An open API service indexing awesome lists of open source software.

Security

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

https://github.com/faalantir/mcp-agent-identity

The open standard for cryptographic provenance and attribution for AI Agents.

agent identity mcp mcp-server security smithery

Last synced: 16 Jan 2026

https://github.com/jkawamoto/ambassadors

Yet another Ambassador pattern over SSH

ambassador connection docker secure security

Last synced: 15 Apr 2025

https://github.com/nickssilver/rsa-factoring-challenge

RSA (cryptosystem) is a public-key cryptosystem that is widely used for secure data transmission

encryption factorization python security

Last synced: 14 Apr 2025

https://github.com/raveensr/secura-pi-cam

A surveillance security system written in python which uses a Raspberry Pi with motion detector and it sends mobile notifications to telegram app

raspberry-pi security telegram-bot wifi

Last synced: 19 Apr 2025

https://github.com/justincpresley/ndn-hydra

ndn-hydra: A Python-coded NDN distributed repository with five focused attributes: resiliency, scalability, usability, efficiency, and security.

data-centric distributed distributed-database distributed-systems files filesystem hydra information-centric-network named-data-networking ndn-hydra network networking noc python python3 repository resilience resiliency security

Last synced: 16 Jan 2026

https://github.com/fadhilthomas/zap-reporter

run summary report of owasp zap findings

dast golang security

Last synced: 10 Mar 2026

https://github.com/aguslr/bluerock

A Fedora Silverblue image that has been hardened for extra security

fedora fedora-silverblue oci ostree security

Last synced: 01 Sep 2025

https://github.com/humanjavaenterprises/nostr-auth-middleware

The nostr-auth-middleware repository offers a TypeScript-based middleware solution for managing authentication and enrollment in Nostr web applications. It supports NIP-07 compatible authentication, secure user enrollment, event validation, and JWT-based session management, with optional Supabase integration for data persistence.

authentication decentralized-protocols event-validation jwt middleware nostr security supabase web-applications

Last synced: 13 Jun 2025

https://github.com/maandree/autopasswd

Reproducable password generator

password-generator security

Last synced: 24 Feb 2025

https://github.com/4m3rr0r/mac-changerpro

This is a bash script that can change the MAC address of either the eth0 or wlan0 network interface.

bash mac-address-changer mac-address-generator mac-cangerpro macaddress macchanger security

Last synced: 11 Apr 2025

https://github.com/netflix-skunkworks/swag-functions

Lambda functions for SWAG management

security

Last synced: 28 Jul 2025

https://github.com/armeggaddon/py2cy

A package to convert Python code to Cython for Security and Obfuscation

anti-reverse-engineering cython cythonize encryption obfuscation secure-code security software-protection

Last synced: 09 Apr 2026

https://github.com/filiprokita/cracksha256

This Python program, called CRACKSHA256, is a simple SHA256 hash cracker that takes a SHA256 hash and a wordlist as inputs. It attempts to crack the hash by iterating over each word in the wordlist, encoding it, and hashing it using SHA256. If successful, it prints the word that was used to generate the hash.

bruteforce cracking hack hacking hacking-tool password-crack password-cracker password-cracking-and-hash-cracking password-decryption password-decryptor password-hash programming python security sha256

Last synced: 29 Aug 2025

https://github.com/sjinks/node-modsecurity

ModSecurity Connector for Node.js

modsec modsecurity security waf

Last synced: 10 Apr 2025

https://github.com/SAP-samples/risk-explorer-execution-pocs

A collection of proof-of-concepts in multiple languages and for different package managers, showcasing how third-party dependencies trigger code execution on downstream projects, leading to potential open-source software supply chain attacks.

proof-of-concepts sample security

Last synced: 10 Mar 2026

https://github.com/devexpress-examples/connect-winforms-grid-to-backend-using-middletier-server

Connects the DevExpress WinForms Data Grid to a backend using a Middle Tier Server (EF Core without OData).

aspnetcore authorization devexpress dotnet ef efcore grid rbac security webapi winforms xaf

Last synced: 30 Aug 2025

https://github.com/pgilad/csp-builder

A builder tool to help generate Content Security Policies in a type-safe way

builder content-security-policy csp generator hacktoberfest pika security typescript web

Last synced: 08 Mar 2026

https://github.com/cristianzsh/modsecurity-to-es-parser

A script to send ModSecurity logs to Elasticsearch

elasticsearch kibana logs modsecurity owasp owasp-top-10 parser python security

Last synced: 27 Sep 2025

https://github.com/adjh54ir/blog-codes

Contributor9 티스토리 블로그 내에서 활용한 내용들을 담은 레포지토리입니다.

chatgpt-api fcm-messaging java jpa-hibernate junit5 mockito mockmvc querydsl-jpa rabbitmq-consumer rabbitmq-producer security spring-boot spring-boot-quartz

Last synced: 16 May 2025

https://github.com/kpcyrd/d3xs

Physical access control (Rust firmware)

embedded-rust iot rust security

Last synced: 14 Apr 2025

https://github.com/jakejarvis/careful-downloader

🕵️‍♀️ Downloads a file and its checksums, validates the hash, and optionally extracts it if safe.

checksum download extract file hash javascript npm security

Last synced: 03 Jul 2025

https://github.com/iitis/autopolicy

Autopolicy proof of concept

ddos firewall iot security

Last synced: 19 Apr 2025

https://github.com/readyyyk/chapy

Messaging service with anonymous access and decentralized data storage. To join chat chat just enter a valid link with the chat id

chapy chat chatting confidence hacktoberfest material-ui reactjs security websocket

Last synced: 04 Oct 2025

https://github.com/the-viper-one/invoke-vncauth

PowerShell script to enumerate for and identify VNC servers that do not require authentication. Supports Active Directory target acquisition and CIDR notations.

hacking powershell security vnc

Last synced: 16 Mar 2026

https://github.com/llllllxy/tiny-security

一个基于token验证的Java Web权限控制框架,支持redis、jdbc和单机session多种存储方式,前后端分离项目、不分离项目均可使用,功能完善、使用简单、文档清晰,易于扩展。

authorization java security session-management springboot token

Last synced: 21 Jul 2025

https://github.com/biffalo/bettersecdefaults

An interactive powershell script for Azure/Entra. Creates a set of conditional access policies that will provide improved security over Microsoft's "Security Defaults". This script is primarily for less mature orgs that are perhaps still using Microsofts "Security Defaults" or only have very basic conditional access policies in place.

azure conditional-access entra-id identity-management powershell security

Last synced: 10 Apr 2025

https://github.com/youhaveme9/ctfinfo

Mobile app for CTF information, resources and updates, build in flutter

ctf dart flutter security

Last synced: 14 Sep 2025

https://github.com/authress/authress-sdk.rs

The Authress SDK for Rust provides authorization as a service with fully compatible REST apis.

api authentication authentication-middleware authorization authorization-framework authorization-server credentials keys security user-identity user-management

Last synced: 13 May 2025

https://github.com/dcoles/gitlab-cargo-audit

Use cargo-audit to generate a GitLab Dependency report

gitlab gitlab-ci rust security

Last synced: 21 Mar 2025

https://github.com/ph-7/honeypots

:honeybee: Examples of Honeypots to create the fake admin panels :honey_pot: This honeypot can help to understand and improve the security problems of your website or web app. There is an example of fake admin area for standalone and another honeypot fake admin login page for Joomla! CMS

admin fake fake-admin-panel honeypot honeypot-fake-admin joomla security

Last synced: 13 May 2025

https://github.com/turbot/flowpipe-mod-github

GitHub pipeline library for the Flowpipe cloud scripting engine. Automation and workflows to connect GitHub to the people, systems and data that matters.

automation cloud devops flowpipe flowpipe-mod github github-api hacktoberfest integrations low-code orchestration pipelines security workflow workflow-automation workflow-engine

Last synced: 22 Apr 2025

https://github.com/alisaduncan/angular-owasp-secure-coding

Code for Pluralsight course "Secure Coding with OWASP in Angular"

angular security

Last synced: 30 Oct 2025

https://github.com/ryankurte/fwsig

packaging, signing, and verification for embedded firmware

embedded firmware security signing

Last synced: 04 Mar 2025

https://github.com/chrisamanse/Codegen

An open source one-time password generator for iOS.

authentication authenticator cryptography generator hmac ios one-time-passwords qrcode security swift

Last synced: 22 Jul 2025

https://github.com/damienbod/wpfazureadsharepointonlinegraphapi

WPF Azure AD signin with Sharepoint Online API call using Graph API

azure azuread graph graph-api identity msal security sharepoint sharepoint-online wpf

Last synced: 03 Aug 2025

https://github.com/oracle-quickstart/terraform-oci-networking

Terraform module to Quickstart deploy network resources on OCI and to be reused by other projects

firewall networking oci oracle-cloud-infrastructure remote-peering security terraform terraform-module terraform-modules vcn virtual-cloud-network

Last synced: 13 Apr 2025

https://github.com/didinj/springboot-security-mongodb-example

Spring Boot, Security, MVC, Data and MongoDB Login Example

data example login mongodb mvc security springboot

Last synced: 30 Jul 2025

https://github.com/lfaoro/spark

Fireblaze Vault is a tokenization service, useful for the secure storage of sensitive data like PII, Credit Cards, Passports/IDs.

encryption payment security tokenization

Last synced: 01 Aug 2025

https://github.com/andrea11/openv

openv a tool to automatically load secrets from .env files using 1password CLI under the hood

1password secrets security

Last synced: 08 Aug 2025

https://github.com/kabragaurav/whaling-phishing

A demo of whaling attack in computer networks

cns networks phishing security whaling

Last synced: 02 Jan 2026

https://github.com/jaayperez/keysoft

Crypto Js secure, dynamic password creator application that uses cryptographic algorithms with Node.js, Express 4, and Heroku cloud deployment.

crypto cryptographic-algorithms expressjs generator heroku nodejs password password-generator random-password security tool tools

Last synced: 23 Mar 2025

https://github.com/ropwareJB/jwtfuzz

Library for fuzzing & attacking JSON Web Tokens (JWTs). Bindings for other languages included.

bug-bounty bug-bounty-tools bugbounty fuzz fuzzing hacking hacking-tool jwt jwt-token pentesting pentesting-tools security

Last synced: 10 Mar 2025

https://github.com/marhcouto/feup-fsi-logbooks

:mortar_board: Logbook solutions for SEED Labs and CTFs - FSI -> L.EIC - FEUP

crypto ctf feup-fsi feup-leic feup-meic fsi leic-fsi meic-fsi security seed-labs

Last synced: 04 Jan 2026

https://github.com/YosaiProject/yosai_libauthz

Rust extension library for Yosai

extension python rust security yosai

Last synced: 29 Mar 2025

https://github.com/azure/vscode-osconfig

This extension provides a rich authoring experience for Azure Device OS Configuration documents.

azure azure-iot azure-osconfig desired-state-configuration edge-security security vscode vscode-extension

Last synced: 04 Sep 2025

https://github.com/p0n1/curated-web3-security-feeds

RSS Aggregator for curated web3 security resources.

aggregator feeds security smart-contracts web3

Last synced: 10 Mar 2026

https://github.com/guardrailsio/docker-security-checker

Dockerized version of security-checker

devsecops php security security-tools

Last synced: 19 Apr 2025

https://github.com/php-casbin/medoo-adapter

Medoo Adapter for PHP-Casbin, Casbin is a powerful and efficient open-source access control library.

abac access-control acl casbin medoo permissions rbac restful security

Last synced: 12 May 2025

https://github.com/sysdiglabs/dockerfile-benchmarker

CIS Docker Benchmark for dockerfiles

cis docker dockerfile image security

Last synced: 09 Aug 2025

https://github.com/volkansah/ransy-edu

This JavaScript code provides a simplified example of a ransomware attack and its underlying techniques. It is intended for educational and ethical hacking purposes only, and should not be used for any illegal or unethical activities. It is important to always abide by the law and use technology responsibly and ethically to promote positive outcome

cybersecurity-education example-code malware offensive-security ransomeware-javascript ransomware ransomware-detection ransomware-prevention ransomware-source-code ransomware-summary redteam-tools security security-tools

Last synced: 02 Sep 2025

https://github.com/coding-hui/iam

IAM - Identity and access management system, cloud native friendly, multiple authentication methods

cloud gin golang iam oauth2 security

Last synced: 12 Apr 2025

https://github.com/maandree/passcheck

Passphrase strength evaluator

password-checker security

Last synced: 24 Feb 2025

https://github.com/turbot/flowpipe-mod-azure

Azure pipeline library for the Flowpipe cloud scripting engine. Automation and workflows to connect Azure to the people, systems and data that matters.

automation azure azure-cli cloud devops flowpipe flowpipe-mod hacktoberfest integrations low-code orchestration pipelines security workflow workflow-automation workflow-engine

Last synced: 22 Jun 2025

https://github.com/becklyn/becklynstaticrolesbundle

Config-based user role management for Symfony

php roles security symfony symfony-bundle

Last synced: 09 Mar 2026

https://github.com/zejiran/computational-infrastructure

Collection of projects made on a computational infrastructure course at Universidad de los Andes

clustering concurrency java security uniandes virtualization

Last synced: 15 Mar 2025

https://github.com/bilal-belli/dictionarywifiattacktool

This repository presents a simple Python program for testing a large number of passwords (dictionary) to connect to a WiFi network.

dictionary-attack python security security-tools wifi-hacking wifi-security

Last synced: 19 Apr 2025

https://github.com/reasonsoftware/security-group-manager

:closed_lock_with_key: AWS Security Group Management Lambda :closed_lock_with_key:

aws devops firewall lambda security whitelist

Last synced: 08 May 2025

https://github.com/codenoid/elixir-two-factor-auth

Library for generating QR-Code, Random Secret and Verify Time Based Password

2fa-security password security two-factor-authentication

Last synced: 15 Sep 2025

https://github.com/joshuadeguzman/xtrength

A password strength meter for Android

android jitpack kotlin passwords security

Last synced: 13 Apr 2025

https://github.com/bellthomas/citadel

Citadel — A Trusted Reference Monitor for the Linux Kernel using Intel SGX Enclaves

difc enclave kernel linux lsm reference-monitor security sgx

Last synced: 20 Apr 2025

https://github.com/Popsiclestick/falco-filebeat-daemonset

Easily deployable daemonset which moves logs from falco with filebeat.

containers daemonset falco filebeat kubernetes security

Last synced: 12 May 2025

https://github.com/pedroac/nonce4php

A nonce manager PHP library useful for preventing CSRF and replay attacks.

csrf-tokens nonces nonces-generator php php-library replay-attack security

Last synced: 08 Apr 2026

https://github.com/thomasleveil/doco-maltrail

docker-compose project for running maltrail

docker-compose maltrail malware network-monitoring security

Last synced: 01 Aug 2025

https://github.com/LeKlex/Attack-simulation-infrastructure

A small and simple network infrastructure with automated attacks on a VM server documented by tshark

bruteforce forensic hacking network nmap nmap-scripts port-scanner reverse-shell security shell-script sql-injection telnet tshark ubuntu vagrant virtualbox

Last synced: 12 Jul 2025

https://github.com/dryewo/fahrscheine-bitte

Clojure library for checking OAuth2 access tokens

access-token api clojure compojure oauth2 security swagger1st

Last synced: 22 Apr 2025

https://github.com/grantseltzer/prism

Container based binary analysis tool

binary-analysis containers prism security snapshot

Last synced: 15 Feb 2026

https://github.com/doucol/clyde

Project Calico Observability Tools

calico k8s kubernetes networking observability projectcalico security tigera

Last synced: 02 Feb 2026

https://github.com/kasuken/passwordify

Generate secure password on the fly

blazor-webassembly hacktoberfest password-generator security

Last synced: 02 Jan 2026

https://github.com/federicoceratto/nim-libu2f

FIDO U2F server-side and client-side library for Nim

authentication fido nim nim-lang security u2f

Last synced: 03 Oct 2025

https://github.com/l0wk3y-iaan/hunting-with-l0wk3y

This repository documents my path from cybersecurity enthusiast to a skilled bug bounty hunter. Here, I share the tools, resources, techniques, and real-world insights I've gathered along the way, aimed at uncovering vulnerabilities and improving application security.

bounty bug-bounty bugbounty cheatsheet enumeration hacking methodology penetration-testing pentest redteam security vulnerability web-application web-penetration-testing

Last synced: 13 Sep 2025

https://github.com/wultra/powerauth-admin

This reporitory was moved to https://github.com/wultra/powerauth-server repository

administration authentication mobile-security security

Last synced: 11 Jul 2025

https://github.com/h4fan/bpext

burpsuite python extention / burp python插件

burp-extensions favscan jsonscan log2db refxsscan security security-tools shriofinder springscan

Last synced: 12 Jul 2025

https://github.com/travisty-/pscloudbleed

Cross references sites with a list of domains possibly affected by the 2017 "CloudBleed" HTTPS traffic leak.

cloudbleed cloudflare https powershell security

Last synced: 22 Jun 2025

https://github.com/practicalparticle/sandblox

**EXPERIMENTAL SOFTWARE** SandBlox: A secure blockchain development platform using pre-built components called Blox & Particle's State Abstraction. Build dApps quickly and safely with React & TypeScript.

account-abstraction blockchain security smart-contracts web3

Last synced: 10 Oct 2025