernetes security security-tools ssh

Last synced: 10 Apr 2025

https://github.com/pyllyukko/user.js

user.js -- Firefox configuration hardening

firefox mozilla mozilla-firefox privacy security security-hardening

Last synced: 15 Mar 2025

https://github.com/eteran/edb-debugger

edb is a cross-platform AArch32/x86/x86-64 debugger.

c-plus-plus capstone debugger edb linux ollydbg qt reverse-engineering security x86 x86-64

Last synced: 10 Apr 2025

https://github.com/ContainerSSH/ContainerSSH

ContainerSSH: Launch containers on demand

containers devsecops docker kubernetes security security-tools ssh

Last synced: 15 Mar 2025

https://github.com/goodwithtech/dockle

Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start

containers docker go golang kubernetes linter security security-audit security-tools vulnerability

Last synced: 09 Apr 2025

https://github.com/zegl/kube-score

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your Kubernetes YAML and Charts. Static code analysis for Kubernetes.

analysis automation charts ci go hacktoberfest helm k8s kube-score kubernetes kubernetes-manifests kubernetes-monitoring linter security security-scanner static-code-analysis static-code-analyzer

Last synced: 23 Apr 2025

https://github.com/netflix/bless

Repository for BLESS, an SSH Certificate Authority that runs as a AWS Lambda function

aws bastion lambda python security serverless ssh ssh-certificates

Last synced: 11 Apr 2025

https://github.com/Netflix/bless

Repository for BLESS, an SSH Certificate Authority that runs as a AWS Lambda function

aws bastion lambda python security serverless ssh ssh-certificates

Last synced: 13 Mar 2025

https://github.com/nanovms/nanos

A kernel designed to run one and only one application in a virtualized environment

edge microservice operating-systems osdev sandbox security unikernel unikernels virtualization

Last synced: 30 Mar 2025

https://github.com/google/timesketch

Collaborative forensic timeline analysis

analysis dfir forensics security timeline

Last synced: 23 Apr 2025

https://github.com/ivRodriguezCA/RE-iOS-Apps

A completely free, open source and online course about Reverse Engineering iOS Applications.

app-security ios online-course reverse-engineering security

Last synced: 26 Mar 2025

https://github.com/opensc/opensc

Open source smart card tools and middleware. PKCS#11/MiniDriver/Tokend

c minidriver opensc pkcs11 security smartcard tokend

Last synced: 23 Apr 2025

https://github.com/ivrodriguezca/re-ios-apps

A completely free, open source and online course about Reverse Engineering iOS Applications.

app-security ios online-course reverse-engineering security

Last synced: 26 Mar 2025

https://github.com/grayddq/GScan

本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。

auditing security security-audit security-scanning security-tools vulnerability-scanning

Last synced: 14 Apr 2025

https://github.com/mgeeky/penetration-testing-tools

A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.

cheatsheets exploit hacking networks penetration penetration-testing pentesting red-teaming redteam scripts security social-engineering testing tools

Last synced: 14 Apr 2025

https://github.com/mgeeky/Penetration-Testing-Tools

A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.

cheatsheets exploit hacking networks penetration penetration-testing pentesting red-teaming redteam scripts security social-engineering testing tools

Last synced: 30 Mar 2025

https://github.com/netflix-skunkworks/scumblr

Web framework that allows performing periodic syncs of data sources and performing analysis on the identified results

security

Last synced: 14 Apr 2025

https://github.com/Netflix-Skunkworks/Scumblr

Web framework that allows performing periodic syncs of data sources and performing analysis on the identified results

security

Last synced: 05 Apr 2025

https://github.com/awnumar/memguard

Secure software enclave for storage of sensitive information in memory.

crypto cryptography go golang memory security

Last synced: 23 Apr 2025

https://github.com/grayddq/gscan

本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。

auditing security security-audit security-scanning security-tools vulnerability-scanning

Last synced: 02 Apr 2025

https://github.com/qihoo360/safe-rules

详细的C/C++编程规范指南,由360质量工程部编著,适用于桌面、服务端及嵌入式软件系统。

code-quality guidelines safe security

Last synced: 09 Apr 2025

https://github.com/blackjacx/wwdc

You don't have the time to watch all the WWDC session videos yourself? No problem me and many contributors extracted the gist for you 🥳

apple authentication darkmode design hacktoberfest ios ipad macos networking nfc safari security session swift swiftui tvos videos watchos wwdc

Last synced: 13 Apr 2025

https://github.com/Blackjacx/WWDC

You don't have the time to watch all the WWDC session videos yourself? No problem me and many contributors extracted the gist for you 🥳

apple authentication darkmode design hacktoberfest ios ipad macos networking nfc safari security session swift swiftui tvos videos watchos wwdc

Last synced: 15 Nov 2024