An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/co-browser/vibe

The Secure Browser for Programmable AI Agents

a2a agent ai ai-agents browser chatbot llm mcp memory rag security

Last synced: 24 Jun 2025

https://github.com/aguslr/bluerock

A Fedora Silverblue image that has been hardened for extra security

fedora fedora-silverblue oci ostree security

Last synced: 01 Sep 2025

https://github.com/p0n1/curated-web3-security-feeds

RSS Aggregator for curated web3 security resources.

aggregator feeds security smart-contracts web3

Last synced: 10 Mar 2026

https://github.com/toolisticon/kalilinux

Prepared Kali Docker Image with kalilinux-full preinstalled

express kali kali-linux security

Last synced: 28 Oct 2025

https://github.com/emilkrebs/watchlock

WatchLock: Lock your phone using your watch

android kotlin kotlin-android security wearos

Last synced: 26 Mar 2025

https://github.com/doucol/clyde

Project Calico Observability Tools

calico k8s kubernetes networking observability projectcalico security tigera

Last synced: 02 Feb 2026

https://github.com/checkmarx/ast-eclipse-plugin

The CxAST Eclipse plugin enables you to import results from a CxAST scan directly into your IDE. You can view the vulnerabilities that were identified in your source code and navigate directly to the vulnerable code in the editor.

checkmarx checkmarx-ast eclipse-plugin security

Last synced: 08 Apr 2026

https://github.com/makenowjust-labs/memo-regex

ReDoS-less Regex Implementation Using Memoization

redos regex regexp security

Last synced: 10 Apr 2025

https://github.com/opcod3r/godan

Shodan tool subdomains with rotation keys.. ๐ŸŽฉ

bugbounty bugbounty-tool golang pentest recon security shodan subdomains

Last synced: 18 Jun 2025

https://github.com/turbot/flowpipe-mod-azure

Azure pipeline library for the Flowpipe cloud scripting engine. Automation and workflows to connect Azure to the people, systems and data that matters.

automation azure azure-cli cloud devops flowpipe flowpipe-mod hacktoberfest integrations low-code orchestration pipelines security workflow workflow-automation workflow-engine

Last synced: 22 Jun 2025

https://github.com/circl/odfcleaner

Python module to cleanup ODF files.

cleanup-odf-files odf odfcleaner security

Last synced: 07 Mar 2026

https://github.com/jesperancinha/your-finance-je

Using JWT in KumuluzEE. Two solutions are provided to understand how simple the JWT authentication/authorization system actually is.

angular java javascript jee jwt jwt-token kotlin kotlin-dsl kumuluzee material-ui security typescript

Last synced: 11 Jul 2025

https://github.com/codingchili/sidechannel-timing-tool

Small tool for measuring system latency during string comparison.

network proof-of-concept security side-channel

Last synced: 06 Apr 2025

https://github.com/Bilal-Belli/DictionaryWifiAttackTool

This repository presents a simple Python program for testing a large number of passwords (dictionary) to connect to a WiFi network.

dictionary-attack python security security-tools wifi-hacking wifi-security

Last synced: 14 Apr 2025

https://github.com/kasuken/passwordify

Generate secure password on the fly

blazor-webassembly hacktoberfest password-generator security

Last synced: 02 Jan 2026

https://github.com/federicoceratto/nim-libu2f

FIDO U2F server-side and client-side library for Nim

authentication fido nim nim-lang security u2f

Last synced: 03 Oct 2025

https://github.com/firehed/jwt

JSON Web Tokens for PHP

jwt php php-jwt php-security security

Last synced: 13 Jul 2025

https://github.com/aerabi/hackdockerfest

Docker best practices created by the community

docker hacktoberfest security

Last synced: 10 Apr 2025

https://github.com/clj-holmes/clj-holmes-action

Action to execute clj-holmes in Clojure/Clojurescript projects.

clojure code-scanning sast security

Last synced: 03 Jul 2026

https://github.com/nikstur/libxcrypt-rs

Rust bindings for libxcrypt

libxcrypt linux rust security users

Last synced: 10 Apr 2025

https://github.com/douganger/flask-ipfilter

A simple Flask extension to limit access to a site to certain IP addresses.

flask heroku python3 security

Last synced: 12 Apr 2025

https://github.com/humanjavaenterprises/nostr-auth-middleware

The nostr-auth-middleware repository offers a TypeScript-based middleware solution for managing authentication and enrollment in Nostr web applications. It supports NIP-07 compatible authentication, secure user enrollment, event validation, and JWT-based session management, with optional Supabase integration for data persistence.

authentication decentralized-protocols event-validation jwt middleware nostr security supabase web-applications

Last synced: 13 Jun 2025

https://github.com/cerbos/demo-python

Demo of using Cerbos with Python to check access to a holiday request system.

access-control cerbos policy python security

Last synced: 12 Apr 2025

https://github.com/aghae/ejwt

Express JSON Web Token

express json json-web-token-express jwt security token

Last synced: 11 Jan 2026

https://github.com/faalantir/mcp-agent-identity

The open standard for cryptographic provenance and attribution for AI Agents.

agent identity mcp mcp-server security smithery

Last synced: 16 Jan 2026

https://github.com/nodesource/certified

NodeSource Certified Modules How To

example guide how-to modules nodejs nodesource npm security

Last synced: 11 May 2025

https://github.com/vizzdoom/infosec-coffee

Infosec Coffee is a deliberately vulnerable web application to better understand interesting security flaws.

css html5 infosec javascript learning-by-doing mysql php7 python python3 race-conditions security security-testing security-vulnerability vulnerability vulnerable-web-application

Last synced: 11 Apr 2025

https://github.com/Popsiclestick/falco-filebeat-daemonset

Easily deployable daemonset which moves logs from falco with filebeat.

containers daemonset falco filebeat kubernetes security

Last synced: 12 May 2025

https://github.com/mohab-sameh/anomaly-based-ids-workbench

The ultimate workbench for research & development of AI-powered anomaly-based Intrusion Detection Systems (IDS)

deep-learning intrusion-detection intrusion-detection-system machine-learning security

Last synced: 08 Sep 2025

https://github.com/llllllxy/tiny-security

ไธ€ไธชๅŸบไบŽtoken้ชŒ่ฏ็š„Java Webๆƒ้™ๆŽงๅˆถๆก†ๆžถ๏ผŒๆ”ฏๆŒredisใ€jdbcๅ’Œๅ•ๆœบsessionๅคš็งๅญ˜ๅ‚จๆ–นๅผ๏ผŒๅ‰ๅŽ็ซฏๅˆ†็ฆป้กน็›ฎใ€ไธๅˆ†็ฆป้กน็›ฎๅ‡ๅฏไฝฟ็”จ๏ผŒๅŠŸ่ƒฝๅฎŒๅ–„ใ€ไฝฟ็”จ็ฎ€ๅ•ใ€ๆ–‡ๆกฃๆธ…ๆ™ฐ๏ผŒๆ˜“ไบŽๆ‰ฉๅฑ•ใ€‚

authorization java security session-management springboot token

Last synced: 21 Jul 2025

https://github.com/brosck/wel

ใ€Œ๐ŸŒŽใ€Web Exploration Laboratory

exploration info information laboratory php sec security vuln vulnerability web web-exploration-laboratory wel

Last synced: 05 Jul 2025

https://github.com/lakshan-madushanka/secure-bird

Secure your secrets using E2EE and get a link to share.

confidential encryption-decryption link security share

Last synced: 10 Apr 2025

https://github.com/justlive1/earth-storm

CAS 5.x ๆœๅŠก๏ผŒๆไพ›ๅ„็งcas-client

cas client security sso

Last synced: 18 Mar 2025

https://github.com/chizhg/secureim

A secure Instant Message System.

python security socket

Last synced: 04 Apr 2025

https://github.com/pedroac/nonce4php

A nonce manager PHP library useful for preventing CSRF and replay attacks.

csrf-tokens nonces nonces-generator php php-library replay-attack security

Last synced: 08 Apr 2026

https://github.com/likhon-developer/die

A secure PowerShell script designed to automate wallet address replacement using Base64 encoding. Developed by Rekt Developers to streamline wallet management with enhanced security.

automation crypto-tools cryptocurrency hacktoberfest powershell security wallet

Last synced: 05 May 2025

https://github.com/l0wk3y-iaan/hunting-with-l0wk3y

This repository documents my path from cybersecurity enthusiast to a skilled bug bounty hunter. Here, I share the tools, resources, techniques, and real-world insights I've gathered along the way, aimed at uncovering vulnerabilities and improving application security.

bounty bug-bounty bugbounty cheatsheet enumeration hacking methodology penetration-testing pentest redteam security vulnerability web-application web-penetration-testing

Last synced: 13 Sep 2025

https://github.com/xen0l/dlint-check

Github Action to run dlint security linter on your Python code

flake8 github-actions linter python python3 security security-testing static-analysis

Last synced: 02 Jan 2026

https://github.com/pgilad/csp-builder

A builder tool to help generate Content Security Policies in a type-safe way

builder content-security-policy csp generator hacktoberfest pika security typescript web

Last synced: 08 Mar 2026

https://github.com/j4n-e4t/deletr

Delete your online accounts with one click!

account-management hacktoberfest help-wanted privacy security

Last synced: 17 Jul 2025

https://github.com/authress/authress-sdk.rs

The Authress SDK for Rust provides authorization as a service with fully compatible REST apis.

api authentication authentication-middleware authorization authorization-framework authorization-server credentials keys security user-identity user-management

Last synced: 13 May 2025

https://github.com/coding-hui/iam

IAM - Identity and access management system, cloud native friendly, multiple authentication methods

cloud gin golang iam oauth2 security

Last synced: 12 Apr 2025

https://github.com/php-casbin/medoo-adapter

Medoo Adapter for PHP-Casbin, Casbin is a powerful and efficient open-source access control library.

abac access-control acl casbin medoo permissions rbac restful security

Last synced: 12 May 2025

https://github.com/grapheneos-archive/device_google_bonito-sepolicy

Pixel 3a and Pixel 3a XL SELinux policy extensions.

android grapheneos security

Last synced: 11 Jan 2026

https://github.com/YosaiProject/yosai_libauthz

Rust extension library for Yosai

extension python rust security yosai

Last synced: 29 Mar 2025

https://github.com/mitre/chef-stig-windows-server-2016-v1r4-hardening

(WIP) chef recipe to harden a Windows 2016 server to the DISA STIGs

chef hardening inspec mitre-corporation security windows windows-2016

Last synced: 12 Jul 2025

https://github.com/fdekeers/iot-firewall

Dynamic IoT firewall, based on nftables

firewall iot nftables security

Last synced: 19 Mar 2025

https://github.com/dcoles/gitlab-cargo-audit

Use cargo-audit to generate a GitLab Dependency report

gitlab gitlab-ci rust security

Last synced: 21 Mar 2025

https://github.com/biffalo/bettersecdefaults

An interactive powershell script for Azure/Entra. Creates a set of conditional access policies that will provide improved security over Microsoft's "Security Defaults". This script is primarily for less mature orgs that are perhaps still using Microsofts "Security Defaults" or only have very basic conditional access policies in place.

azure conditional-access entra-id identity-management powershell security

Last synced: 10 Apr 2025

https://github.com/chrisamanse/Codegen

An open source one-time password generator for iOS.

authentication authenticator cryptography generator hmac ios one-time-passwords qrcode security swift

Last synced: 22 Jul 2025

https://github.com/jedda/ecies

A Go module to implement the ECIES encryption scheme with various keys. Compatible with Apple's Security framework implementation & the Secure Enclave on Apple platforms.

apple ecies go security

Last synced: 12 Jan 2026

https://github.com/nigelhorne/sniff2ban

Dynamically change firewall

ban-hosts firewall security

Last synced: 08 May 2025

https://github.com/imagemlt/php_extension_backdoor

phpๆ‹“ๅฑ•ๅŽ้—จ

php security

Last synced: 16 Jun 2025

https://github.com/anchore/engine-operator

Helm based anchore engine operator

kubernetes-operator operator operator-hub security

Last synced: 24 Feb 2025

https://github.com/el-abdel/abelkeycloakbeareronlyadapterbundle

[Symfony Bundle]: Keycloak security adapter for bearer-only clients

api authentication hacktoberfest keycloak oauth security symfony symfony-bundle

Last synced: 30 Apr 2025

https://github.com/monke443/CVE-2023-40028

Arbitrary file read in Ghost-CMS allows an attacker to upload a malicious ZIP file with a symlink.

cve cve-2023-40028 exploit ghost-cms github pentesting security vulnerability

Last synced: 30 Aug 2025

https://github.com/devexpress-examples/connect-winforms-grid-to-backend-using-middletier-server

Connects the DevExpress WinForms Data Grid to a backend using a Middle Tier Server (EF Core without OData).

aspnetcore authorization devexpress dotnet ef efcore grid rbac security webapi winforms xaf

Last synced: 30 Aug 2025

https://github.com/kghandour/kgpassgen

Generate passwords using different algorithms. https://kghandour.github.io/KGPassGen

password-generator security

Last synced: 14 Apr 2025

https://github.com/sjinks/node-modsecurity

ModSecurity Connector for Node.js

modsec modsecurity security waf

Last synced: 10 Apr 2025

https://github.com/atalii/adage

ada privilege escalation

ada security spark sudo

Last synced: 14 Mar 2025

https://github.com/SAP-samples/risk-explorer-execution-pocs

A collection of proof-of-concepts in multiple languages and for different package managers, showcasing how third-party dependencies trigger code execution on downstream projects, leading to potential open-source software supply chain attacks.

proof-of-concepts sample security

Last synced: 10 Mar 2026

https://github.com/jasondrawdy/krypta

An advanced cryptography suite packaged with a file manager, password manager, and a swiss army knife of crypto tools.

application cryptography data encryption filemanager generators hashing notepad password-manager security software windows

Last synced: 08 Jan 2026

https://github.com/multiform-validator/typescript-javascript

Javascript / Typescript library made for validation, various form fields, such as: email, telephone, password, cpf, cnpj, credit card, magic numbers for image mimetype validation and much more.

javascript javascript-library library multiform-validator npm security security-tools typescript typescript-library validate-js validation validation-library validator

Last synced: 22 Jan 2026

https://github.com/marhcouto/feup-fsi-logbooks

:mortar_board: Logbook solutions for SEED Labs and CTFs - FSI -> L.EIC - FEUP

crypto ctf feup-fsi feup-leic feup-meic fsi leic-fsi meic-fsi security seed-labs

Last synced: 04 Jan 2026

https://github.com/rollerworks/split-token

Split Tokens: Token-Based Authentication Protocol without Side-Channels

authentication crypto php rollerworks security sodium split-token token

Last synced: 15 Apr 2025

https://github.com/jaayperez/keysoft

Crypto Js secure, dynamic password creator application that uses cryptographic algorithms with Node.js, Express 4, and Heroku cloud deployment.

crypto cryptographic-algorithms expressjs generator heroku nodejs password password-generator random-password security tool tools

Last synced: 23 Mar 2025

https://github.com/kabragaurav/whaling-phishing

A demo of whaling attack in computer networks

cns networks phishing security whaling

Last synced: 02 Jan 2026

https://github.com/mathix420/nimingcypher

Encryption module for instant messaging :eagle:

messaging python3 security

Last synced: 10 Apr 2025

https://github.com/adjh54ir/blog-codes

Contributor9 ํ‹ฐ์Šคํ† ๋ฆฌ ๋ธ”๋กœ๊ทธ ๋‚ด์—์„œ ํ™œ์šฉํ•œ ๋‚ด์šฉ๋“ค์„ ๋‹ด์€ ๋ ˆํฌ์ง€ํ† ๋ฆฌ์ž…๋‹ˆ๋‹ค.

chatgpt-api fcm-messaging java jpa-hibernate junit5 mockito mockmvc querydsl-jpa rabbitmq-consumer rabbitmq-producer security spring-boot spring-boot-quartz

Last synced: 16 May 2025

https://github.com/justincpresley/ndn-hydra

ndn-hydra: A Python-coded NDN distributed repository with five focused attributes: resiliency, scalability, usability, efficiency, and security.

data-centric distributed distributed-database distributed-systems files filesystem hydra information-centric-network named-data-networking ndn-hydra network networking noc python python3 repository resilience resiliency security

Last synced: 16 Jan 2026

https://github.com/travisty-/pscloudbleed

Cross references sites with a list of domains possibly affected by the 2017 "CloudBleed" HTTPS traffic leak.

cloudbleed cloudflare https powershell security

Last synced: 22 Jun 2025

https://github.com/reconmap/command-line-tools

Reconmap CLI and agent command line tools

cli golang hacking hacktoberfest pentesting security

Last synced: 28 Apr 2025

https://github.com/kyra-1/otw-banditgames

You can try the games provided here at the given link

basics cyber-security cybersecurity linux security securitybasics shell-scripting

Last synced: 16 Apr 2025

https://github.com/endorama/devenv

Manage different shell environments securely with ease

development devenv environment gpg hacktoberfest profile security security-posture ssh-agent ssh-key

Last synced: 23 Mar 2025

https://github.com/iamazy/jwt-spring-cloud-starter

jwtๆŽฅๅฃไฟๆŠค็ป„ไปถ

jose4j jwt security springboot2 springcloud starter token

Last synced: 12 Apr 2025

https://github.com/zejiran/computational-infrastructure

Collection of projects made on a computational infrastructure course at Universidad de los Andes

clustering concurrency java security uniandes virtualization

Last synced: 15 Mar 2025

https://github.com/atao/shodan2db

๐Ÿ”Œ Shodan export to SQLite database and generate an HTML report.

analysis converter cve export osint python-class python3 report reporting security shodan shodan-python sqlite vulnerability

Last synced: 10 Jun 2025

https://github.com/bilal-belli/dictionarywifiattacktool

This repository presents a simple Python program for testing a large number of passwords (dictionary) to connect to a WiFi network.

dictionary-attack python security security-tools wifi-hacking wifi-security

Last synced: 19 Apr 2025

https://github.com/akmalovaa/mikroseclist

Mikrotik CrowdSec firewall address lists sync

address address-list block crowdsec firewall mikrotik router-os routeros security

Last synced: 19 Apr 2025

https://github.com/devops-ia/helm-openbas

Helm chart for Open Breach and Attack Simulation Platform

charts cyber cybersecurity helm intelligence kubernetes openbas osint security threat-intelligence

Last synced: 19 Apr 2025