security-code-scan

security-code-scan

Vulnerability Patterns Detector for C# and VB.NET

C#930lgpl-3.0

19 days ago

analysisanalyzercode

osx-security-awesome

A collection of OSX and iOS security resources

718apache-2.0

7 months ago

awesomeawesome-listhacking-mac

Vigilante

Vigilante

🛡️ Android security (camera/microphone dots indicators) app using Hilt, Animati

Kotlin769gpl-3.0

9 months ago

androidandroidanimationandroidviewmodel

android-security-awesome

A collection of android security related resources

Shell7904apache-2.0

4 days ago

androidawesomeawesome-list

security-acronyms

Curated list of Cyber Security acronyms & abbreviations

HTML18

5 days ago

awesome-security-hardening

A collection of awesome security hardening guides, tools and other resources

5222

last month

awesome-listbest-practicesblue-team

Android-Security-Reference

A W.I.P Android Security Ref

901

19 days ago

androidsecurity

awesome-bluetooth-security

List of Bluetooth BR/EDR/LE security resources

481

7 months ago

awesomeawesome-listble

tsunami-security-scanner

Tsunami is a general purpose network security scanner with an extensible plugin

Java8171apache-2.0

17 days ago

awesome-industrial-control-system-security

A curated list of resources related to Industrial Control System (ICS) security.

Python1556apache-2.0

9 months ago

awesomeawesome-listhacktoberfest

aspnetcore-security-headers

Middleware for adding security headers to an ASP.NET Core application.

C#262mit

8 months ago

personal-security-checklist

personal-security-checklist

🔒 A compiled checklist of 300+ tips for protecting digital security and privacy

TypeScript16390other

6 days ago

awesomeawesome-listcensorship

simple-security-toolkit

A collection of practical security-focused guides and checklists for smart contr

1018mit

8 months ago

cryptosecuritysecurity-tools

awesome-security

A collection of awesome software, libraries, documents, books, resources and coo

11891mit

12 days ago

awesome-listsecurity

awesome-security-newsletters

Periodic cyber security newsletters that capture the latest news, summaries of c

805gpl-2.0

5 months ago

cybersecuritynewsletter

rust-security-framework

Bindings to the macOS Security.framework

Rust230apache-2.0

4 days ago

keychainmacosrust

Mobile-Security-Framework-MobSF

Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application

JavaScript16795gpl-3.0

yesterday

android-securityapi-testingapk

owasp-mastg

owasp-mastg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual

Python11472cc-by-sa-4.0

6 days ago

androidandroid-applicationcompliancy-checklist

zarn

A lightweight static security analysis tool for modern Perl Apps

Perl42other

6 days ago

sastsecuritystatic-analysis

Umbrella_android

Umbrella_android

Open source Android, iOS and Web app for learning about and managing digital and

Kotlin259gpl-3.0

2 months ago

activismadvicecrypto

terraform-aws-security-group

Terraform module to create AWS Security Group resources 🇺🇦

HCL557other

23 days ago

awsaws-security-groupaws-vpc

RMS-Runtime-Mobile-Security

RMS-Runtime-Mobile-Security

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you

JavaScript2533gpl-3.0

28 days ago

android-securityfridaios-security

prowler

prowler

Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do

Python10343apache-2.0

9 hours ago

awsazurecis-benchmark

macOS-Security-and-Privacy-Guide

macOS-Security-and-Privacy-Guide

Guide to securing and improving privacy on macOS

21089mit

2 days ago

appledisk-encryptiondnscrypt-proxy

docker-bench-security

docker-bench-security

The Docker Bench for Security is a script that checks for dozens of common best-

Shell9018apache-2.0

2 months ago

cicd-goat

cicd-goat

A deliberately vulnerable CI/CD environment. Learn CI/CD security through multip

Python1867apache-2.0

13 days ago

appseccicdctf

uuid

Go package for UUIDs based on RFC 4122 and DCE 1.1: Authentication and Security

Go5169bsd-3-clause

26 days ago

gouuid

ScoutSuite

ScoutSuite

Multi-Cloud Security Auditing Tool

Python6366gpl-2.0

3 days ago

auditingawsazure

gosec

gosec

Go security checker

Go7612apache-2.0

4 days ago

golangsecuritysecurity-automation

bearer

Code security scanning tool (SAST) to discover, filter and prioritize security a

Go1891other

11 days ago

appseccode-qualitycompliance

SecLists

SecLists is the security tester's companion. It's a collection of multiple types

PHP55807mit

5 days ago

fastapi-security

Implements authentication and authorization as FastAPI dependencies

Python136mit

12 months ago

ssh-audit

ssh-audit

SSH server & client security auditing (banner, key exchange, encryption, mac, co

Python3249mit

5 days ago

auditingsecurityssh

wpscan

wpscan

WPScan WordPress security scanner. Written for security professionals and blog m

Ruby8409other

4 days ago

hacking-toolscanscanner

nebula

nebula

Description Nebula is a scalable overlay networking tool with a focus on perf

Go14113mit

10 hours ago

intelmq

intelmq

IntelMQ is a solution for IT security teams for collecting and processing securi

Python951agpl-3.0

2 days ago

alertsautomationcert

codeql

codeql

CodeQL: the libraries and queries that power security researchers around the wor

CodeQL7364mit

4 days ago

codeqlgithub-advanced-securitygithub-security-lab

cloudsploit

cloudsploit

Cloud Security Posture Management (CSPM)

JavaScript3275gpl-3.0

8 days ago

alibabaaquaaws

mythril

mythril

Security analysis tool for EVM bytecode. Supports smart contracts built for Ethe

Python3781mit

5 days ago

blockchainethereumprogram-analysis

ebpfguard

ebpfguard

Rust library for writing Linux security policies using eBPF

Rust274apache-2.0

6 months ago

progpilot

A static analysis tool for security

PHP321mit

2 months ago

phpsecurity-toolsstatic-code-analysis

LogESP

Open Source SIEM (Security Information and Event Management system).

Python190mit

11 months ago

asset-managementforensicslog

Raccoon

Raccoon

A high performance offensive security tool for reconnaissance and vulnerability

Python3037mit

2 months ago

enumerationfuzzinghacking

Astra

Astra

Automated Security Testing For REST API's

Python2462apache-2.0

2 months ago

ci-cdowasppenetration-testing

File-Manager

File-Manager

Easy app for managing your files without ads, respecting your privacy & security

Kotlin502gpl-3.0

3 days ago

androidfile-managerfoss

octopus

octopus

Security Analysis tool for WebAssembly module (wasm) and Blockchain Smart Contra

Python481mit

8 months ago

blockchaincall-flow-analysiscontrol-flow-analysis

GraphCrawler

GraphCrawler

GraphQL automated security testing toolkit

Python293mit

5 months ago

apiapi-hackingautomated-testing

itextsharp

itextsharp

[DEPRECATED] .NET port of the iText library, only security fixes will be added —

C#1353other

last month

AWSBucketDump

Security Tool to Look For Interesting Files in S3 Buckets

Python1340mit

4 months ago

bugbountyenumerationpenetration-testing

starbase

starbase

Graph-based security analysis for everyone

TypeScript335mpl-2.0

7 months ago

analysisawsazure

qark

Tool to look for several security related Android application vulnerabilities

Python3163other

6 months ago

binskim

A binary static analysis tool that provides security and correctness results for

C#761other

2 months ago

infersharp

Infer# is an interprocedural and scalable static code analyzer for C#. Via the c

C#727mit

6 months ago

fastapi_simple_security

fastapi_simple_security

Drop-in API-key based security for FastAPI

Python308mit

7 months ago

binserve

binserve

A fast production-ready static web server with TLS (HTTPS), routing, hot reloadi

Rust983mit

5 months ago

actixhandlebarshttp

ntopng

ntopng

Web-based Traffic and Security Network Traffic Monitoring

Lua6070gpl-3.0

4 days ago

dockerebpfipfix

pest

pest

:beetle: Primitive Erlang Security Tool

Erlang100mit

7 months ago

elixirelixir-securityerlang

allstar

allstar

GitHub App to set and enforce security policies

Go1231apache-2.0

18 hours ago

awesome-appsec

awesome-appsec

A curated list of resources for learning about application security

PHP6202mit

19 days ago

application-securitycuratedowasp

brakeman

brakeman

A static analysis security vulnerability scanner for Ruby on Rails applications

Ruby6944other

2 days ago

brakemanrailsruby

killerbee

killerbee

IEEE 802.15.4/ZigBee Security Research Toolkit

C746other

10 months ago

rudder-server

rudder-server

Privacy and Security focused Segment-alternative, in Golang and React

Go4014other

2 days ago

bigquerycdpcustomer-data

cotopaxi

Set of tools for security testing of Internet of Things devices using specific n

Python349gpl-2.0

2 months ago

magevulndb

magevulndb

List of Magento extensions with known security issues.

PHP199

6 months ago

extensionsmagentovulnerability

Simple-File-Manager

Simple-File-Manager

Easy app for managing your files without ads, respecting your privacy & security

Kotlin1480gpl-3.0

2 months ago

androidandroid-developmentfile-manager

LSMS

Linux Security and Monitoring Scripts

Python318mit

11 months ago

terrascan

terrascan

Detect compliance and security violations across Infrastructure as Code to mitig

Go4624apache-2.0

3 days ago

architectureawsaws-security

cli

terraform-compliance/cli

a lightweight, security focused, BDD test framework against terraform.

Python1337mit

4 months ago

bddbdd-stylecompliance

dawnscanner

Dawn is a static analysis security scanner for ruby written web applications. It

Ruby735mit

5 months ago

codereviewcybersecurityhanami

secure

HTTP middleware for Go that facilitates some quick security wins.

Go2245mit

last month

gogolangmiddleware

SecureDefaults

SecureDefaults

Elevate the security of your UserDefaults with this lightweight wrapper that ad

Swift224mit

3 months ago

aesaes-256aes-encryption

SOC-Multitool

SOC-Multitool

A powerful and user-friendly browser extension that streamlines investigations f

JavaScript320mit

11 months ago

browser-extensionchrome-extensioncybersecurity

haaukins

haaukins

A Highly Accessible and Automated Virtualization Platform for Security Education

Go182apache-2.0

2 months ago

clictfdcybersecurity

tetragon

tetragon

eBPF-based Security Observability and Runtime Enforcement

Go3444apache-2.0

4 days ago

bpfebpfkernel

nsjail

A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rl

C++2866apache-2.0

18 days ago

chrootlinuxlinux-namespaces

k9-cdk

Provision strong AWS security policies easily using the AWS CDK, v1 or v2.

TypeScript8apache-2.0

last month

awscdkiam

diffy

diffy

:no_entry: (DEPRECATED) Diffy is a triage tool used during cloud-centric securit

Python632apache-2.0

6 months ago

dfirforensicssecurity

vertx-pac4j

vertx-pac4j

Security library for Vert.x: OAuth, CAS, SAML, OpenID Connect, LDAP, JWT...

Java122apache-2.0

11 days ago

authenticationauthorizationcas

caringcaribou

A friendly car security exploration tool for the CAN bus

Python698gpl-3.0

18 hours ago

can-busecufuzzing

graphql-armor

graphql-armor

🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / En

TypeScript482mit

4 days ago

apolloapollo-servercybersecurity

passbolt_api

passbolt_api

Description Take your team's passwords with you wherever you go by downloadin

PHP4491agpl-3.0

4 days ago

cakephpcakephp4credentials

tutanota

tutanota

Description Tuta (formerly Tutanota), the fully secure encrypted email and ca

TypeScript5874gpl-3.0

14 hours ago

emailencryptionjavascript

tracee

Linux Runtime Security and Forensics using eBPF

Go3382apache-2.0

7 days ago

bpfdockerebpf

2FAuth

2FAuth

A Web app to manage your Two-Factor Authentication (2FA) accounts and generate t

PHP1894agpl-3.0

7 days ago

2fa2factorhotp

kubectl-kubesec

kubectl-kubesec

Security risk analysis for Kubernetes resources

Go505apache-2.0

7 months ago

acra

acra

Database security suite. Database proxy with field-level encryption, search thro

Go1324apache-2.0

17 days ago

cryptocryptographydatabase-proxy

fwanalyzer

fwanalyzer

a tool to analyze filesystem images for security

Go484apache-2.0

10 months ago

androidembedded-linuxfilesystem

falco

falco

Cloud Native Runtime Security

C++7129apache-2.0

5 days ago

cloud-nativecncfcncf-project

InviZible

InviZible

Android application for online privacy and security

Java1367gpl-3.0

17 hours ago

advertisingandroidandroid-application

mimikatz

A little tool to play with Windows security

C19065

22 days ago

honggfuzz

honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzin

C3019apache-2.0

5 days ago

cfuzzingsecurity

hblock

Improve your security and privacy by blocking ads, tracking and malware domains.

Shell1508mit

7 days ago

ad-blockeradblockadblocker

cyberowl

A daily updated summary of the most frequent types of security advisories curren

Python241mit

5 months ago

cisacvesecurity

safenotes

safenotes

Safe Notes is a security project aimed at providing an encrypted, private note m

Dart216gpl-3.0

20 days ago

androidanonymitydart

matano

matano

Open source security data lake for threat hunting, detection & response, and cyb

Rust1417apache-2.0

6 days ago

alertingapache-icebergaws

android-money-manager-ex

android-money-manager-ex

Manage your finances on-the-go, encrypted for security, sync via your own cloud

Java461gpl-3.0

21 hours ago

androidcipherencryption

fibratus

fibratus

A modern tool for Windows kernel exploration and tracing with a focus on securit

Go2114other

25 days ago

edrgolanginstrumentation

PayloadsAllTheThings

PayloadsAllTheThings

A list of useful payloads and bypass for Web Application Security and Pentest/CT

Python58679mit

2 days ago

bountybugbountybypass

drozer

drozer

The Leading Security Assessment Framework for Android.

Python3743other

21 days ago

androiddrozerjava

building-secure-contracts

Guidelines and training material to write secure smart contracts

Solidity2157agpl-3.0

8 days ago

scorecard

scorecard

OpenSSF Scorecard - Security health metrics for Open Source

Go4300apache-2.0

5 days ago

openssf-scorecardscorecard

scout

scout

Description The Scout - Full App for accessing a Scout server, which is a sta

Go14mit

14 days ago

KryptEY

KryptEY

Android keyboard for secure E2EE communication through the signal protocol in an

Java622gpl-3.0

3 months ago

androidandroid-keyboardchat-control

PortAuthority

PortAuthority

A handy systems and security-focused tool, Port Authority is a very fast Android

Java344gpl-3.0

11 months ago

androiddns-lookupjava

rails-template

Application template for Rails 7 projects; preloaded with best practices for TDD

Ruby269other

7 days ago

ackamarailsrails-template

capacitor-secure-storage

Secure, flexible storage for Capacitor apps using iOS Keychain and Android Keyst

TypeScript94mit

9 days ago

capacitorcapacitor-androidcapacitor-ios

ssh-audit

ssh-audit

SSH server auditing (banner, key exchange, encryption, mac, compression, compati

Python2938mit

28 days ago

cilium

cilium

eBPF-based Networking, Security, and Observability

Go19367apache-2.0

4 days ago

bpfcncfcni

hubble

hubble

Hubble - Network, Service & Security Observability for Kubernetes using eBPF

Makefile3406apache-2.0

7 days ago

ciliumebpfkubernetes

Awesome-SOAR

Awesome-SOAR

A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome

770

4 months ago

graphql-cop

graphql-cop

Security Auditor Utility for GraphQL APIs

Python329mit

last month

auditingblue-teamgraphql

awesome-electronjs-hacking

awesome-electronjs-hacking

A curated list of awesome resources about Electron.js (in)security

555

5 days ago

emba

emba

EMBA - The firmware security analyzer

Shell2528gpl-3.0

14 hours ago

artificial-intelligencebinary-analysisembedded-linux

find-sec-bugs

find-sec-bugs

The SpotBugs plugin for security audits of Java web applications and Android app

Java2241lgpl-3.0

24 days ago

bytecodecode-analysiscwe

OpenSK

OpenSK

OpenSK is an open-source implementation for security keys written in Rust that s

Rust2944apache-2.0

12 days ago

ctap2embeddedfido2

gotham

gotham

A flexible web framework that promotes stability, safety, security and speed.

Rust2231other

2 months ago

asyncgothamlearning-gotham

fastapi-permissions

row level security for FastAPI framework

Python459other

9 months ago

machinae

machinae

Machinae Security Intelligence Collector

Python499mit

2 months ago

awesome-canbus

:articulated_lorry: Awesome CAN bus tools, hardware and resources for Cyber Secu

1968cc0-1.0

4 days ago

automotiveautomotive-securityawesome

How-To-Secure-A-Linux-Server

An evolving how-to guide for securing a Linux server.

17082cc-by-sa-4.0

26 days ago

cc-by-sahardeninghardening-steps

awesome-web-hacking

A list of web application security

5609mit

last month

appsechackinghacking-tools

strong-node

strong-node

:heavy_check_mark: More than 100 security checks for your Node.js API

JavaScript498

3 months ago

is-website-vulnerable

is-website-vulnerable

finds publicly known security vulnerabilities in a website's frontend JavaScript

JavaScript1926apache-2.0

11 months ago

hacktoberfestlighthousenodejs

secrets.clj

secrets.clj

A library designed to generate cryptographically strong random numbers suitable

Clojure91mit

4 months ago

authenticationchoicesclj

DevSkim

DevSkim is a set of IDE plugins, language analyzers, and rules that provide secu

C#896mit

15 days ago

lintersdlsecurity

restler-fuzzer

restler-fuzzer

RESTler is the first stateful REST API fuzzing tool for automatically testing cl

Python2530mit

last month

zuul

zuul

Zuul is a gateway service that provides dynamic routing, monitoring, resiliency,

Java13324apache-2.0

10 days ago

openappsec

openappsec

open-appsec is a machine learning security engine that preemptively and automati

C++759apache-2.0

2 days ago

api-securityapplication-securityappsec

NodeGoat

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 sec

HTML1847apache-2.0

last month

dockerherokujavascript

play-pac4j

play-pac4j

Security library for Play framework 2 in Java and Scala: OAuth, CAS, SAML, OpenI

Java404apache-2.0

3 days ago

authenticationauthorizationcas

pareto-mac

pareto-mac

Automatically audit your Mac for basic security hygiene.

Swift312gpl-3.0

3 months ago

endpoint-securitymacossecurity

panel

panel

Pterodactyl® is a free, open-source game server management panel built with PHP,

PHP6357other

7 days ago

dockerfreegames

action-tfsec

action-tfsec

Run tfsec with reviewdog on pull requests to enforce security best practices

Shell70mit

yesterday

reviewdogterrafromtfsec

secure-electron-template

secure-electron-template

The best way to build Electron apps with security in mind.

JavaScript1621mit

3 months ago

boilerplateelectroni18next

cloudgoat

cloudgoat

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Python2832bsd-3-clause

29 days ago

Infosec_Reference

Infosec_Reference

An Information Security Reference That Doesn't Suck; https://rmusser.net/git/adm

CSS5470mit

2 months ago

blueteamforensicshacking

advisory-db

advisory-db

Security advisory database for Rust crates published through crates.io

891other

4 days ago

rustsecuritysecurity-advisories

nishang

Nishang - Offensive PowerShell for red team, penetration testing and offensive s

PowerShell8549other

3 months ago

activedirectoryhackinginfosec

sast-scan

Scan is a free & Open Source DevSecOps tool for performing static analysis based

Python786apache-2.0

11 months ago

appsecdependency-scandevsecops

rn-secure-storage

Secure Storage for React Native (Android & iOS)

Java202mit

4 months ago

tenzir

tenzir

Open source security data pipelines.

C++623bsd-3-clause

17 hours ago

dataopsincident-responseinvestigation

VeraCrypt

Disk encryption with strong security based on TrueCrypt

C6523other

6 days ago

encryptionencryption-algorithmsencryption-decryption

ctf-tools

Some setup scripts for security research tools.

Shell8301bsd-3-clause

8 months ago

awesome-privacy

awesome-privacy

Description Strongbox is an application for keeping all your passwords safely

Astro6422cc0-1.0

14 days ago

awesomeawesome-listhacktoberfest

cloud-custodian

cloud-custodian

Rules engine for cloud security, cost optimization, and governance, DSL in yaml

Python5305apache-2.0

7 days ago

awsazurecloud

cloud-concierge

cloud-concierge

Codify resources outside of Terraform control, detect drift, estimate cloud cost

Go198apache-2.0

3 months ago

awsazurermcontainers

force-dot-com-esapi

Enterprise Security API for the Apex language on the Force.com platform.

Apex129bsd-3-clause

5 months ago

kratos

kratos

Next-gen identity server replacing your Auth0, Okta, Firebase with hardened secu

Go10896apache-2.0

5 days ago

hacktoberfestidentityidentity-management

Shuffle

Shuffle

Shuffle: A general purpose security automation platform. Our focus is on collabo

Shell1597agpl-3.0

14 hours ago

agplv3automationcybersecurity

weggli

weggli

weggli is a fast and robust semantic search tool for C and C++ codebases. It is

Rust2303apache-2.0

15 days ago

substation

substation

Substation is a toolkit for routing, normalizing, and enriching security event a

Go306mit

yesterday

automationawslogging

kics

kics

Find security vulnerabilities, compliance issues, and infrastructure misconfigur

Open Policy Agent1987apache-2.0

5 days ago

appseccloudnativedevsecops

lynis

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists

Shell12837gpl-3.0

4 days ago

auditingcompliancedevops

crowdsec

crowdsec

CrowdSec - the open-source and participative security solution offering crowdsou

Go8240mit

3 days ago

attacks-preventiondetectionlinux

regula

Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s m

Open Policy Agent944apache-2.0

12 days ago

validiac

ValidIaC combines the best open-source tools to help ensure Infrastructure-as-Co

TypeScript220other

7 months ago

ObjectivePGP

ObjectivePGP is an open-source library for iOS and macOS that provides developer

Objective-C666other

2 months ago

encryptionframeworkios

bandit

bandit

Bandit is a tool designed to find common security issues in Python code.

Python6180apache-2.0

5 days ago

banditlinterpython

cloudsplaining

cloudsplaining

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations

JavaScript1899bsd-3-clause

4 days ago

awsaws-iamaws-security

kube-score

kube-score

Kubernetes object analysis with recommendations for improved reliability and sec

Go2683mit

3 days ago

analysisautomationcharts

speed-camera

speed-camera

A Unix, Windows, Raspberry Pi Object Speed Camera using python, opencv, video st

Python951apache-2.0

2 months ago

matplotlib-pyplotmotion-trackingmoving

open-source-xamarin-apps

open-source-xamarin-apps

Description Start using the app?Activate the DigiD app first. Open the DigiD

458

10 months ago

androidappawesome

Bastillion-EC2

Bastillion-EC2

Description Authy brings the future of two-factor authentication to the conve

Java424other

4 months ago

awsbastion-hostec2

Artemis

Artemis

A modular vulnerability scanner with automatic report generation capabilities.

Python486bsd-3-clause

8 days ago

artemispentestingsecurity

themis

themis

Easy to use cryptographic framework for data protection: secure messaging with f

C1828apache-2.0

2 months ago

asymmetric-cryptographyauthenticationcryptography

paseto-dotnet

🔑 Paseto.NET, a Paseto (Platform-Agnostic Security Tokens) implementation for .

C#96mit

12 days ago

dotnetdotnet-corenetstandard

Android-InsecureBankv2

Vulnerable Android application for developers and security enthusiasts to learn

Java1218mit

3 months ago

mutual-tls-ssl

mutual-tls-ssl

🔐 Tutorial of setting up Security for your API with one way authentication with

Java552apache-2.0

yesterday

certificatecertificate-authoritycertificate-signing-request

awesome-threat-modelling

awesome-threat-modelling

A curated list of threat modeling resources (Books, courses - free and paid, vid

Dockerfile1319cc0-1.0

4 months ago

appsecawesomeawesome-list

terraform-aws-secure-baseline

Terraform module to set up your AWS account with the secure baseline configurati

HCL1128mit

18 days ago

awsaws-auditingcis-benchmark

opensips

OpenSIPS is a GPL implementation of a multi-functionality SIP Server that target

C1227other

8 days ago

pi-timolo

pi-timolo

Raspberry PI-TIMOLO ( PI-TImelapse, MOtion, LOwLight ) uses RPI picamera and Ope

Python549mit

7 months ago

awesome-listcurllowlight

sandstorm

Sandstorm is a self-hostable web productivity suite. It's implemented as a secur

JavaScript6690other

5 months ago

capnprotodecentralizedsandstorm

virgil-sdk-x

virgil-sdk-x

Virgil Core SDK allows developers to get up and running with Virgil Cards Servic

Swift27other

11 months ago

carthagecocoapodscore-sdk

wazuh

wazuh

Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for e

C9776other

10 hours ago

cloud-securitycomplianceconfiguration-assessement

kata-containers

Kata Containers is an open source project and community working to build a stand

Rust5181apache-2.0

2 days ago

acrncontainerscri

aws-firewall-factory

aws-firewall-factory

Enhance the security of your web applications effortlessly with AWS Firewall Fac

TypeScript229apache-2.0

5 days ago

amazon-web-servicesawscdk

kubernetes-goat

kubernetes-goat

Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and pra

HTML4165mit

29 days ago

blueteamcloud-nativecloud-security

mobile

OneKeePass/mobile

Description OneKeePass supports the well known KeePass-compatible database (K

Clojure93gpl-3.0

2 days ago

lunasec

lunasec

LunaSec - Dependency Security Scanner that automatically notifies you about vuln

TypeScript1423other

3 months ago

compliancecontinuous-deliverycve-scanning

selinux

This is the upstream repository for the Security Enhanced Linux (SELinux) userla

C1290other

5 days ago

vault

vault

Description Koofr Vault is an open source, client-side, zero-knowledge encryp

Rust87mit

9 days ago

spu

SPU (Secure Processing Unit) aims to be a provable, measurable secure computatio

C++215apache-2.0

5 days ago

privacy-preservingprivate-set-intersectionsecure-multiparty-computation

catalyst

catalyst

Catalyst is a self-hosted, open source incident response platform and ticket sys

Vue301agpl-3.0

6 days ago

dfirdigital-forensicsincident-response

nanoid

A tiny (124 bytes), secure, URL-friendly, unique string ID generator for JavaScr

JavaScript24031mit

last month

booster

booster

Fast and secure initramfs generator

Go485mit

18 days ago

bootinitramfslinux

Vault

Vault

Simple, fast, secure password manager

Kotlin36gpl-3.0

5 months ago

androidf-droidfdroid

memguard

Secure software enclave for storage of sensitive information in memory.

Go2514apache-2.0

3 months ago

cryptocryptographygo

Aegis

Aegis

A free, secure and open source app for Android to manage your 2-step verificatio

Java8519gpl-3.0

18 hours ago

2faandroidauthenticator

libsrtp

Library for SRTP (Secure Realtime Transport Protocol)

C1193other

8 days ago

libsrtprtpsrtp

SmartCookieWeb

SmartCookieWeb

A secure, open source web browser for Android.

Kotlin285mpl-2.0

10 months ago

androidbrowserjava

pincredible

pincredible

Modern and secure Android app to help you remember any PIN

Kotlin80apache-2.0

11 days ago

andriod-appandroidandroid-application

appfiguratesdk

appfiguratesdk

Appfigurate provides the ability to change configuration properties in iOS and w

Objective-C19other

18 days ago

configurationiossdk

android

etesync/android

EteSync - Secure, end-to-end encrypted, and privacy respecting sync for your con

Kotlin293gpl-3.0

5 months ago

androidencryptionend-to-end-encryption

img

img

Standalone, daemon-less, unprivileged Dockerfile and OCI compatible container im

Go3880mit

2 months ago

buildkitclicontainers

teleport

teleport

The easiest, and most secure way to access and protect all of your infrastructur

Go17091agpl-3.0

8 hours ago

auditbastioncertificate

anchor-link

Persistent, fast and secure signature provider for EOSIO chains built on top of

TypeScript53other

4 months ago

anchor-linkeoseosio

NextcloudPasswords

NextcloudPasswords

Secure app for viewing passwords for the Nextcloud Passwords app. Supports end-t

Kotlin48gpl-3.0

3 months ago

androidjetpack-composekotlin

nocode

The best way to write secure and reliable applications. Write nothing; deploy no

Dockerfile60046apache-2.0

8 days ago

l7-devenv

l7-devenv

Secure terminal-based IDE for local JS development

Shell17agpl-3.0

yesterday

neovimneovim-dotfilesnodejs

mana-security-app

macOS vulnerability management for individuals

JavaScript22mit

2 years ago

cybersecurityelectronmacos

automotive-security-research

automotive-security-research

This repository contains reverse engineering results and resources for a few spe

Python85

5 years ago

automotive-securitycar-hacking

snync

Mitigate security concerns of Dependency Confusion supply chain security risks

JavaScript36other

2 years ago

DumpsterFire

DumpsterFire

"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for

Python977mit

4 years ago

automationblue-teamblue-teams

timely-security-analytics

Demo code for the Timely Security Analytics and Analysis 2015 Re:Invent presenta

Scala29other

4 years ago

zen-rails-security-checklist

Checklist of security precautions for Ruby on Rails applications.

Ruby1811mit

4 years ago

checklistrailsruby

Free-Security-eBooks

Free Security and Hacking eBooks

4208

5 years ago

cloud-securitycyber-securityebooks

security-apis

security-apis

A collective list of public APIs for use in security. Contributions welcome

867mit

last year

awesome-listjsonjson-api

awesome-industrial-control-system-security

A curated list of resources related to Industrial Control System (ICS) security.

Python28apache-2.0

8 years ago

phpcs-security-audit

phpcs-security-audit is a set of PHP_CodeSniffer rules that finds vulnerabilitie

PHP705gpl-3.0

2 years ago

phpphp-codesnifferphpcs

RSF

RSF

The Robot Security Framework (RSF), Robot Security Framework (RSF), a standardiz

86gpl-3.0

6 years ago

assessmentcybersecurityframework

sipvicious

sipvicious

SIPVicious OSS is a VoIP security testing toolset. It helps security teams, QA a

Python863other

2 years ago

audit-siphacking-toolspassword-cracker

k-rail

Kubernetes security tool for policy enforcement

Go445apache-2.0

2 years ago

k8skuberneteskubernetes-security

bolt

An integrated security system for applications built on component

Clojure123mit

9 years ago

pyt

pyt

A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Appl

Python2163gpl-2.0

4 years ago

abstract-syntaxabstract-syntax-treecontrol-flow-graph

recon

recon

🕵️‍♀️ Find, locate, and query files for ops and security experts ⚡️⚡️⚡️

Rust27apache-2.0

2 years ago

devopsdevops-toolsrust

AspNet.Security.OpenIdConnect.Server

OpenID Connect/OAuth2 server framework for OWIN/Katana and ASP.NET Core

C#560

4 years ago

aspnetcorekatanaoauth2

appsec-education

Presentations, training modules, and other education materials from Duo Security

JavaScript68bsd-3-clause

3 years ago

appseceducationtraining-materials

puma-scan

puma-scan

Puma Scan is a software security Visual Studio extension that provides real time

C#443mpl-2.0

2 years ago

stronghold

stronghold

Easily configure macOS security settings from the terminal.

Python1081mit

5 years ago

command-linecommand-line-toolhardening

AndroBugs_Framework

AndroBugs_Framework

AndroBugs Framework is an efficient Android vulnerability scanner that helps dev

Python1116gpl-3.0

5 years ago

repo-supervisor

repo-supervisor

Scan your code for security misconfiguration, search for passwords and secrets.

JavaScript634mit

last year

blueteamredteamsecret-management

totp-ssh-fluxer

totp-ssh-fluxer

Take security by obscurity to the next level (this is a bad idea, don't really u

Go922

2 years ago

iptablesobscurityssh

atomex

🌊 Elixir RSS/ATOM feed builder with a focus on standards compliance, security a

Elixir54mit

last year

atomelixirrss

VaporSecurityHeaders

VaporSecurityHeaders

Harden Your Security Headers For Vapor

Swift144mit

last year

brokenhandssecurityserver-side-swift

H5SC

HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors

JavaScript2825mpl-2.0

2 years ago

jwtXploiter

A tool to test security of json web token

Python265gpl-3.0

3 years ago

ctfctf-toolsjku

domain_analyzer

domain_analyzer

Analyze the security of any domain by finding all the information possible. Made

Python1842

2 years ago

nogotofail

An on-path blackbox network traffic security testing tool

Python2937apache-2.0

2 years ago

scanner-cli

scanner-cli

A project security/vulnerability/risk scanning tool

JavaScript358other

3 years ago

cidockernodejs

toms_honeypot

Tom's Honey Pot as seen in Applied Network Security Monitoring.

Python25

9 years ago

insider

insider

Static Application Security Testing (SAST) engine focused on covering the OWASP

Go504mit

2 years ago

androidandroid-securitycli

lorg

lorg

Apache Logfile Security Analyzer

HTML208gpl-2.0

5 years ago

NetworkMapper

Android frontend for Nmap Security Scanner

Java64gpl-2.0

8 years ago

NoiseTorch

Project dead (security breach)

22

2 years ago

AdminControl

Additional security settings for Android

Java39gpl-3.0

3 years ago

android_app_security_checklist

Android App Security Checklist

844

2 years ago

security_monkey

security_monkey

Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and the

Python4351apache-2.0

3 years ago

awsaws-ec2aws-iam

metadata

This repository contains the data behind our Security, Privacy and Parental Cont

635

2 years ago

BreachDetector

Detect root, emulation, debug mode and other security concerns in your Xamarin a

C#88mit

3 years ago

debugdetectionemulation

GRASSMARLIN

Provides situational awareness of Industrial Control Systems (ICS) and Superviso

Java915other

4 years ago

analysiscontrol-systemsics

movecerts

movecerts

Move Android Certificates to system to avoid security warnings

Java28gpl-3.0

5 years ago

paseto

Platform-Agnostic Security Tokens implementation in GO (Golang)

Go838mit

last year

authauthenticationdecoder

v0lt

v0lt

Security CTF Toolkit (Not maintained anymore)

Python365

7 years ago

python3securitysecurity-ctf

vokuro

vokuro

Sample application for Phalcon Framework (Acl, Auth, Security)

PHP370bsd-3-clause

last year

acldemophalcon

Obfuscator-iOS

Secure your app by obfuscating all the hard-coded security-sensitive strings.

Objective-C642mit

3 years ago

secureyournode

Security workshop

JavaScript26mit

9 years ago

c3

𝗖𝟯 provides compliant AWS CDK components to various security standards.

TypeScript31mit

last year

aws-cdkciscis-controls

solcurity

Opinionated security and code quality standard for Solidity smart contracts.

2000

last year

csaw_esc_2019

csaw_esc_2019

CSAW Embedded Security Challenge 2019

Python34mit

5 years ago

Tokenize

Security tokens for CakePHP

PHP12mit

4 years ago

Sentry

Sentry

Enforce security policies

Kotlin102gpl-3.0

2 years ago

androidkotlinsecurity

aurasium

Practical security policy enforcement for Android apps via bytecode rewriting an

Python36gpl-3.0

10 years ago

threatbus

🚌 Threat Bus – A threat intelligence dissemination layer for open-source securi

Python257bsd-3-clause

last year

cifcif3ids

awesome-blocksec-ctf

A curated list of blockchain security Capture the Flag (CTF) competitions

14cc0-1.0

3 years ago

electronegativity

electronegativity

Electronegativity is a tool to identify misconfigurations and security anti-patt

JavaScript943apache-2.0

last year

electronelectron-appnodejs

statistically-likely-usernames

statistically-likely-usernames

Wordlists for creating statistically likely username lists for use in password a

865

2 years ago

awesome-windows-domain-hardening

A curated list of awesome Security Hardening techniques for Windows.

1730

5 years ago

hardeningsecuritywindows

HaboMalHunter

HaboMalHunter

HaboMalHunter is a sub-project of Habo Malware Analysis System (https://habo.qq.

Python726other

last year

dynamic-analysiselflinux

cssInjection

Stealing CSRF tokens with CSS injection (without iFrames)

HTML314gpl-2.0

6 years ago

termbot

termbot

SSH client that works with YubiKeys, Nitrokeys, and other OpenPGP cards (based o

Java81other

2 years ago

Scout2

Scout2

Security auditing tool for AWS environments

Python1728gpl-2.0

6 years ago

awssecurity

cloud-inquisitor

cloud-inquisitor

Enforce ownership and data security within AWS

Python451apache-2.0

4 years ago

CANalyzat0r

CANalyzat0r

Security analysis toolkit for proprietary car protocols

Python746gpl-3.0

2 years ago

automotive-securitycarhackingreverse-engineering

wagtailenforcer

wagtailenforcer

The Wagtail arm of the law - enforce security protocols on your Wagtail site

Python45

2 years ago

axessecuritysecurity-protocol

Secure-Pref-Manager

Secure Preference Manager for android. It uses various Encryption to protect you

Java70apache-2.0

8 years ago

androidencryptionhide-preferences

securecookie

Fast, secure and efficient secure cookie encoder/decoder

Go77mit

last year

goSecretBoxPassword

A probably paranoid Golang utility library for securely hashing and encrypting p

Go59mit

2 years ago

credentialsgolanggolang-library

Secure-Photo-Viewer

Java49mit

4 years ago

androidimage-viewerjava

mqtt-pwn

mqtt-pwn

MQTT-PWN intends to be a one-stop-shop for IoT Broker penetration-testing and se

Python346gpl-3.0

last year

exploitationiotmqtt

mkit

mkit

MKIT is a Managed Kubernetes Inspection Tool that validates several common secur

Dockerfile401mit

3 years ago

aksawsazure

awesome-rtc-hacking

a list of awesome resources related to security and hacking of VoIP, WebRTC and

382cc0-1.0

last year

awesomeawesome-listsbug-bounty

Heimdall

Heimdall

Heimdall is a wrapper around the Security framework for simple encryption/decryp

Swift401mit

4 years ago

aesencrypted-messagesios

ironbee

Universal web application security sensor intended for real-time monitoring and

XSLT301apache-2.0

9 years ago

Vuldroid

Vuldroid

Vuldroid is a Vulnerable Android Application made with security issues in order

Java59mit

3 years ago

android-applicationandroid-securityapplication-security

secure-ruby-development-guide

Guide to secure software development in Ruby

Makefile9other

9 years ago

secure-quick-reliable-login

This repository is an implementation for SQRL (Secure Quick Reliable Login) on A

Java115mit

2 years ago

bpflock

bpflock

bpflock - eBPF driven security for locking and auditing Linux machines

C135apache-2.0

2 years ago

bpfcontainersebpf

Logibit.Hawk

A F# Hawk implementation with a strongly typed API that guides your usage and mi

F#36other

6 years ago

quick-secure

Quickly secure UNIX/Linux systems

Shell408gpl-3.0

4 years ago

dockerdocker-securitylinux

packetpig

Packetpig - Open Source Big Data Security Analytics

Python298

6 years ago

awesome-sec-talks

A collected list of awesome security talks

3976

3 years ago

conferenceshackinginfosec

parse

Parse: A Static Security Scanner

PHP358

6 years ago

phpscannersecurity

awesome-es

A collection of awesome resources for Splunk Enterprise Security

19cc0-1.0

4 years ago

awesomeawesome-listsplunk

corbfuzz

corbfuzz

Code for ASE'21 Paper "CorbFuzz: Checking Browser Security Policies with Fuzzing

C3mit

3 years ago

browser-securityconcolic-executionfuzzing

raspberry-pi-kernel-hardened

Cross-compile the Linux kernel for Raspberry Pi with enhanced security in a sing

Shell21mit

2 years ago

linux-kernelraspberry-piraspberrypi-kernel

dlint-check

Github Action to run dlint security linter on your Python code

Dockerfile3mit

3 years ago

flake8github-actionslinter

drydock

drydock provides a flexible way of assessing the security of your Docker daemon

Python64gpl-2.0

8 years ago

auditdockersecurity

StaDynA

StaDynA: Addressing the Problem of Dynamic Code Updates in the Security Analysis

20

last year

androidandroid-securitydynamic-analysis

Secure-File-Manager

Secure-File-Manager

Secure File Manager is open source file manager for keeping your files in safe.

Kotlin161gpl-3.0

2 years ago

androidencryptionfilemanager

stormpath-sdk-dotnet

The Official Stormpath SDK for C# and Visual Basic. Stormpath enables developer

C#54apache-2.0

7 years ago

roverz

roverz

Description Groups - 1:1 / Private / PublicSecurely connect with a team membe

JavaScript44apache-2.0

6 years ago

android-appchatcollaboration

android-vts

android-vts

Android Vulnerability Test Suite - In the spirit of open data collection, and wi

Java1014other

5 years ago

interpol

The "interpol" security string interpolation library and the "police" command li

Go4gpl-2.0

2 years ago

golangsecurity-tools

Windows-Secure-Host-Baseline

Configuration guidance for implementing the Windows 10 and Windows Server 2016 D

HTML1546other

2 years ago

adobe-readerapplockeraudit

MARA_Framework

MARA_Framework

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a

Python616lgpl-3.0

5 years ago

api-gateway-secure-pet-store

api-gateway-secure-pet-store

Amazon API Gateway sample using Amazon Cognito credentials through AWS Lambda

Objective-C308apache-2.0

3 years ago

WELA

WELA

WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs!

PowerShell738gpl-3.0

last year

analysisdfirevent

Swift-CircleMenu

Swift-CircleMenu

Description ASTROLABE CETUS app is Intended for use with products from ASTROL

Swift125mit

8 years ago

PSRecon

PSRecon

:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or

PowerShell474apache-2.0

7 years ago

OWASP-GoatDroid-Project

*This project is no longer maintained* OWASP GoatDroid is a fully functional and

Java237

10 years ago

SharedChamber

Android Secure SharedPreferences Using Facebook Conceal Encryption

Java95mit

4 years ago

androidandroid-secure-sharedpreferencesconceal

Applied-Crypto-Hardening

Applied-Crypto-Hardening

Best Current Practices regarding secure online communication and configuration o

TeX704

3 years ago

applied-cryptographybest-practicescryptography

beyond

beyond

BeyondCorp-inspired HTTPS/SSO Access Proxy. Secure internal services outside you

Go250other

2 years ago

beyondcorpfederationgolang

dotgpg

A secure and easy-to-use store for your production secrets

Ruby161

6 years ago

Lockbox

Objective-C utility class for storing data securely in the key chain.

Objective-C849mit

last year

Smallfolk

A fast, robust, secure, richly-featured table serialisation library for Lua

Lua21mit

8 years ago

ironssh

Secure end-to-end encrypted file sharing over ssh; forked from openssh.

C62other

2 years ago

passera

[UNSUPPORTED] A small tool to turn any entered passphrase into a strong secure p

Go62other

6 years ago

PyGrid-deprecated---see-PySyft-

PyGrid-deprecated---see-PySyft-

A Peer-to-peer Platform for Secure, Privacy-preserving, Decentralized Data Scien

Python615apache-2.0

last year

peer-to-peerpygridpython

jackson

jackson

Pythonic way of keeping secrets secure in JSON

Python18apache-2.0

4 years ago

json-parserpythonsecret-in-json

shellclear

shellclear

Secure shell history commands by finding sensitive data

Rust214apache-2.0

last year

bashrustsecurity

NoteCrypt

Keep your notes safe and secure with Note Crypt for Android!

Java40gpl-3.0

4 years ago

androidbackupcrypt

warp

Secure and simple terminal sharing

Go1612mit

6 years ago

command-linesharingshell

super

super

Secure, Unified, Powerful and Extensible Rust Android Analyzer

Rust417gpl-3.0

4 years ago

analyzerandroidandroid-analyzer

SecureEnclaveCrypto

SecureEnclaveCrypto

Demonstration library for using the Secure Enclave on iOS

Swift279apache-2.0

3 years ago

applecryptoios

android

trebleshot/android

An open-source app that allows you to transfer files one to one securely or usin

Kotlin141gpl-2.0

3 years ago

androidapplicationfile

sundown

Standards compliant, fast, secure markdown processing library in C

C1986

6 years ago

hoedown

Standards compliant, fast, secure markdown processing library in C

C948isc

4 years ago

Crypter

Crypter

🔓✨🔒 An innovative, convenient and secure encryption app

JavaScript455mit

3 years ago

clientcross-platformcrypter

destiny

destiny

Description Destiny is an end-to-end encrypted file transfer app. No sign-ups

Dart217mit

last year

androiddartflutter

midgetpack

midgetpack is a multiplatform secure ELF packer

C195other

10 years ago

SipHash

Simple and secure hashing in Swift with the SipHash algorithm

Swift263mit

2 years ago

cryptoballot

cryptoballot

cryptographically secure online voting

Rust220

3 years ago

urlhda-android

Urlhda - Secure and open-source android application for URL shortening

Java3gpl-3.0

8 years ago

twik

Twik is an Android application that makes it easier to generate secure and diffe

Java37gpl-3.0

6 years ago

nvim-config-local

Secure load local config files for neovim

Lua144mit

last year

neovimneovim-configurationneovim-plugin

Git-Credential-Manager-for-Windows

Secure Git credential storage for Windows with support for Visual Studio Team Se

C#2857other

3 years ago

authenticationbitbucketcredential-storage

ARMANDroid

ARMANDroid - anti-repackaging tool for Android apps

Dockerfile11agpl-3.0

4 years ago

airtable-proxy-worker

airtable-proxy-worker

A Cloudflare Worker that allows you to make secure requests to the Airtable API

JavaScript133

2 years ago

airtablecloudflarecloudflare-worker

subuser

subuser

Run programs on linux with selectively restricted permissions.

Python888lgpl-3.0

2 years ago

containersdockerpython

github-keygen

Easy creation of secure SSH configuration for your GitHub account(s)

Perl245gpl-3.0

last year

cli-appgithubssh

rkt

[Project ended] rkt is a pod-native container engine for Linux. It is composable

Go8829apache-2.0

4 years ago

containersgooci

stormpath-aspnetcore

Build simple, secure web applications with Stormpath and ASP.NET Core

C#18apache-2.0

7 years ago

shellfire

A repository of namespaced, composable shell (bash, sh and dash) function librar

Shell1197other

9 years ago

learn-json-web-tokens

learn-json-web-tokens

:closed_lock_with_key: Learn how to use JSON Web Token (JWT) to secure your next

JavaScript4177mit

last year

tice-android

tice-android

TICE is a secure app for meeting up, sharing locations and locating friends and

HTML50gpl-3.0

2 years ago

androidencryptionhacktoberfest

serverless.tf

serverless.tf is an opinionated open-source framework for developing, building,

719apache-2.0

4 years ago

aws-serverlessinfrastructure-as-codeserverless

ISHPermissionKit

ISHPermissionKit

Description The all-in-one app for your business needsWith the free SumUp mob

Objective-C612other

4 years ago

terraform-cost-estimation

Anonymized, secure, and free Terraform cost estimation based on Terraform plan (

jq676apache-2.0

last year

cost-controlcost-estimationdevops-tools

jitsi-meet

jitsi-meet

Description Jitsi Meet lets you stay in touch with all your teams, be they fa

JavaScript4apache-2.0

2 years ago

Tella-Android-FOSS

Tella-Android-FOSS

Description - Encryption: keep your files safe and secure inside Tella's encr

Java25apache-2.0

last year

fhir-proxy

fhir-proxy

FHIR Proxy is a secure application that acts as an intermediary in the transfer

C#73mit

last year

azurefhir

RPFloatingPlaceholders

RPFloatingPlaceholders

Description Save on your next trip with the Booking.com app! Find great hotel

Objective-C1130mit

5 years ago

LayoutKit

LayoutKit

Description Welcome professionals! The key to getting in is getting started.

Swift3162apache-2.0

3 years ago

ioslayout-enginelayoutkit