An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/semgrep/skills

A collection of skills for AI coding agents from Semgrep

agents claude-code security skills

Last synced: 05 Mar 2026

https://github.com/codica2/production-server-security-notes

:unlock: 7 tips to protect your production server

production security server-security

Last synced: 12 Feb 2026

https://github.com/brainpolo/llmshield

Shields your confidential data in LLM prompts from third party AI providers, allowing you to send with confidence without compromising security and privacy.

ai llms privacy security

Last synced: 05 Mar 2026

https://github.com/benavlabs/crudauth

Batteries-included, transport-agnostic authentication for FastAPI.

auth authentication backend fastapi security sqlalchemy

Last synced: 24 Jun 2026

https://github.com/vpereira/brucutu

Brute force tool for SSH, IMAP, HTTP, FTP, POP3 and others

brute-force go golang security security-audit

Last synced: 14 Feb 2026

https://github.com/khalidelboray/zap-api-raku

A Raku module for the OWASP ZAP API.

owasp raku raku-module security web-security zaproxy

Last synced: 01 Apr 2026

https://github.com/r3dhulk/bad-usb

bad usb also known as rubber ducky is a usb device to hack your target when you are in device's physical access

attack hacking security security-tools usb

Last synced: 13 Jun 2026

https://github.com/tecnickcom/rndpwd

Web Service Random Password Generator written in GO

go golang password-generator security webservice

Last synced: 04 Mar 2026

https://github.com/henriquetourinho/brhttp

Um servidor estático em Go, superpoderoso. Oferece Live Reload, mas também automação de build com webhooks, proxy reverso e uma API de controle completa.

automation binario debian dev-server frontend go golang linux live-reload minimalist no-dependencies open-source performance reverse-proxy security spa static-server zero-config

Last synced: 04 May 2026

https://github.com/wan0net/awesome-abac

List of Applications that enable or natively support Attribute Based Access Control

abac access-control attribute-based-access-control authorization awesome-list cybersecurity security zero-trust

Last synced: 03 May 2026

https://github.com/open-sspm/open-sspm

Open-SSPM is a small “who has access to what” service. It syncs identities from Okta (IdP) and permissions from connected apps (GitHub, Datadog, AWS Identity Center). Demo: admin@admin.com / admin

security sspm

Last synced: 18 Apr 2026

https://github.com/hartwork/mozilla-password-decrypt

:unlock: Decrypt passwords stored by Firefox, Thunderbird, Iceweasel, Icedove using libnss3.so

cli cli-app firefox icedove iceweasel mozilla mozilla-firefox mozilla-thunderbird password password-retrieval security thunderbird

Last synced: 03 Apr 2026

https://github.com/jwilk/longutf8

generate overlong UTF-8 sequences

security unicode

Last synced: 12 Apr 2025

https://github.com/daltonmenezes/discord-guardian-action

🤖 An action that fetches the list of malicious domains on Discord in different providers and creates/updates a JSON file with them from time to time.

action discord domains github-actions javascript json malicious-domains security typescript

Last synced: 29 Oct 2025

https://github.com/davemolk/dorking

advanced searching for bing, brave, duck duck go, and yahoo

bug-bounty bugbounty dorking go golang infosec osint pentesting pentesting-tools recon research search search-engine security

Last synced: 14 Jul 2025

https://github.com/johnshajiang/blog

The original technicial articles

curl hpack http2 java jetty nss openssl security tls tls13

Last synced: 04 May 2025

https://github.com/clever/stealth

Go wrapper for credstash secret store

aws-kms credential-storage key-management security

Last synced: 30 Apr 2025

https://github.com/fiware/tutorials.ngsi-v2

:department_store: :handbag: NGSI-v2 Tutorials based around a Smart Supermarket

access-control contextual-data fiware iot-agent ngsi-v2 security tutorial

Last synced: 30 Apr 2025

https://github.com/zemasterkrom/zmkr-cloudflare-turnstile-bundle

Extensible and configurable integration of Cloudflare Turnstile with Symfony

anti-spam bundle captcha cloudflare form security symfony turnstile

Last synced: 30 Apr 2025

https://github.com/e107inc/sfs

Spam blocker for e107 - based on the database at stopforumspam.com

bot e107 plugin security sfs spam spambot

Last synced: 15 Jun 2025

https://github.com/csfelix/csharp-rsa-algorithm

👥 Your message is saved, Your message is secure, Your message is encripted!! 👥 (🔑 KeyWords: C#, C Sharp, RSA Algorithm 🔑)

cipher csharp rsa security

Last synced: 29 Oct 2025

https://github.com/ronin-rb/ronin-db-activerecord

ActiveRecord backend for the Ronin Database

activerecord activerecord-models database infosec recon ruby security

Last synced: 09 Sep 2025

https://github.com/jakiboy/ratr

Router Config Extractor (Huawei, ZTE)

ppp router security tr069 zte

Last synced: 21 Jun 2025

https://github.com/rix4uni/msarjun

Mass-scale hidden parameter discovery using Arjun. A high-performance wrapper that parallelizes Arjun for efficient parameter discovery across multiple targets.

api-fuzzer api-fuzzing api-testing arjun bug-bounty bugbounty bugbountytips content-discovery hacking infosec osint osint-tool parameter-discovery penetration-testing pentest-tool pentesting recon reconnaissance security security-tools

Last synced: 07 Apr 2026

https://github.com/panga/node-shield

Protects against common Node.js vulnerabilities in MEAN stack (MongoDB, Node.js).

express-middleware nodejs nosql-injection owasp security

Last synced: 13 Jul 2025

https://github.com/cipherstash/cipherstash-playground

A playground to experiment with CipherStash and our data security capabilities.

aws-dynamodb data-security dynamodb encryption postgres postgresql searchable-encryption security security-tools

Last synced: 15 Jul 2025

https://github.com/sigseg5/kernkill

Linux kernel module designed for emergency system management, enabling instant shutdown or process termination when a specified USB device is disconnected.

demhack5 kernel-module kernel-modules linux linux-kernel privacy security usb

Last synced: 11 Apr 2025

https://github.com/lirantal/dependency-frost

Dependency Frost is an educational platform game to promote awareness of security in open source dependencies

appsec game game-development gamedev hacktoberfest kaboom-js security

Last synced: 06 May 2025

https://github.com/fiware/tutorials.pep-proxy

:closed_book: FIWARE 404: Securing Microservices and IoT Devices with a PEP Proxy

access-control fiware fiware-wilma iot-agent pdp pep pep-proxy security tutorial

Last synced: 30 Apr 2025

https://github.com/mbologna/telnetd_honeypot

A very simple telnetd honeypot written in Python and Twisted

hacktoberfest honeypot python security telnet

Last synced: 07 Sep 2025

https://github.com/netlify/integration-csp

Netlify integration to use a nonce for the script-src directive of your site's Content Security Policy.

csp netlify security

Last synced: 04 May 2025

https://github.com/davidmoremad/awspice

Awspice is a wrapper tool of Boto3 library to list inventory and manage your AWS infrastructure The objective of the wrapper is to abstract the use of AWS, being able to dig through all the data of our account

aws boto3 cloud region security wrapper

Last synced: 12 Apr 2025

https://github.com/emorilebo/advanced-env-manager

Secure NPM package for advanced environment variable managment for both local and server

config dotenv env secrets security variables

Last synced: 05 Apr 2025

https://github.com/notashelf/ssa

Simple, streamlined and ✨ pretty ✨ aggregator for systemd-analyze security

aggregator security systemd

Last synced: 10 Apr 2025

https://github.com/developmint/cipher-collection

Zero-dependency modular cipher collection including all well-known and often used ciphers

cipher cipher-collection crypto cryptography decode decrypt encode encrypt encryption javascript morse puzzle riddle security

Last synced: 07 May 2025

https://github.com/literallyethical/r3conwhal3

r3conwhale aims to develop a multifunctional recon chain for web applications, intelligently interpreting collected data, and optimizing performance and resource consumption through a concurrency-based approach.

automation-framework bug-bounty-tools bugbounty dns fuzzing osint pentest pentest-tool recon reconnaissance scanner security security-tools subdomain-enumeration subdomain-scanner

Last synced: 15 Dec 2025

https://github.com/sertxudeveloper/laravel-lockscreen

Package for locking the user account due to inactivity

hacktoberfest laravel laravel-package lockscreen security sertxudeveloper

Last synced: 12 Jun 2025

https://github.com/hivemq/hivemq-deny-wildcard-extension

HiveMQ extension for denying subscriptions to the root wildcard

extension hivemq hivemq-extension mqtt security subscription wildcard

Last synced: 08 Mar 2026

https://github.com/jamesbower/engagedthreat

The goal of Engaged Threat is to provide honeypot researchers the ability to hold the attention of an attacker or to induce the attacker to participate in some sort of increased activity.

cowrie honeypot security splunk ssh threat-analysis threat-intelligence threat-sharing threatintel

Last synced: 12 May 2025

https://github.com/hobbyquaker/check_nextcloud

Nagios/Icinga Nextcloud Security Check :cloud: :closed_lock_with_key: :ballot_box_with_check:

icinga monitoring nagios nextcloud security

Last synced: 12 Apr 2025

https://github.com/programarivm/easy-acl-bundle

Easy-to-use access control list (ACL) bundle in Symfony 5.

access acl bundle control list security symfony

Last synced: 13 Apr 2025

https://github.com/reverseapple/analysissuite

Utilities for reverse engineering Apple binaries

apple binary-analysis research reverse-engineering security tools

Last synced: 09 Apr 2025

https://github.com/francescodisalesgithub/signal-proxy-setup

Guide about how to set a signal proxy for Signal app

proxy security signal signal-app signal-application

Last synced: 18 Apr 2026

https://github.com/samerfarida/secure-bash-macos-ebook

A hands-on Bash scripting guide for macOS administrators and security engineers. Learn to automate, secure, and master macOS with real-world examples.

bash macos security

Last synced: 13 Jan 2026

https://github.com/jin5354/backstab

Bury latent information to your web page for confidentiality and track.

confidentiality screenshot security security-audit

Last synced: 13 Apr 2025

https://github.com/dsha256/token-go

JWT & PASETO Implementation of the Token Based Authentication

go golang jwt-tokens paseto-tokens security token-based-authentication

Last synced: 26 Jun 2025

https://github.com/rix4uni/techfinder

A high-performance technology detection tool built with Go, leveraging the projectdiscovery wappalyzergo library to identify web technologies and frameworks.

bug-bounty bugbounty bugbountytips hacking infosec osint osint-resources osint-tool penetration-testing pentest-tool pentesting recon reconnaissance security security-tools technology threat-intelligence

Last synced: 19 Jun 2026

https://github.com/capnspacehook/basp

A better way to manage software restriction policies, on Windows XP through 10

c-plus-plus security whitelisting windows

Last synced: 12 May 2025

https://github.com/riimu/kit-securerandom

Library for leveraging secure random generators

php php-library random-generation security uuid

Last synced: 25 Jul 2025

https://github.com/drawing-captcha/drawing-captcha-app

Drawing Captcha is an innovative software that enhances security and promotes brand awareness by requiring users to complete interactive drawing tasks to pass the verification process. (Website comes soon)

captcha drawing js nodejs open-source security solving

Last synced: 25 Jul 2025

https://github.com/robertdebock/ansible-role-sysstat

Install, start and enable sysstat on your system.

ansible molecule monitoring playbook security sysstat system tox

Last synced: 24 Apr 2025

https://github.com/tawfik-s/spring-security-tasks-solution

Master Spring Security by practice. spring security tasks and solutions. you can find tasks description at the README file. freely use, modify, and distribute the code.

bycrypt csrf github-oauth2 google-oauth2 java jwt jwt-authentication method-level-authorization method-level-security oauth oauth2 oauth2-client preauthorize security spring spring-boot spring-security spring-security-oauth2 tasks

Last synced: 30 Jun 2025

https://github.com/infisical/k8-kms-plugin

Infisical KMS plugin for Kubernetes

encryption kubernetes security

Last synced: 04 Apr 2025

https://github.com/mwiater/golangsignedbins

Learn binary signing and verification in Go for enhanced security. A concise guide for Golang developers on ensuring binary integrity.

golang rsa security

Last synced: 10 Apr 2025

https://github.com/humblelad/neuro

Netlas automation to scan for vulnerabilities using nuclei templates.

netlas security security-automation

Last synced: 10 May 2025

https://github.com/ivision-research/inzure

Azure security configuration automation tool and library

automation azure security vulnerability-detection

Last synced: 23 Jul 2025

https://github.com/tigera-solutions/azure-hub-spoke-aks-egress-gateways

[Azure AKS Blueprint] Learn how to deploy Azure Hub-Spoke VNETs with AKS and Calico Egress Gateways

aks azure calico egress egress-gateway microsoft-azure security tigera

Last synced: 17 Aug 2025

https://github.com/mkmik/getsum

Abuse the gosum database to store verifiable hashes about any binary file

go hack security transparency

Last synced: 17 Aug 2025

https://github.com/evansims/openfga-php

Stop writing authorization logic. Start asking questions. OpenFGA high performance relationship-based access control for PHP.

abac authorization entitlements fga fine-grained-access-control fine-grained-authorization openfga pbac permissions php rbac rebac sdk security zanzibar

Last synced: 20 Sep 2025

https://github.com/leopechnicki/im_robot

Reverse-CAPTCHA for AI agents — verify bots, not humans. Multi-framework (React, Vue, Svelte, Web Components). Zero dependencies. TypeScript.

ai-agent authentication bot-verification captcha react reverse-captcha security svelte typescript vue web-components zero-dependencies

Last synced: 22 May 2026

https://github.com/0x4d31/finch

Fingerprint‑aware TLS reverse proxy: allow, deny, route or deceive traffic via JA3, JA4 (+QUIC), JA4H, HTTP/2 fingerprints, and other request metadata.

deception fingerprint fingerprinting go honeypot ja3 ja4 reverse-proxy security security-tools

Last synced: 03 Aug 2025

https://github.com/grapheneos-archive/device_google_coral-kernel

Pixel 4 and 4 XL kernel prebuilts.

android grapheneos privacy security

Last synced: 13 Aug 2025

https://github.com/timkuijsten/node-mongo-escape

Escape variables to prevent NoSQL injection in MongoDB

mongodb security

Last synced: 01 Aug 2025

https://github.com/sircryptic/poc

Proof-of-Concept Exploits Based On Known CVE's

cve cybersecurity educational proof-of-concept security

Last synced: 14 Apr 2025

https://github.com/craigmayhew/usbcleanser

Scripts to turn a debian based OS into an automated USB wiper

python raspberrypi security thumb-drive usb-drive

Last synced: 25 Oct 2025

https://github.com/go-to-k/ecr-scan-verifier

The AWS CDK Construct that blocks deployments to ECS, Lambda, and other services when ECR Image Scanning detects vulnerabilities, and optionally verifies container image signatures.

aws aws-cdk aws-cdk-construct aws-ecr awscdk cdk container security

Last synced: 22 May 2026

https://github.com/hakky54/gatekeeper

🔐 A lightweight java library which guards your publicly accessible internal implementations.

java security

Last synced: 13 May 2025

https://github.com/ribafs/laravel-acl

ACL to laravel 9 applications

access acl laravel package security

Last synced: 03 Sep 2025

https://github.com/neospl0it/discord-rat

A powerful Discord RAT for remote control & monitoring. Capture screenshots, grab passwords, evade detection.

discord discord-bot discord-rat grabber-password grabber-token python rat remote-access-trojan remoteaccesstrojan security

Last synced: 22 Apr 2025

https://github.com/theteleporter/xuneix

A link rotator for enhanced admin panel security. Dynamic URLs, expiring tokens, customizable rotation. Easy setup with Shadcn UI & Tailwind CSS. Integrates with Vercel KV.

authentication link-rotator nextjs open-source security shadcn-ui

Last synced: 24 Mar 2025

https://github.com/grapheneos/tls-pinning

Utilities for setting up TLS key pinning for Android app network security configuration. We pin the keys of trusted roots and backup keys in order to avoid needing to rotate the pinned keys. Backup keys are never intended to be used unless the roots stop being available and then only need to be used until the pins expire or get updated.

https privacy security tls

Last synced: 13 Apr 2025

https://github.com/liangjfblue/go-keyserver

动态密钥服务器。带client端,server端使用demo

gin golang redis security

Last synced: 06 May 2025

https://github.com/kyoshidajp/dep-doctor

Diagnose whether your software dependency libraries are maintained.

dart dependencies elixir erlang golang javascript php python ruby rust security swift

Last synced: 09 Jul 2025

https://github.com/scipag/phputilities

PHPUtilities provides various utility scripts.

commands exploitation penetration-testing php security shell

Last synced: 05 Oct 2025

https://github.com/alessiodionisi/setup-age-action

This action sets up age and adds it to the PATH.

age github-actions security

Last synced: 11 Mar 2026

https://github.com/itemic/rotacsufbo

did u know the name of the repo is obfuscator backwards?

android android-security javaparser mobile-security obfuscate obfuscation obufscator proguard security

Last synced: 26 Jun 2025

https://github.com/imranismail/cloudcreds

Secure access to your organization's AWS accounts for both programmatic and console use-case via federated identity and short-lived credentials

aws federated-identity google oauth oidc security

Last synced: 22 Apr 2025