An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/akshatvg/vulnerability-testing-solutions

Website for testing and preventing different attacks like XSS, SQL Injection & Spoofing for Nasscom (ISAA) Project.

audit cyber-security security spoofing sql-injection testing vulnerability website xss

Last synced: 11 Apr 2025

https://github.com/ko-ko-ko/php-assert

Fast flexible php assert

assert php security validation

Last synced: 11 Jan 2026

https://github.com/lirantal/express-security-txt

A Node.js middleware for Express that implements Security.txt - A Method for Web Security Policies

express hacktoberfest nodejs security

Last synced: 05 May 2025

https://github.com/polymer/polymer-resin

XSS mitigation for Polymer webcomponents that uses safe html type contracts

polymer security webcomponents xss

Last synced: 02 May 2025

https://github.com/mohammad-taheri1/youtube-jwtauthaspnet7webapi

In this repository, we implement authentication and authorization using JWT in a new Asp.NET 7 WebAPI project.

asp-net-core jwt security webapi

Last synced: 11 Jul 2025

https://github.com/MindPatch/pmg

Extract parameters/paths from urls

bugbounty bugbounty-tool bughunting python regex security

Last synced: 11 Jul 2025

https://github.com/dutchcoders/identify

Identify web application versions

fingerprint security

Last synced: 11 Apr 2025

https://github.com/yallxe/hogg

Common vulnerability scanning on steroids ☄️

dns exploit network proxy rust rust-lang scanner secrets security sniffer vulnerabilities webscanner

Last synced: 19 Jul 2025

https://github.com/systemli/mail-tls-helper

Postfix helper for mandatory TLS

postfix postfix-helper python security tls

Last synced: 12 Jul 2025

https://github.com/fphammerle/docker-onion-service

hidden tor .onion service 🐳

docker network onion-service podman security tor

Last synced: 04 May 2025

https://github.com/danieljustus/symaira-vault

🔐 The password manager for terminal users and AI agents. Age-encrypted, keyring-cached, MCP-ready. Zero telemetry.

age-encryption agent-skills ai-agents claude-code cli codex-cli golang hermes-agent hermes-skill mcp mcp-server openclaw openclaw-skill opencode own-your-data password-manager security

Last synced: 11 Jun 2026

https://github.com/agent-receipts/obsigna

Agent Receipts — cryptographically signed audit trails for AI agent actions. Protocol spec, SDKs (Go, TypeScript, Python), and MCP proxy.

agent-receipts ai ai-agents audit cryptography ed25519 golang mcp model-context-protocol python receipts security typescript verifiable-credentials w3c-vc

Last synced: 12 Jun 2026

https://github.com/xi/xiMatrix

filter net requests according to source, destination and type

ad-block firefox-extension security umatrix webextension

Last synced: 26 Mar 2025

https://github.com/grapheneos/device_common

Common device sources.

android grapheneos security

Last synced: 07 Jul 2025

https://github.com/t2minator/mbp-tails

How to get Tails working on T2 Apple device (e.g. 2019 MacBook Pro) without needing external keyboard/mouse.

anonymity anonymous apple apple-t2 chroot debian debian-linux kernel linux linux-kernel macbook macbookpro macbooks mpb privacy security t2 t2tails tails tor

Last synced: 09 Jul 2025

https://github.com/monish-khatri/security-headers

Package provides a minimal and simple integration to attach OWASP security headers for building a secure Laravel application.

composer-package laravel owasp-top-10 php8 security security-headers

Last synced: 10 Apr 2025

https://github.com/frozenassassine/easepass

A powerful but simple, password manager that stores all your passwords locally and offline. Written in C# WinUI3

2fa-client 2factor app csharp password password-manager passwordmanager security totp windows winui3

Last synced: 23 Aug 2025

https://github.com/sebastienrousseau/password-generator

A fast, simple, and powerful open-source utility tool for generating strong, unique, and random passwords. The Password Generator supports various types of passwords including base64-encoded, memorable, and complex strong passwords.

crypto cryptography dictionary dictionary-tools generator javascript memorable-passphrases memorable-passwords nodejs npm passgen passgenerator password password-generator passwords security security-tools yeoman

Last synced: 16 Mar 2025

https://github.com/xi/ximatrix

filter net requests according to source, destination and type

ad-block firefox-extension security umatrix webextension

Last synced: 29 Jul 2025

https://github.com/tersesystems/ocaps

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 08 Mar 2026

https://github.com/prawee/cyber-security

Note for cyber security class

docker git security strapi

Last synced: 22 Sep 2025

https://github.com/FrozenAssassine/EasePass

A powerful but simple, password manager that stores all your passwords locally and offline. Written in C# WinUI3

2fa-client 2factor app csharp password password-manager passwordmanager security totp windows winui3

Last synced: 31 Mar 2025

https://github.com/chadmcox/azure_ad_conditional_access_policies

Tools to help implement Conditional Access Policies in Azure AD

azuread azuread-b2b azuread-reporting conditional-access mfa security

Last synced: 28 Jun 2025

https://tersesystems.github.io/ocaps/

Object capability (ocap) tools and macros for Scala.

access capabilities capability ocap scala security

Last synced: 23 Sep 2025

https://github.com/rasoolsomji/django-security

Django is great! Here are some ways to make it safer

audit csrf cybersecurity django nginx owasp pentest python security vulnerabilities xss

Last synced: 14 Mar 2025

https://github.com/vincd/savoir

Savoir is a tool to perform tasks during internal security assessment

kerberos pentesting security windows

Last synced: 20 Jan 2026

https://github.com/nimacodez/keygn

🪄 A Command Line Tool To Make random keys with different lengths for your different purposes.

authentication cli cmd decode encode hashing jwt jwt-token security token

Last synced: 14 Apr 2025

https://github.com/sjinks/ssh-honeypotd

A low-interaction SSH honeypot written in C

honeypot security ssh ssh-honeypot ssh-honeypotd

Last synced: 27 Jun 2025

https://github.com/tijme/binaries

A mirror of several precompiled standalone red-teaming tools.

binaries cyber hacking mirror precompiled redteam security standalone tools

Last synced: 25 Apr 2025

https://github.com/zaproxy/action-af

A GitHub Action for running ZAP Automation Framework plans

actions dast devsecops github-actions security

Last synced: 30 Jun 2025

https://github.com/Azure/AzureKeyVault

R interface to Azure Key Vault

azure azure-key-vault azure-sdk-r r security

Last synced: 29 Jul 2025

https://github.com/CharlesAverill/DEFFS

Distributed, Encrypted, Fractured File System - A custom distributed file system written in C with FUSE

filesystem fuse linux security

Last synced: 06 Mar 2025

https://github.com/avast/authenticode-parser

Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.

cryptography security

Last synced: 07 Apr 2025

https://github.com/brunocampos01/encrypt-file

:lock: :page_with_curl: CLI to encrypt or decrypt files with only one command.

aes aes-encryption aes-gcm decrypt decryption encrypt encryption encryption-decryption pbkdf2 pip python security security-tools sha256

Last synced: 01 Sep 2025

https://github.com/azureanimations/azureanimations.github.io

Azure Animations, where we make hard-to-understand Azure cloud concepts easier and more fun to learn!

ai azure copilot devops microsoft openai security

Last synced: 30 Jun 2025

https://github.com/cerbos/demo-rest

Demo of using Cerbos to secure a Go REST API.

access-control cerbos go policy rest-api security

Last synced: 18 Sep 2025

https://github.com/ntkme/security-trust-settings-tools

:lock: OS X Keychain Trust Settings Tools.

certificate macos security

Last synced: 28 Jul 2025

https://github.com/rsc-dev/ishtar

.NET applications hacking toolset

c-sharp dll-injection hacking security

Last synced: 23 Jul 2025

https://github.com/rennf93/two-fast-auth

FastAPI middleware that provides seamless two-factor authentication implementation. It integrates with FastAPI to offer robust 2FA protection for your application routes.

2fa fastapi middleware python security

Last synced: 14 Apr 2025

https://github.com/artginzburg/2fatotray

 Copy 2FA tokens in a click (macOS)

2fa app macos security totp

Last synced: 31 Aug 2025

https://github.com/rmbolger/pwnedpasscheck

Check passwords and hashes against the haveibeenpwned.com Pwned Passwords API using PowerShell

haveibeenpwned hibp infosec powershell powershell-module security

Last synced: 04 Jul 2025

https://github.com/miathedev/kubeauth

A kubernetes multi type authentication provider using webhook token auth

auth authentication authorization identity k8s kubernetes ldap security

Last synced: 09 Apr 2025

https://github.com/syntatis/wp-feature-flipper

🚥 Disable Comments, Gutenberg, Emojis, and other features you don't need in WordPress®

comments emojis gutenberg media-library rss-feed security wordpress-plugin wp-admin xmlrpc

Last synced: 10 Oct 2025

https://github.com/valtteril/go-implant

A flexible cross-platform post-exploitation agent written in Go with basic functionalities

backdoor payload pentest post-exploitation rat redteam remote-access remote-admin-tool reverse-shell security

Last synced: 14 Jan 2026

https://github.com/jakub-przepiora/ps-scan-prestashop-scanner

This tool serves as an initial version scanner specifically designed for PrestaShop, a popular e-commerce platform. The primary purpose of the scanner is to analyze PrestaShop instances for various aspects, such as module information, version details, and potential security vulnerabilities.

cve prestashop security security-tools

Last synced: 24 Oct 2025

https://github.com/k--chow/solana-security

A compilation of solana security resources.

auditing ethereum security smart solana

Last synced: 11 Mar 2025

https://github.com/vmagamedov/security-framework

Step-by-step personal cybersecurity guide

2fa fido2 security yubikey

Last synced: 18 Jan 2026

https://github.com/owtf/http-request-translator

HTTP Request Translator (hrt) translates raw HTTP requests to different scripts (bash, python, etc.)

owasp owtf pentesting python security

Last synced: 17 Mar 2026

https://github.com/postgrespro/libblobstamper

Framework for Structure Aware Fuzzing. Allows to build own stamps that would convert pulp-data that came from fuzzer to data with structure you need

fuzzing sdl security structure-aware-fuzzing

Last synced: 28 Feb 2026

https://github.com/celenityy/grapheneos-settings

My recommendations for the ultimate GrapheneOS Configuration :)

android anti-tracking grapheneos hardened hardening privacy privacy-protection security tracking

Last synced: 08 Jun 2026

https://github.com/maximthomas/blazewall

Open Source Single-Sign-On and Access Management platform built in microservice architecture

authentication authorization cloud-native gateway-service go go-gin golang information-security microservice microservices security sso sso-solution

Last synced: 15 Dec 2025

https://github.com/storopoli/dead-man-switch

Rust no-BS Dead Man's Switch library, TUI and Web Interface

dead-man-switch privacy security tui web

Last synced: 02 Feb 2026

https://github.com/neuralegion/sslscanner

SSL Scanner written in Crystal

crystal openssl scanner security ssl

Last synced: 07 May 2025

https://github.com/briandfoy/cpan-audit

Check CPAN modules for known security vulnerabilities

cve perl perl-module perl-tool security security-audit

Last synced: 13 Apr 2025

https://github.com/mindpatch/pmg

Extract parameters/paths from urls

bugbounty bugbounty-tool bughunting python regex security

Last synced: 12 Jul 2025

https://github.com/ph4r05/tinyosids

Intrusion Detection System (IDS) for Wireless Sensor Networks (WSN)

ids iot research security tinyos

Last synced: 11 Jul 2025

https://github.com/bwireman/go-over

A tool to audit Erlang & Elixir dependencies, to make sure your ✨ gleam projects really sparkle!

audit beam cli dependencies dependency elixir erlang ghsa gleam javascript security security-audit security-tools tools vulnerable

Last synced: 28 Oct 2025

https://github.com/marvinjwendt/traefik-guardian

👮 A dead simple forward auth provider to protect Traefik services with passwords.

auth auth-provider authentication docker docker-image golang hacktoberfest security traefik traefik-middleware user-authentication

Last synced: 15 Dec 2025

https://github.com/adityaoberai/rolebasedauthsample

ASP.NET Web API sample to showcase RBAC via JWTs in .NET 8

authentication dotnet dotnet-8 jwt security

Last synced: 06 May 2025

https://github.com/akaunting/signed-url

Signed (unique) URL package for Laravel

laravel php security signed unique url

Last synced: 07 Jul 2025

https://github.com/jasona7/ChatCVE

ChatCVE is an app using the Langchain SQL Language Tool to give a LLM prompt experience to CVE and SBOM DevSecOps Triage Data

devsecops python sbom security

Last synced: 04 Apr 2025

https://github.com/Ovi3/awvs_xray

AWVS13和xray的自动化扫描脚本

scanner-web security vulnerability vulnerability-scanners web-security

Last synced: 11 Jul 2025

https://github.com/sighupio/trivy-offline

Trivy offline builder. Fits perfectly in your CI System

cicd drone hacktoberfest quay sdlc security trivy

Last synced: 11 Mar 2025

https://github.com/sinewaveai/prooflayer-rules

Open-source runtime security rules engine for MCP servers and AI agents. Detects prompt injection, command injection, jailbreaks, and data exfiltration.

ai-agents ai-security mcp mcp-protocol prompt-injection runtime-security security

Last synced: 16 Jun 2026

https://github.com/vatshayan/final-year-project-steganography

Steganography is the technique of hiding secret data within an ordinary, non-secret, file or message in order to avoid detection; the secret data is then extracted at its destination.

btech-project capstone-project cipher college-project cryptography cryptography-project final-project final-projects final-year-project finalyearproject mtech-project project project-report research-paper-project security semester-project steganography university-project university-projects

Last synced: 28 Oct 2025

https://github.com/paulveillard/cybersecurity-ssrf

An ongoing & curated collection of awesome web vulnerability - Server-side request forgery software practices and remediation, libraries and frameworks, best guidelines and technical resources about SSRF

cybersecurity mitigation remediation security security-tools server-side server-side-request-forgery ssrf vulnerabilities vulnerability vulnerability-assessment vulnerability-detection vulnerability-management

Last synced: 08 Oct 2025

https://github.com/3nock/ote-templates

Community curated list of templates for the OSINT template engine.

attack-surfaces bugbounty fingerprinting osint recon security templates

Last synced: 09 Feb 2026

https://github.com/openagentidentityprotocol/agentidentityprotocol

Agent Identity Protocol - Zero-trust security layer for AI agents. Policy enforcement proxy for MCP with Human-in-the-Loop approval, DLP scanning, and audit logging.

agent-identity-protocol ai-agents ai-safety cursor-ide dlp golang human-in-the-loop llm mcp model-context-protocol policy-enforcement security zero-trust

Last synced: 29 May 2026

https://gitlab.com/i2pplus/I2P.Plus

I2P+ is a soft-fork of the Java I2P Anonymizing Network Layer. License: AGPL v.3 https://i2pplus.github.io/

anonymity privacy security

Last synced: 13 Jun 2025

https://github.com/nccgroup/yocto-whitepaper-examples

Example code included in the "Improving Your Embedded Linux Security Posture with Yocto" whitepaper

linux openembedded security yocto

Last synced: 26 Apr 2025

https://github.com/cocopuff2u/macos_admin_scripts

macOS Admin Script/Tool Collection

jamf macos mdm scripts security

Last synced: 01 Apr 2026

https://github.com/thomasmerz/pihole-wireguard-knowhow

My Setup for Pi-hole at home and in the cloud to be used with WireGuard for the whole family.

anti-ads anti-malware anti-spyware anti-surveillance anti-tracking dns privacy security vpn

Last synced: 01 Apr 2025

https://github.com/ait-testbed/attackmate

AttackMate is an attack orchestration tool that executes full attack-chains based on playbooks.

api attack automation automation-framework cybersecurity exploit metasploit orchestration pentest python redteam rootkit security sliver testbed training

Last synced: 22 Apr 2025

https://github.com/mondoohq/samples

Security Scanning Samples with cnspec, cnquery, and Mondoo Platform

hacking protect samples security security-as-code

Last synced: 19 Mar 2026

https://github.com/sassman/srp6-rs

A safe implementation of the secure remote password authentication and key-exchange protocol (SRP and SRP6a)

authentication cryptography pki protocol rust secure-remote-password security srp srp-6a

Last synced: 19 Apr 2026

https://github.com/syss-research/icebreaker-glitcher

Simple voltage glitcher implementation for the iCEBreaker FPGA board

fpga glitching ice40 ice40up5k icebreaker it-security security security-tools security-vulnerability tool

Last synced: 04 Sep 2025