An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/HolyBugx/HolyTips

A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.

api api-security bugbounty bugbounty-writeups bugbountytips checklist pentest pentesting security web webapp websecurity writeups

Last synced: 21 Nov 2024

https://github.com/authorizerdev/authorizer

Your data, your control. Fully open source, authentication and authorization. No lock-ins. Deployment in Railway in 120 seconds || Spin a docker image as a micro-service in your infra. Built in login page and Admin panel out of the box.

2fa auth authentication authorization docker golang graphdb graphql hacktoberfest magic-link microservice nosql oauth2 role-based-access-control security social-logins sql typescript user-privileges

Last synced: 25 Apr 2025

https://github.com/HummerRisk/HummerRisk

HummerRisk 是云原生安全平台,包括混合云安全治理和云原生安全检测。

cloud-custodian cloud-native cloud-native-security compliance compliance-as-code cspm k8s-security kubernetes-security prowler sbom security trivy vulnerability

Last synced: 01 May 2025

https://github.com/zer0yu/cybersecurityrss

CyberSecurityRSS: A collection of cybersecurity rss to make you better!

cyberspace-security knowledgebase redteam rss rss-subscription security websecurity

Last synced: 26 Mar 2025

https://github.com/DigitalRuby/IPBan

Since 2011, IPBan is the worlds most trusted, free security software to block hackers and botnets. With both Windows and Linux support, IPBan has your dedicated or cloud server protected. Upgrade to IPBan Pro today and get a discount. Learn more at ↓

botnets desktop fail2ban firewall free hackers intruder intrusion-detection intrusion-prevention ipban linux rdp remote remote-desktop secure security server service ssh windows

Last synced: 30 Mar 2025

https://github.com/parsiya/Hacking-with-Go

Golang for Security Professionals

go security

Last synced: 14 Nov 2024

https://github.com/phith0n/JavaThings

Share Things Related to Java - Java安全漫谈笔记相关内容

java security

Last synced: 21 Nov 2024

https://github.com/dephell/dephell

:package: :fire: Python project management. Manage packages: convert between formats, lock, install, resolve, isolate, test, build graph, show outdated, audit. Manage venvs, build package, bump version.

conda dependencies dependency-graph dependency-resolution docker flit license-management pip pipenv pipfile poetry project-management pypi python release security testing venv versioning wheels

Last synced: 17 Jan 2025

https://github.com/zer0yu/CyberSecurityRSS

CyberSecurityRSS: A collection of cybersecurity rss to make you better!

cyberspace-security knowledgebase redteam rss rss-subscription security websecurity

Last synced: 21 Nov 2024

https://github.com/lazaronixon/authentication-zero

An authentication system generator for Rails applications.

api auth authentication generator rails rails-authentication ruby security token

Last synced: 25 Apr 2025

https://github.com/gitguardian/ggshield

Detect and validate 400+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

apikey code credentials devsecops key leak precommit scanning secrets-detection secrets-management security

Last synced: 23 Apr 2025

https://github.com/netflix/lemur

Repository for the Lemur Certificate Manager

aws python security ssl ssl-certificates tls

Last synced: 27 Apr 2025

https://github.com/dreadl0ck/netcap

A framework for secure and scalable network traffic analysis - https://netcap.io

analysis detection intrusion monitoring network security traffic

Last synced: 07 Apr 2025

https://github.com/complexorganizations/wireguard-manager

✔️ WireGuard-Manager is an innovative tool designed to streamline the deployment and management of WireGuard VPNs. Emphasizing user-friendliness and security, it simplifies the complexities of VPN configuration, offering a robust yet accessible solution for both personal and professional use.

censorship censorship-circumvention encryption gfw linux networking privacy road-warrior security self-hosted vpn vpn-setup wireguard

Last synced: 14 Apr 2025

https://github.com/nccgroup/Scout2

Security auditing tool for AWS environments

aws security

Last synced: 02 Apr 2025

https://github.com/lutfumertceylan/top25-parameter

For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙

bugbounty bugbountytips infosec pentest-tool pentesting security vulnerability-detection vulnerability-research xss-detection

Last synced: 24 Mar 2025

https://github.com/Netflix/lemur

Repository for the Lemur Certificate Manager

aws python security ssl ssl-certificates tls

Last synced: 22 Apr 2025

https://github.com/bitbrute/evillimiter

Tool that monitors, analyzes and limits the bandwidth of devices on the local network without administrative access.

hacking hacking-tool linux networking penetration-testing pentest-tool pentesting python security security-tools

Last synced: 13 Apr 2025

https://github.com/gregwar/captcha

PHP Captcha library

anti-bot anti-spam bots captcha php security

Last synced: 10 Apr 2025

https://github.com/Gregwar/Captcha

PHP Captcha library

anti-bot anti-spam bots captcha php security

Last synced: 14 Mar 2025

https://github.com/Srinivas11789/PcapXray

:snowflake: PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight important communication and file extraction

computer-forensics cybersecurity forensic-analysis forensics network network-diagram packets pcap python security tor tor-traffic traffic

Last synced: 07 Apr 2025

https://github.com/kubearmor/kubearmor

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (BPF-LSM, AppArmor).

bpf containers ebpf hacktoberfest kernel kubernetes lsm policy sandbox security system tool

Last synced: 27 Apr 2025

https://github.com/itext/itext-dotnet

iText for .NET is the .NET version of the iText library, formerly known as iTextSharp, which it replaces. iText represents the next level of SDKs for developers that want to take advantage of the benefits PDF can bring. Equipped with a better document engine, high and low-level programming capabilities and the ability to create, edit and enha

accessibility acroform archiving ccpa digital-signature documents encryption fips itextsharp library pades pdf pdf-generation pdfa pdfua sdk security signature-validation svg xfdf

Last synced: 11 Apr 2025

https://github.com/vksrc/github-monitor

Github Sensitive Information Leakage Monitor(Github信息泄漏监控系统)

github leakage monitor restful security

Last synced: 08 Apr 2025

https://github.com/protectai/vulnhuntr

Zero shot vulnerability discovery using LLMs

ai llm security static-analysis vulnerability-detection

Last synced: 13 Apr 2025

https://github.com/VKSRC/Github-Monitor

Github Sensitive Information Leakage Monitor(Github信息泄漏监控系统)

github leakage monitor restful security

Last synced: 26 Mar 2025

https://github.com/coinspect/learn-evm-attacks

Learn and contribute by exploring blockchain attacks in detail. Maintained by Coinspect smart contract audit team, renowned for their top-tier smart contract audit services.

audit ethereum ethereum-security evm security smart-contracts solidity-security

Last synced: 25 Mar 2025

https://github.com/srinivas11789/pcapxray

:snowflake: PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight important communication and file extraction

computer-forensics cybersecurity forensic-analysis forensics network network-diagram packets pcap python security tor tor-traffic traffic

Last synced: 13 Mar 2025

https://github.com/google/sandboxed-api

Generate sandboxes for C/C++ libraries automatically

apache-license-2 cplusplus cplusplus-17 sandbox sandboxing sapi security security-hardening

Last synced: 11 Apr 2025

https://github.com/greenpau/caddy-security

🔐 Authentication, Authorization, and Accounting (AAA) App and Plugin for Caddy v2. 💎 Implements Form-Based, Basic, Local, LDAP, OpenID Connect, OAuth 2.0 (Github, Google, Facebook, Okta, etc.), SAML Authentication. MFA/2FA with App Authenticators and Yubico. 💎 Authorization with JWT/PASETO tokens. 🔐

access-control acl auth authentication authorization caddy-plugin caddy2 jwt ldap oauth2 openid paseto paseto-tokens saml secdevops secops security sso webauthn websecurity

Last synced: 13 Apr 2025

https://github.com/nccgroup/sobelow

Security-focused static analysis for the Phoenix Framework

elixir phoenix-framework security static-analysis

Last synced: 29 Apr 2025

https://github.com/404notf0und/AI-for-Security-Learning

安全场景、基于AI的安全算法和安全数据分析业界实践

data-analysis data-mining machine-learning security

Last synced: 27 Apr 2025

https://github.com/rezach/secure-electron-template

The best way to build Electron apps with security in mind.

boilerplate electron i18next react redux security template webpack

Last synced: 07 Apr 2025

https://github.com/GitGuardian/ggshield

Find and fix 400+ types of hardcoded secrets and 70+ types of infrastructure-as-code misconfigurations.

apikey code credentials devsecops iac iac-security infrastructure-as-code key leak precommit scanning secrets-detection secrets-management security

Last synced: 24 Mar 2025

https://github.com/murphysecurity/murphysec

An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。

codescan dependency sca scanner security software-composition-analysis software-supply-chain vulnerability-detection

Last synced: 10 Apr 2025

https://github.com/404notf0und/ai-for-security-learning

安全场景、基于AI的安全算法和安全数据分析业界实践

data-analysis data-mining machine-learning security

Last synced: 25 Mar 2025

https://github.com/bcgit/bc-csharp

BouncyCastle.NET Cryptography Library (Mirror)

bouncycastle cryptography dtls encryption open-source openpgp post-quantum security tls

Last synced: 25 Jan 2025

https://github.com/antrea-io/antrea

Kubernetes networking based on Open vSwitch

cncf cni kubernetes networking security

Last synced: 10 Apr 2025

https://github.com/rustsec/rustsec

RustSec API & Tooling

cargo rust security

Last synced: 22 Apr 2025

https://github.com/theupdateframework/python-tuf

Python reference implementation of The Update Framework (TUF)

cncf compromise key python repository revocation security software update

Last synced: 23 Apr 2025

https://github.com/taviso/ctftool

Interactive CTF Exploration Tool

reverse-engineering security windows windows-internals

Last synced: 08 Apr 2025

https://github.com/chainreactors/gogo

面向红队的, 高度可控可拓展的自动化引擎

recon redteam security security-tools

Last synced: 11 Apr 2025

https://github.com/gosecure/pyrdp

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

hacktoberfest honeypot mitm pentest pyrdp rdp security

Last synced: 28 Apr 2025

https://github.com/edoardottt/cariddi

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

bugbounty crawler crawling endpoint-discovery endpoints go golang hacktoberfest infosec osint penetration-testing pentesting recon reconnaissance redteam scraper secret-keys secrets-detection security security-tools

Last synced: 10 Apr 2025

https://github.com/justinas/nosurf

CSRF protection middleware for Go.

csrf go middleware security

Last synced: 11 Apr 2025

https://github.com/slsa-framework/slsa

Supply-chain Levels for Software Artifacts

devops security supply-chain-security

Last synced: 28 Mar 2025

https://github.com/theupdateframework/tuf

Python reference implementation of The Update Framework (TUF)

cncf compromise key python repository revocation security software update

Last synced: 25 Mar 2025

https://github.com/0xRadi/OWASP-Web-Checklist

OWASP Web Application Security Testing Checklist

bugbounty checklist owasp security security-tools security-vulnerability testing

Last synced: 14 Mar 2025

https://github.com/0xradi/owasp-web-checklist

OWASP Web Application Security Testing Checklist

bugbounty checklist owasp security security-tools security-vulnerability testing

Last synced: 02 Apr 2025

https://github.com/jaksi/sshesame

An easy to set up and use SSH honeypot, a fake SSH server that lets anyone in and logs their activity

go golang honeypot security ssh

Last synced: 12 Apr 2025

https://github.com/someengineering/resoto

Fix Inventory helps you identify and remove the most critical risks in AWS, GCP, Azure and Kubernetes.

aws cnapp cspm cybersecurity digitalocean gcp infrastructure-as-code policy-as-code security security-audit security-automation

Last synced: 15 Mar 2025

https://github.com/byt3bl33d3r/DeathStar

Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.

active-directory pentesting python security

Last synced: 16 Apr 2025

https://github.com/byt3bl33d3r/deathstar

Uses Empire's (https://github.com/BC-SECURITY/Empire) RESTful API to automate gaining Domain and/or Enterprise Admin rights in Active Directory environments using some of the most common offensive TTPs.

active-directory pentesting python security

Last synced: 14 Apr 2025

https://github.com/keystone-engine/keypatch

Multi-architecture assembler for IDA Pro. Powered by Keystone Engine.

arm arm64 assembler ida ida-pro idapro keystone mips powerpc reverse-engineering security sparc x86 x86-64

Last synced: 11 Apr 2025

https://github.com/reZach/secure-electron-template

The best way to build Electron apps with security in mind.

boilerplate electron i18next react redux security template webpack

Last synced: 14 Mar 2025

https://github.com/ballcat-projects/ballcat

😸一个快速开发脚手架,快速搭建企业级后台管理系统,并提供多种便捷starter进行功能扩展。主要功能包括前后台用户分离,菜单权限,数据权限,定时任务,访问日志,操作日志,异常日志,统一异常处理,XSS过滤,SQL防注入,国际化 等多种功能

ant-design code-generator i18n ouath2 react security spring spring-boot upms vue websocket

Last synced: 11 Apr 2025

https://github.com/krisnova/boopkit

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

ebpf linux-kernel-hacking security tcp

Last synced: 08 Apr 2025

https://github.com/wireghoul/graudit

grep rough audit - source code auditing tool

security security-audit security-tools shell source-code vulnerability-detection

Last synced: 11 Apr 2025

https://github.com/ovh/the-bastion

Authentication, authorization, traceability and auditability for SSH accesses.

bastion security ssh

Last synced: 11 Apr 2025

https://github.com/anchore/anchore-engine

A service that analyzes docker images and scans for vulnerabilities

anchore-engine containers docker docker-image dockerhub python security static-analysis vulnerabilities whitelist

Last synced: 21 Jan 2025

https://github.com/utkusen/urlhunter

a recon tool that allows searching on URLs that are exposed via shortener services

bugbounty intelligence osint recon security

Last synced: 13 Apr 2025

https://github.com/chaitin/veinmind-tools

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

cloud-native cloud-security container-security containerd docker image-security security

Last synced: 14 Apr 2025

https://github.com/ninoseki/mitaka

A browser extension for OSINT search

chrome-extension osint security threat-intelligence

Last synced: 12 Apr 2025

https://github.com/nielsfaber/alarmo

Easy to use alarm system integration for Home Assistant

alarm assistant hass home integration lovelace security

Last synced: 12 Apr 2025

https://github.com/hjdhjd/homebridge-unifi-protect

:video_camera: Complete HomeKit integration for all UniFi Protect device types with full support for most features including HomeKit Secure Video, and more. https://homebridge.io

camera cameras doorbell homebridge homebridge-plugin homekit homekit-support motion-detection motion-sensor nvr security ubiquiti udm-pro unifi unifi-nvr unifi-os unifi-protect unifi-protect-controller unifi-protect-devices

Last synced: 10 Apr 2025

https://github.com/dolevf/damn-vulnerable-graphql-application

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.

damn-vulnerable damn-vulnerable-web-application exploitation graphql graphql-security penetration-testing security vulnerability

Last synced: 08 Apr 2025

https://github.com/dolevf/Damn-Vulnerable-GraphQL-Application

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.

damn-vulnerable damn-vulnerable-web-application exploitation graphql graphql-security penetration-testing security vulnerability

Last synced: 04 Apr 2025

https://github.com/wallarm/gotestwaf

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

api-security bugbounty graphql-security grpc-security owasp rest-security security security-testing security-tools waf web-application-firewall web-application-security

Last synced: 10 Apr 2025

https://github.com/TryCatchHCF/Cloakify

CloakifyFactory - Data Exfiltration & Infiltration In Plain Sight; Convert any filetype into list of everyday strings, using Text-Based Steganography; Evade DLP/MLS Devices, Defeat Data Whitelisting Controls, Social Engineering of Analysts, Evade AV Detection

av-evasion cipher cryptography data-exfiltration dlp exfiltration hacking hacking-tool hacking-tools infosec pentest pentest-tool pentest-tools pentesting privacy red-team security security-tools steganography stego

Last synced: 30 Mar 2025

https://github.com/HashPals/Name-That-Hash

🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥

ctf ctf-tools cyber hacking hackthebox hacktoberfest hash hashing infosec python security tool tryhackme

Last synced: 15 Apr 2025

https://github.com/bee-san/name-that-hash

🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥

ctf ctf-tools cyber hacking hackthebox hacktoberfest hash hashing infosec python security tool tryhackme

Last synced: 15 Apr 2025

https://github.com/veo/vscan

开源、轻量、快速、跨平台 的网站漏洞扫描工具,帮助您快速检测网站安全隐患。功能 端口扫描(port scan) 指纹识别(fingerprint) 漏洞检测(nday check) 智能爆破 (admin brute) 敏感文件扫描(file fuzz)

0day brute fingerprint fuzzing portscan redteam security

Last synced: 15 Apr 2025

https://github.com/matanolabs/matano

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

alerting apache-iceberg aws aws-security big-data cloud cloud-native cloud-security cybersecurity detection-engineering dfir log-analytics log-management rust secops security security-tools serverless siem threat-hunting

Last synced: 12 Apr 2025

https://github.com/krol3/container-security-checklist

Checklist for container security - devsecops practices

containers devsecops security

Last synced: 22 Mar 2025

https://github.com/duendesoftware/products

The most flexible and standards-compliant OpenID Connect and OAuth 2.x framework for ASP.NET Core

aspnetcore bff identity oauth oidc openid-connect security

Last synced: 22 Apr 2025

https://github.com/openvpn/openvpn-gui

OpenVPN GUI is a graphical frontend for OpenVPN running on Windows 7 / 8 / 10. It creates an icon in the notification area from which you can control OpenVPN to start/stop your VPN tunnels, view the log and do other useful things.

security vpn-client

Last synced: 11 Apr 2025

https://github.com/hashpals/name-that-hash

🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥

ctf ctf-tools cyber hacking hackthebox hacktoberfest hash hashing infosec python security tool tryhackme

Last synced: 02 Mar 2025

https://github.com/chenjj/espoofer

An email spoofing testing tool that aims to bypass SPF/DKIM/DMARC and forge DKIM signatures.🍻

dkim dmarc dmarc-bypass email-spoof hacking penetration-testing phishing phishing-attacks security security-tools smtp spf spoofing spoofing-emails

Last synced: 05 Apr 2025