An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/cinar/checker

Effortless input validation in Go with the power of struct tags. No dependencies, just pure simplicity. ✨ See how! 👀

checker customizable data-integrity data-validation form-validation go golang input-validation library lightweight localization no-dependencies normalization security struct-tags validation validator

Last synced: 12 Jan 2026

https://github.com/cioccarellia/billing-protector

Security purchases checker & validator for Android

android billing bypass defense defenses kotlin patch pirate protection purchase security

Last synced: 24 Aug 2025

https://github.com/tech-preta/kubesec

O projeto Kubesec é uma solução abrangente para análise e relatórios de segurança em clusters Kubernetes.

kubernetes security

Last synced: 12 May 2025

https://github.com/brosck/bugbountytricks

「🐞」Bug Bounty Tricks

bounty bug bugbounty security tips tricks

Last synced: 21 Jan 2026

https://github.com/dajiaji/crystals-kyber-js

An ML-KEM (NIST FIPS 203) and CRYSTALS-KYBER implementation written in TypeScript.

cryptography crystals-kyber fips203 javascript kem kyber ml-kem mlkem post-quantum pqc security typescript

Last synced: 08 Mar 2026

https://github.com/qaware/heimdall

Secure Password Storage

algorithm hash heimdall pbkdf2 security

Last synced: 08 Apr 2025

https://github.com/xen0l/iam-lint

Github action for linting AWS IAM policy documents

aws iam security

Last synced: 02 Jan 2026

https://github.com/redfast00/malidate

A logging DNS and HTTP(S) server. Opensource alternative to some parts of the Burpsuite Collaborator server.

http-server malidate security security-tools

Last synced: 18 Apr 2026

https://github.com/wandapeter/pam-authramp

pam-authramp | The AuthRamp PAM module provides an account lockout mechanism based on the number of authentication failures.

brute-force pam pam-authentication pam-module rust security security-tools

Last synced: 24 Jun 2025

https://github.com/pyrohost/clavis

A Rust library for secure, encrypted communication over asynchronous streams

async communication encryption security

Last synced: 31 Aug 2025

https://github.com/hakky54/java-tutorials

📝 A repository containing different java tutorials

elasticsearch grpc java log-captor mockito security spring ssl tls tutorial unit-testing websocket

Last synced: 14 Apr 2025

https://github.com/1n3/cloudhunter

Find unreferenced AWS S3 buckets which have CloudFront CNAME records pointing to them

1n3 amazon aws buckets cloud cloudfront cloudhunter cname dns public s3 scanner security

Last synced: 07 May 2025

https://github.com/vante-dev/vante-bots

Turbo Sistemli Setuplı v14 Public / Ekip Botları

discord discord-bot discord-js moderation security statistics

Last synced: 09 Aug 2025

https://github.com/nasbench/eventlog_compendium

The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.

detection-engineering eventlog security windows

Last synced: 06 May 2025

https://github.com/dosx-dev/js-hooker

Just load this .js module and it will start tracking all external calls by a JS-application

debugging hacktoberfest infosec javascript js reverse-engineering security

Last synced: 07 May 2025

https://github.com/quantumsheep/warshield

Warshield is a file encryption and decryption CLI using AES 256 algorithm

aes-256 aes-256-gcm cli decryption encryption file-encryption protection security sha512

Last synced: 06 Mar 2026

https://github.com/deadbits/shells

collection of useful shells for penetration tests

c penetration-testing python security

Last synced: 07 May 2025

https://github.com/cokeBeer/go-sec-code

Go-sec-code is a project for learning Go vulnerability code.

cors go jsonp security sqli ssrf ssti xss xxe

Last synced: 16 Feb 2026

https://github.com/sentinella-enterprises/cyber-security-framework

The CyberSecurity Framework (CSF for short) is a local Python3 scripting package which aims directly on Cyber Security auditing, where you can execute and create new programs for any purpuse that go under your own responsibility to fit your needs. (You can still use/extend it to fit on any unrelated needs of your own).

csf cyber cyber-security framework python python36 security

Last synced: 09 Jul 2025

https://github.com/cyberark/pas-orchestrator

CyberArk Privileged Access Security automatic deployment using Ansible

ansible ansible-playbook core-pas cyberark security

Last synced: 03 May 2025

https://github.com/k8gege/phpstudydoor

PhpStudy 2016 & 2018 BackDoor Exploit

backdoor exploit hacking k8cscan pentest pentest-tool phpstudy security

Last synced: 04 Sep 2025

https://github.com/zmre/awesome-security-for-ai

Awesome products for securing AI systems includes open source and commercial options and an infographic licensed CC-BY-SA-4.0.

ai appsec awesome awesome-list cybersecurity genai lists llm machine-learning ml mlops privacy resources security

Last synced: 17 Jun 2025

https://github.com/grapheneos/script

Scripting for generating signed production releases of AOSP and metadata for the Updater app along with partially automated maintenance of out-of-tree patch sets.

android grapheneos privacy security

Last synced: 09 Sep 2025

https://github.com/openfga/js-sdk

OpenFGA SDK for node.js and JavaScript - https://www.npmjs.com/package/@openfga/sdk

access-control authorization fga fine-grained-authorization openfga security zanzibar

Last synced: 16 Apr 2025

https://github.com/alessiomaffeis/iOScanX

iOScanX (iOS Application Scanner for OS X) is a Cocoa application for semi-automated iOS app analysis and evaluation

analysis application automated-analysis automation ios macos scanning security workflow

Last synced: 18 Apr 2025

https://github.com/WillOram/cyber-incident-management

Notes on managing and coordinating the response to major cyber incidents

crisis-management cybersecurity incident-management incident-response security

Last synced: 11 Jul 2025

https://github.com/dilawarm/federated

Federated Learning with Differential Privacy and Homomorphic Encryption.

differential-privacy federated-learning homomorphic-encryption privacy-preserving-machine-learning security tensorflow

Last synced: 16 Jan 2026

https://github.com/falcosecurity/falco-website

Source code of the official Falco website

cncf containers documentation hacktoberfest security

Last synced: 26 Jan 2026

https://github.com/openfga/python-sdk

OpenFGA SDK for Python 3 - https://pypi.org/project/openfga-sdk/

access-control authorization fga fine-grained-authorization hacktoberfest openfga security zanzibar

Last synced: 09 Apr 2025

https://github.com/umutphp/wp-vulnerability-check

A command line took to check the WPScan Vulnerability Database via API to identify the security issues of WordPress plugins installed.

continuous-integration hacktoberfest security vulnerability-checker wordpress wordpress-plugin wordpress-security wordpress-security-scanner

Last synced: 23 Apr 2025

https://github.com/captaincodeman/svelte-api-keys

API Key Generation, Validation, and Rate Limiting for SvelteKit

api firestore keys permissions rate-limiting redis security svelte svelte-kit throttle token-bucket

Last synced: 26 Apr 2025

https://github.com/pelock/jobfuscator

JObfuscator is a source code obfuscator for the Java language. Protect Java source code & algorithms from hacking, cracking, reverse engineering, decompilation & technology theft.

decompiler decompiler-java java mangle mangler obfuscate obfuscate-code obfuscate-strings obfuscated obfuscation obfuscator obfuscators security source-code

Last synced: 30 Jul 2025

https://github.com/eth-sri/soltix

SOLTIX: Scalable automated framework for testing Solidity compilers.

ethereum fuzzing security smartcontracts solidity testing

Last synced: 23 Jul 2025

https://github.com/nyxnor/onionjuggler

Manage your Onion Services via CLI or TUI on Unix-like operating system with a POSIX compliant shell.

cli descentralized encryption foss hidden-service hiddenservice onion-service onionservice open-source portable posix privacy security self-hosted shell shellscript tor tor-onion-service tui unix

Last synced: 15 Apr 2025

https://github.com/fdonnet/yarp-security-api-and-ui

Security layer (API) that you can use to protect your Yarp routes and the apis behind it. A Blazor ui is available to configure your things (subscriptions and tenants management included). A Sveltekit client is included as a very simple client.

api blazor blazor-fluentui csharp hybridcache masstransit multitenant net9 oauth openid-connect security sveltekit yarp

Last synced: 16 May 2025

https://github.com/fairwindsops/bif

Fairwinds Base Image Finder CLI

docker fairwinds-incubator security vulnerabilities

Last synced: 04 Sep 2025

https://github.com/jedisct1/rust-privdrop

A simple Rust crate to drop privileges

rust security

Last synced: 10 Apr 2025

https://github.com/m-mizutani/zlog

Secure logger in Go to avoid output sensitive data in log

golang logger security

Last synced: 27 Apr 2025

https://github.com/luisfer/ubon

Peace of mind for vibe-coded apps

nextjs python react security typescript vibe-coding vibe-coding-assistant

Last synced: 01 Feb 2026

https://github.com/merklejerk/honeypause

Permissionless onchain exploit bounties tied to a circuit breaker

etherum security solidity

Last synced: 22 Apr 2025

https://github.com/edoverflow/h1-cli

A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.

hackerone security

Last synced: 23 Apr 2025

https://github.com/datatheorem/flake8-alfred

Alfred is a flake8 plugin to warn on unsafe/obsolete symbols.

flake8 flake8-plugin python3 security

Last synced: 21 Apr 2025

https://github.com/autolist/sekreto

Use AWS Secrets Manager from Ruby, with rails support

aws aws-secrets-manager rails rails-gem ruby-gem security

Last synced: 07 Apr 2025

https://github.com/yahoo/rdfp

Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt

fingerprinting monitoring network nsm rdp security threat-hunting

Last synced: 25 Feb 2025

https://github.com/belval/ml-ids

An IDS implementation using machine learning

ids security

Last synced: 12 Apr 2025

https://github.com/mikeprivette/ai-security-shared-responsibility

AI Security Shared Responsibility Model

ai model security

Last synced: 04 Mar 2026

https://github.com/CERN-CERT/pDNSSOC

Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.

dns dnstap misp security security-tools threat-intelligence

Last synced: 27 Sep 2025

https://github.com/asterinas/jinzhao-disk

Jinzhao Disk (JinDisk) is a log-structured secure block device for TEEs. This repo is JinDisk's Linux version.

linux security storage tee

Last synced: 31 May 2026

https://github.com/machine1337/pyobfuscate

A simple and efficent script to obfuscate python payloads to make it completely FUD

crypter crypters empire evasions fud hacking hacking-tools metasploit obfuscation payloads rats security stealers

Last synced: 25 Apr 2025

https://github.com/qvl/httpsyet

Crawler to find links you can update to HTTPS

automation https security slack tls

Last synced: 11 Mar 2025

https://github.com/captainzero93/security_harden_linux

Semi-automated bash scripts that provide security hardening for Linux, Debian based, 2024, attempts DISA STIG and CIS Compliance

debian security ubuntu

Last synced: 10 Apr 2025

https://github.com/jkkj93/mint-webshell-defender

:leaves:薄荷WEBSHELL防御系统,是一款WEBSHELL查杀/防御软件,采用PYTHON编写。不同于依靠特征库进行查杀的传统WEBSHELL扫描软件。本软件以防御为主,经过适当配置后可以100%防御,并清除任何WEBSHELL后门。

security

Last synced: 11 May 2025

https://github.com/chen-keinan/kube-knark

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

ebpf ebpf-programs golang kubernetes linux scanner security

Last synced: 22 Mar 2025

https://github.com/theparanoids/rdfp

Remote Desktop Client Fingerprint script for Zeek. Based off of https://github.com/0x4D31/fatt

fingerprinting monitoring network nsm rdp security threat-hunting

Last synced: 17 Jan 2026

https://github.com/danielhenrymantilla/shellcode-factory

Tool to create and test shellcodes from custom assembly sources (with some encoding options)

8086 alphanumeric asm assembly bytes decoder fast gas hex-bytes intel linux make script security shellcode tool useful x86 x86-64 xor

Last synced: 21 Mar 2025

https://github.com/wh1t3fox/polenum

Uses Core's Impacket Library to get the password policy from a windows machine

enum4linux impacket-library polenum security windows

Last synced: 13 Apr 2025

https://github.com/SkuldNorniern/fluere

Fluere is a powerful and versatile tool designed for network monitoring and analysis. It is capable of capturing network packets in pcap format and converting them into NetFlow data, providing a comprehensive view of network traffic. It also Provides Terminal User Interface.

cross-platform flowlogs fluere hacktoberfest netflow netflow-exports netflow-v5 network-analysis network-capture network-monitoring network-security packet packet-capture packet-sniffer packets pcap rust security security-scanner security-tools

Last synced: 16 Jul 2025

https://github.com/presidio-oss/hai-guardrails

A TypeScript library providing a set of guards for LLM (Large Language Model) applications

defence governance guardrails guards hai halucination human-ai llm-guardrails presidio prompt-injection redaction security typescript

Last synced: 06 Feb 2026

https://github.com/alcideio/kaudit

Alcide Kubernetes Audit Log Analyzer - Alcide kAudit

alcide-kaudit audit-log forensic-analysis forensics kubernetes security security-tools vault

Last synced: 30 Dec 2025

https://github.com/GDATASoftwareAG/vaas

Verdict-as-a-Service SDKs: Analyze files for malicious content

antivirus g-data it-security malware malware-analysis malware-detection security

Last synced: 12 Jul 2025

https://github.com/stackrox/bsidessf-2020-workshop

Materials for a live workshop at BSidesSF on deployment-level Kubernetes security controls

bsidessf k8s kubernetes security workshop

Last synced: 31 Aug 2025

https://github.com/giuseppe/easyseccomp

DSL language to write seccomp filters

containers seccomp seccomp-bpf seccomp-filter security

Last synced: 04 Sep 2025

https://github.com/microsoft/scitt-ccf-ledger

Supply Chain Integrity Transparency and Trust ledger application using Confidential Consortium Framework (CCF)

ccf cryptography scitt security supply-chain

Last synced: 05 Apr 2025

https://github.com/bytemare/opaque

Go implementation of OPAQUE, the asymmetric password-authenticated key exchange protocol.

cryptography elliptic-curves encryption go golang opaque password-safety ristretto255 security

Last synced: 10 Apr 2025

https://github.com/pigri/cf-n8n-proxy

Cloudflare worker for n8n proxy

cf cloudflare firewall n8n proxy rate-limit security

Last synced: 29 Dec 2025

https://github.com/paulveillard/cybersecurity-security-harderning

A collection of awesome security hardening software, libraries, learning tutorials & documents, e-books, best practices, checklists, benchmarks about hardening in Cybersecurity

ami linux-hardening os-hardening security security-audit security-hacks security-hardening ubuntu-hardening ubuntu-sec-tools vulnerability vulnerability-assessment vulnerability-detection vulnerability-identification vulnerability-scanning windows-hardening

Last synced: 07 Jul 2025

https://github.com/jpcertcc/cobaltstrike-config

Repository for archiving Cobalt Strike configuration

malware security

Last synced: 16 Feb 2026

https://github.com/gosecure/presentations

Material from presentations done by GoSecure researchers

presentations research reveal-js security slides

Last synced: 20 Jan 2026

https://github.com/moritzheiber/crowbar

Securily generates temporary AWS credentials through identity providers using SAML

aws aws-cli cli idp jumpcloud mfa okta rust saml security single-sign-on

Last synced: 13 Apr 2025

https://github.com/Ahoo-Wang/CoSec

RBAC-based And Policy-based Multi-Tenant Reactive Security Framework | 基于 RBAC 和策略的多租户响应式安全框架

authentication authorization cloud-native gateway identity java jwt kotlin microservice multi-tenant oauth2 policy project-reactor rbac reactive redis security spring-boot spring-cloud spring-cloud-gateway

Last synced: 02 Apr 2025

https://github.com/hotcakex/winsecurednsmgr

WinSecureDNSMgr module | Quick, proper and automatic way to configure Secure DNS in Windows with multiple available operation modes

dns dns-over-https doh dynamicip https powershell securedns security serverless-dns windows windows11

Last synced: 16 Mar 2025

https://github.com/ariary/httpcustomhouse

HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets

bug-bounty burp cli http-client http-request-smuggling infosec learning pentest-tool request-smuggling security websecurity

Last synced: 26 Apr 2025

https://github.com/maxlambrecht/rust-spiffe

A collection of crates for SPIFFE workload identity, Workload API clients, SPIRE-specific APIs, and TLS integration.

authentication mtls rust security spiffe spire tls workload-identity

Last synced: 11 May 2026

https://github.com/ahoo-wang/cosec

RBAC-based And Policy-based Multi-Tenant Reactive Security Framework | 基于 RBAC 和策略的多租户响应式安全框架

authentication authorization cloud-native gateway identity java jwt kotlin microservice multi-tenant oauth2 policy project-reactor rbac reactive redis security spring-boot spring-cloud spring-cloud-gateway

Last synced: 01 Apr 2026