security-code-scan

security-code-scan

Vulnerability Patterns Detector for C# and VB.NET

C#872lgpl-3.0

3 months ago

analysisanalyzercode

osx-security-awesome

A collection of OSX and iOS security resources

680apache-2.0

7 months ago

awesomeawesome-listhacking-mac

Vigilante

Vigilante

🛡️ Android security (camera/microphone dots indicators) app using Hilt, Animati

Kotlin761gpl-3.0

5 days ago

androidandroidanimationandroidviewmodel

mana-security-app

macOS vulnerability management for individuals

JavaScript16mit

9 months ago

cybersecurityelectronmacos

Umbrella_android

Umbrella_android

Description Umbrella is your one stop shop for digital and physical security

Kotlin234gpl-3.0

7 months ago

activismadvicecrypto

awesome-cyber-security-university

awesome-cyber-security-university

🎓 Because Education should be free. Contributions welcome! 🕵️

638cc0-1.0

5 months ago

awesomeawesome-listcourses

android-security-awesome

A collection of android security related resources

Shell7201apache-2.0

6 days ago

androidawesomeawesome-list

awesome-security-hardening

A collection of awesome security hardening guides, tools and other resources

4557

10 days ago

awesome-listbest-practicesblue-team

Android-Security-Reference

A W.I.P Android Security Ref

850

9 days ago

androidsecurity

awesome-bluetooth-security

List of Bluetooth BR/EDR/LE security resources

357

2 months ago

awesomeawesome-listble

awesome-embedded-and-iot-security

awesome-embedded-and-iot-security

A curated list of awesome embedded and IoT security resources.

1331cc0-1.0

5 months ago

awesomeawesome-listembedded

tsunami-security-scanner

Tsunami is a general purpose network security scanner with an extensible plugin

Java7931apache-2.0

15 days ago

awesome-industrial-control-system-security

A curated list of resources related to Industrial Control System (ICS) security.

Python1345apache-2.0

2 months ago

awesomeawesome-listhacktoberfest

security-apis

A collective list of public APIs for use in security. Contributions welcome

798mit

3 months ago

awesome-listjsonjson-api

awesome-vehicle-security

awesome-vehicle-security

🚗 A curated list of resources for learning about vehicle security and car hack

2578cc0-1.0

2 months ago

automotiveawesomeawesome-list

aspnetcore-security-headers

Middleware for adding security headers to an ASP.NET Core application.

C#242mit

4 months ago

simple-security-toolkit

A collection of practical security-focused guides and checklists for smart contr

851mit

3 months ago

cryptosecuritysecurity-tools

eslint-plugin-security

ESLint rules for Node Security

JavaScript1847apache-2.0

10 months ago

awesome-security

A collection of awesome software, libraries, documents, books, resources and coo

10222mit

25 days ago

awesome-listsecurity

API-Security-Checklist

Checklist of the most important security countermeasures when designing, testing

21319mit

3 months ago

apijwtoauth2

ada-security

Ada Security - OAuth 2.0 client and server framework to secure web applications

Ada19apache-2.0

last month

adaauthenticationjwt

awesome-security-newsletters

Periodic cyber security newsletters that capture the latest news, summaries of c

720gpl-2.0

2 months ago

cybersecuritynewsletter

ibm-security

A Carbon-powered React component library built by IBM Security

JavaScript72apache-2.0

2 months ago

carbon-design-systemibm-securityjavascript

rust-security-framework

Bindings to the macOS Security.framework

Rust196apache-2.0

2 months ago

keychainmacosrust

awesome-web-security

🐶 A curated list of Web Security materials and resources.

10083

21 days ago

awesomeawesome-listlist

phpcs-security-audit

phpcs-security-audit is a set of PHP_CodeSniffer rules that finds vulnerabilitie

PHP681gpl-3.0

9 months ago

phpphp-codesnifferphpcs

Mobile-Security-Framework-MobSF

Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application

JavaScript14906gpl-3.0

11 days ago

android-securityapi-testingapk

personal-security-checklist

personal-security-checklist

Description Strongbox is an application for keeping all your passwords safely

12562other

4 days ago

awesomeawesome-listcensorship

owasp-mastg

owasp-mastg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual

Python10699cc-by-sa-4.0

yesterday

androidandroid-applicationcompliancy-checklist

eslint-plugin-security

ESLint rules for Node Security

JavaScript1985apache-2.0

5 months ago

zarn

A lightweight static security analysis tool for modern Perl Apps

Perl18other

3 months ago

sastsecuritystatic-analysis

terraform-aws-security-group

Terraform module which creates EC2-VPC security groups on AWS 🇺🇦

HCL510other

3 months ago

awsaws-security-groupaws-vpc

wpscan

wpscan

WPScan WordPress security scanner. Written for security professionals and blog m

Ruby7825other

yesterday

hacking-toolscanscanner

RMS-Runtime-Mobile-Security

RMS-Runtime-Mobile-Security

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you

JavaScript2321gpl-3.0

23 days ago

android-securityfridaios-security

prowler

prowler

Prowler is an Open Source Security tool for AWS, Azure and GCP to perform Cloud

Python8620apache-2.0

10 hours ago

awsazurecis-benchmark

sipvicious

sipvicious

SIPVicious OSS is a VoIP security testing toolset. It helps security teams, QA a

Python780other

10 months ago

audit-siphacking-toolspassword-cracker

docker-bench-security

docker-bench-security

The Docker Bench for Security is a script that checks for dozens of common best-

Shell8544apache-2.0

last month

cicd-goat

cicd-goat

A deliberately vulnerable CI/CD environment. Learn CI/CD security through multip

Python1629apache-2.0

2 months ago

appseccicdctf

harden-runner

harden-runner

Runtime Security for GitHub Actions Workflow Runs

TypeScript321apache-2.0

5 days ago

actionsfirewallgithub-actions

bearer

Code security scanning tool (SAST) to discover, filter and prioritize security a

Go1361other

12 hours ago

appseccode-qualitycompliance

security-acronyms

Cybersecurity list of acronyms & abbreviations

HTML11

9 days ago

SecLists

SecLists is the security tester's companion. It's a collection of multiple types

PHP47284mit

3 months ago

fastapi-security

Implements authentication and authorization as FastAPI dependencies

Python113mit

12 months ago

ssh-audit

ssh-audit

SSH server & client security auditing (banner, key exchange, encryption, mac, co

Python1710mit

21 days ago

auditingsecurityssh

puma-scan

puma-scan

Puma Scan is a software security Visual Studio extension that provides real time

C#428mpl-2.0

11 months ago

k-rail

Kubernetes security tool for policy enforcement

Go444apache-2.0

8 months ago

k8skuberneteskubernetes-security

reg

reg

Docker registry v2 command line client and repo listing generator with security

Go1596mit

6 months ago

clicontainersdocker

ScoutSuite

ScoutSuite

Multi-Cloud Security Auditing Tool

Python5651gpl-2.0

10 days ago

auditingawsazure

gosec

gosec

Golang security checker

Go7095apache-2.0

3 days ago

golangsecuritysecurity-automation

vast

vast

Easy data pipelines for security teams.

C++500bsd-3-clause

3 months ago

actor-modelbitmap-indexdataops

nebula

nebula

Description Nebula is a scalable overlay networking tool with a focus on perf

Go12541mit

5 days ago

intelmq

intelmq

IntelMQ is a solution for IT security teams for collecting and processing securi

Python841agpl-3.0

3 days ago

alertsautomationcert

codeql

codeql

CodeQL: the libraries and queries that power security researchers around the wor

CodeQL6310mit

last month

codeqlgithub-advanced-securitygithub-security-lab

NetEscapades.AspNetCore.SecurityHeaders

Small package to allow adding security headers to ASP.NET Core websites

C#536mit

3 months ago

hacktoberfest

Fuzzing101

Fuzzing101

An step by step fuzzing tutorial. A GitHub Security Lab initiative

2048apache-2.0

11 months ago

aflafl-fuzzbug-hunting

cloudsploit

cloudsploit

Cloud Security Posture Management (CSPM)

JavaScript2896gpl-3.0

20 days ago

alibabaaquaaws

repo-supervisor

repo-supervisor

Scan your code for security misconfiguration, search for passwords and secrets.

JavaScript625mit

3 months ago

blueteamredteamsecret-management

atomex

🌊 Elixir RSS/ATOM feed builder with a focus on standards compliance, security a

Elixir42mit

6 months ago

atomelixirrss

fireward

A concise and readable language for Firestore security rules, similar to Firebas

Haskell234mit

6 months ago

firebasefirebase-firestorehaskell

VaporSecurityHeaders

VaporSecurityHeaders

Harden Your Security Headers For Vapor

Swift133mit

4 months ago

brokenhandssecurityserver-side-swift

mythril

mythril

Security analysis tool for EVM bytecode. Supports smart contracts built for Ethe

Python3517mit

17 days ago

blockchainethereumprogram-analysis

ThreatMapper

ThreatMapper

Open source cloud native security observability platform. Linux, K8s, AWS Fargat

Go3773apache-2.0

3 months ago

cloud-nativecloudsecuritycnapp

progpilot

A static analysis tool for security

PHP295mit

4 months ago

phpsecurity-toolsstatic-code-analysis

LogESP

Open Source SIEM (Security Information and Event Management system).

Python175mit

last month

asset-managementforensicslog

domain_analyzer

Analyze the security of any domain by finding all the information possible. Made

Python1829

9 months ago

Raccoon

Raccoon

A high performance offensive security tool for reconnaissance and vulnerability

Python2881mit

12 months ago

enumerationfuzzinghacking

fleet

fleet

Open-source platform for IT and security teams with thousands of computers. (Lin

Go1562other

8 hours ago

chefcloud-securitydesktop-engineering

Astra

Astra

Automated Security Testing For REST API's

Python2333apache-2.0

4 months ago

ci-cdowasppenetration-testing

octopus

octopus

Security Analysis tool for WebAssembly module (wasm) and Blockchain Smart Contra

Python455mit

11 months ago

blockchaincall-flow-analysiscontrol-flow-analysis

InviZible

InviZible

Android application for Internet privacy and security

Java1025gpl-3.0

3 days ago

advertisingandroidandroid-application

secure_headers

Manages application of security headers with many safe defaults

Ruby3103mit

23 days ago

content-security-policycookiecsp

nogotofail

An on-path blackbox network traffic security testing tool

Python2904apache-2.0

12 months ago

uuid

Go package for UUIDs based on RFC 4122 and DCE 1.1: Authentication and Security

Go4616bsd-3-clause

7 days ago

gouuid

shield

Comprehensive security for Lucky framework

Crystal52mit

2 months ago

authenticationcrystallucky-framework

GraphCrawler

GraphCrawler

GraphQL automated security testing toolkit

Python256mit

8 months ago

apiapi-hackingautomated-testing

itextsharp

itextsharp

[DEPRECATED] .NET port of the iText library, only security fixes will be added —

C#1296other

6 months ago

AWSBucketDump

Security Tool to Look For Interesting Files in S3 Buckets

Python1283mit

4 months ago

bugbountyenumerationpenetration-testing

starbase

starbase

Graph-based security analysis for everyone

TypeScript300mpl-2.0

7 days ago

analysisawsazure

qark

Tool to look for several security related Android application vulnerabilities

Python3048other

2 months ago

binskim

A binary static analysis tool that provides security and correctness results for

C#693other

17 days ago

infersharp

Infer# is an interprocedural and scalable static code analyzer for C#. Via the c

C#704mit

last month

fastapi_simple_security

fastapi_simple_security

API-key based security utilities for FastAPI, focused on simplicity of use

Python210mit

6 months ago

binserve

binserve

A fast production-ready static web server with TLS (HTTPS), routing, hot reloadi

Rust765mit

12 months ago

actixhandlebarshttp

sobelow

Security-focused static analysis for the Phoenix Framework

Elixir1478apache-2.0

4 months ago

elixirphoenix-frameworksecurity

metadata

This repository contains the data behind our Security, Privacy and Parental Cont

602

8 months ago

ntopng

ntopng

Web-based Traffic and Security Network Traffic Monitoring

Lua5524gpl-3.0

yesterday

dockerebpfipfix

paseto

Platform-Agnostic Security Tokens implementation in GO (Golang)

Go716mit

7 months ago

authauthenticationdecoder

pest

pest

:beetle: Primitive Erlang Security Tool

Erlang96mit

12 months ago

elixirelixir-securityerlang

allstar

allstar

GitHub App to set and enforce security policies

Go1119apache-2.0

2 days ago

awesome-appsec

awesome-appsec

A curated list of resources for learning about application security

PHP5777mit

21 days ago

application-securitycuratedowasp

PatrowlManager

PatrowlManager

PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Plat

HTML580agpl-3.0

4 days ago

apiautomationincident-response

vokuro

vokuro

Sample application for Phalcon Framework (Acl, Auth, Security)

PHP370bsd-3-clause

8 months ago

acldemophalcon

brakeman

brakeman

A static analysis security vulnerability scanner for Ruby on Rails applications

Ruby6747other

8 days ago

brakemanrailsruby

calico

calico

Cloud native networking and network security

Go4657apache-2.0

4 months ago

iniscan

A php.ini scanner for best security practices

PHP1467mit

4 months ago

configurationiniphp

killerbee

IEEE 802.15.4/ZigBee Security Research Toolkit

C706other

16 days ago

rudder-server

rudder-server

Privacy and Security focused Segment-alternative, in Golang and React

Go3712other

8 hours ago

bigquerycustomer-datacustomer-data-lake

recon

recon

🕵️‍♀️ Find, locate, and query files for ops and security experts ⚡️⚡️⚡️

Rust21apache-2.0

9 months ago

devopsdevops-toolsrust

cotopaxi

Set of tools for security testing of Internet of Things devices using specific n

Python331gpl-2.0

6 months ago

magevulndb

magevulndb

List of Magento extensions with known security issues.

PHP189

22 days ago

extensionsmagentovulnerability

Simple-File-Manager

Simple-File-Manager

Easy app for managing your files without ads, respecting your privacy & security

Kotlin1382gpl-3.0

10 hours ago

androidandroid-developmentfile-manager

LSMS

Linux Security and Monitoring Scripts

Python292mit

last month

c3

𝗖𝟯 provides compliant AWS CDK components to various security standards.

TypeScript31mit

7 months ago

aws-cdkciscis-controls

black-mirror

black-mirror

Blacklists and whitelists that aim to promote security, safety, and sanity acros

Shell106agpl-3.0

11 months ago

adblock-listblackhole-listsblacklist

terrascan

terrascan

Detect compliance and security violations across Infrastructure as Code to mitig

Go4209apache-2.0

22 days ago

architectureawsaws-security

cli

terraform-compliance/cli

a lightweight, security focused, BDD test framework against terraform.

Python1266mit

3 months ago

bddbdd-stylecompliance

dawnscanner

Dawn is a static analysis security scanner for ruby written web applications. It

Ruby708mit

5 months ago

codereviewcybersecurityhanami

solcurity

Opinionated security and code quality standard for Solidity smart contracts.

1764

3 months ago

secure

HTTP middleware for Go that facilitates some quick security wins.

Go2149mit

9 months ago

gogolangmiddleware

SecureDefaults

Elevate the security of your UserDefaults with this lightweight ✨ wrapper that

Swift223mit

7 months ago

aesaes-256aes-encryption

drozer

The Leading Security Assessment Framework for Android.

Python3171other

4 months ago

androiddrozerjava

Sentry

Sentry

Enforce security policies.

Kotlin74gpl-3.0

last year

androidkotlinsecurity

Security_list

Great security list for fun and profit

1591

9 months ago

SOC-Multitool

SOC-Multitool

A powerful and user-friendly browser extension that streamlines investigations f

JavaScript286mit

last month

browser-extensionchrome-extensioncybersecurity

haaukins

haaukins

A Highly Accessible and Automated Virtualization Platform for Security Education

Go168gpl-3.0

17 days ago

clictfdcybersecurity

tracee

Linux Runtime Security and Forensics using eBPF

Go2848apache-2.0

29 days ago

bpfebpfgolang

tetragon

tetragon

eBPF-based Security Observability and Runtime Enforcement

C2551apache-2.0

28 days ago

bpfebpfkernel

paseto

Platform-Agnostic Security Tokens

PHP3153other

5 months ago

pasetopaseto-tokensphp

threatbus

🚌 Threat Bus – A threat intelligence dissemination layer for open-source securi

Python243bsd-3-clause

6 months ago

cifcif3ids

caringcaribou

A friendly car security exploration tool for the CAN bus

Python593gpl-3.0

last month

can-busecufuzzing

electronegativity

electronegativity

Electronegativity is a tool to identify misconfigurations and security anti-patt

JavaScript885apache-2.0

3 months ago

electronelectron-appnodejs

k9-cdk

Provision strong AWS security policies easily using the AWS CDK, v1 or v2.

TypeScript7apache-2.0

5 months ago

awscdkiam

lockfile-lint

lockfile-lint

Lint an npm or yarn lockfile to analyze and detect security issues

JavaScript725apache-2.0

3 months ago

hacktoberfestlintlinter

diffy

diffy

:no_entry: (DEPRECATED) Diffy is a triage tool used during cloud-centric securit

Python632apache-2.0

2 months ago

dfirforensicssecurity

scorecard

scorecard

OpenSSF Scorecard - Security health metrics for Open Source

Go3660apache-2.0

14 days ago

openssf-scorecardscorecard

play-pac4j

play-pac4j

Security library for Play framework 2 in Java and Scala: OAuth, CAS, SAML, OpenI

Java398apache-2.0

3 days ago

authenticationauthorizationcas

vertx-pac4j

vertx-pac4j

Security library for Vert.x: OAuth, CAS, SAML, OpenID Connect, LDAP, JWT...

Java120apache-2.0

3 months ago

authenticationauthorizationcas

graphql-armor

graphql-armor

🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / En

TypeScript396mit

3 days ago

apolloapollo-serverenvelop

tfsec

tfsec

Security scanner for your Terraform code

Go6270mit

9 days ago

awsazureci

2FAuth

2FAuth

A Web app to manage your Two-Factor Authentication (2FA) accounts and generate t

PHP1006agpl-3.0

3 days ago

2fa2factorhotp

kubectl-kubesec

kubectl-kubesec

Security risk analysis for Kubernetes resources

Go481apache-2.0

10 days ago

acra

acra

Database security suite. Database proxy with field-level encryption, search thro

Go1214apache-2.0

6 days ago

cryptocryptographydatabase-proxy

termbot

termbot

SSH client that works with YubiKeys, Nitrokeys, and other OpenPGP cards (based o

Java75other

10 months ago

fwanalyzer

fwanalyzer

a tool to analyze filesystem images for security

Go474apache-2.0

4 days ago

androidembedded-linuxfilesystem

falco

falco

Cloud Native Runtime Security

C++5959apache-2.0

3 months ago

cloud-nativecncfcontainers

mimikatz

A little tool to play with Windows security

C17776

2 months ago

honggfuzz

honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzin

C2868apache-2.0

2 days ago

cfuzzingsecurity

hblock

hblock

Improve your security and privacy by blocking ads, tracking and malware domains.

Shell1346mit

15 days ago

ad-blockeradblockadblocker

cyberowl

A daily updated summary of the most frequent types of security incidents current

Python230mit

5 days ago

cisacvesecurity

safenotes

safenotes

Safe Notes is a security project aimed at providing an encrypted, private note m

Dart182gpl-3.0

24 days ago

androidanonymitydart

beelzebub

beelzebub

Go based low code Honeypot Framework with Enhanced Security, leveraging OpenAI G

Go418mit

6 days ago

chatgptchatgpt-apicybersecurity

matano

matano

Open source cloud-native security lake platform (SIEM alternative) for threat hu

Rust1214apache-2.0

22 days ago

alertingapache-icebergaws

fibratus

fibratus

A modern tool for Windows kernel exploration and tracing with a focus on securit

Go1974other

7 hours ago

edrgolanginstrumentation

PayloadsAllTheThings

PayloadsAllTheThings

A list of useful payloads and bypass for Web Application Security and Pentest/CT

Python51011mit

3 days ago

bountybugbountybypass

pyramid_simpleauth

Session based authentication and role based security for a Pyramid web applicati

Python34unlicense

10 months ago

kube-score

kube-score

Kubernetes object analysis with recommendations for improved reliability and sec

Go2374mit

14 days ago

analysisautomationcharts

cherrybomb

cherrybomb

Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined use

Rust952apache-2.0

24 days ago

apiapi-securitybest-practices

scout

scout

Description The Scout - Full App for accessing a Scout server, which is a sta

Go10mit

9 months ago

PortAuthority

PortAuthority

A handy systems and security-focused tool, Port Authority is a very fast Android

Java286gpl-3.0

22 days ago

androiddns-lookupjava

rails-template

Application template for Rails 7 projects; preloaded with best practices for TDD

Ruby171other

3 months ago

ackamarailsrails-template

mqtt-pwn

mqtt-pwn

MQTT-PWN intends to be a one-stop-shop for IoT Broker penetration-testing and se

Python294gpl-3.0

7 months ago

exploitationiotmqtt

user.js

Firefox privacy, security and anti-tracking: a comprehensive user.js template fo

JavaScript6519mit

11 months ago

anti-fingerprintinganti-trackingarkenfox

cilium

cilium

eBPF-based Networking, Security, and Observability

Go16394apache-2.0

18 days ago

bpfcncfcni

hubble

hubble

Hubble - Network, Service & Security Observability for Kubernetes using eBPF

Go2860apache-2.0

5 days ago

ciliumebpfkubernetes

Awesome-SOAR

Awesome-SOAR

A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome

648

9 months ago

awesome-fuzzing

A curated list of awesome Fuzzing(or Fuzz Testing) for software security

696

9 months ago

awesomeawesome-listcpuu

graphql-cop

graphql-cop

Security Auditor Utility for GraphQL APIs

Python228mit

19 days ago

auditingblue-teamgraphql

awesome-electronjs-hacking

awesome-electronjs-hacking

A curated list of awesome resources about Electron.js (in)security

502

11 months ago

Flask-AppBuilder

Flask-AppBuilder

Simple and rapid application development framework, built on top of Flask. inclu

Python4181bsd-3-clause

4 months ago

authenticationcrudflask

emba

emba

EMBA - The firmware security analyzer

Shell2025gpl-3.0

4 days ago

artificial-intelligencebinary-analysisembedded-linux

awesome-rtc-hacking

a list of awesome resources related to security and hacking of VoIP, WebRTC and

312cc0-1.0

8 months ago

awesomeawesome-listsbug-bounty

find-sec-bugs

find-sec-bugs

The SpotBugs plugin for security audits of Java web applications and Android app

Java2118lgpl-3.0

last month

bytecodecode-analysiscwe

OpenSK

OpenSK is an open-source implementation for security keys written in Rust that s

Rust2691apache-2.0

last month

ctap2embeddedfido2

weggli

weggli

weggli is a fast and robust semantic search tool for C and C++ codebases. It is

Rust1979apache-2.0

10 months ago

gotham

gotham

A flexible web framework that promotes stability, safety, security and speed.

Rust2142other

4 months ago

asyncgothamlearning-gotham

SXA.SecurityHeaders

Sitecore SXA Security Headers Module

C#8mit

4 months ago

Awesome-Hacking

Awesome-Hacking

A collection of various awesome lists for hackers, pentesters and security resea

69357cc0-1.0

2 months ago

androidawesomebug-bounty

fastapi-permissions

row level security for FastAPI framework

Python363other

6 months ago

awesome-canbus

:articulated_lorry: Awesome CAN bus tools, hardware and resources for Cyber Secu

1271cc0-1.0

4 months ago

automotiveautomotive-securityawesome

awesome-web-hacking

A list of web application security

5052mit

2 months ago

appsechackinghacking-tools

klaro

klaro

Klaro! A privacy and security tool for your website.

JavaScript964other

11 months ago

ccpacmpconsent

is-website-vulnerable

is-website-vulnerable

finds publicly known security vulnerabilities in a website's frontend JavaScript

JavaScript1866apache-2.0

last month

hacktoberfestlighthousenodejs

secrets.clj

secrets.clj

A library designed to generate cryptographically strong random numbers suitable

Clojure88mit

last month

authenticationchoicesclj

rails-template

App template for Rails 7 projects; best practices for TDD, security, deployment,

Ruby1045mit

last month

boilerplateherokurails

DevSkim

DevSkim is a set of IDE plugins, language analyzers, and rules that provide secu

C#822mit

9 days ago

lintersdlsecurity

zuul

zuul

Zuul is a gateway service that provides dynamic routing, monitoring, resiliency,

Java12847apache-2.0

19 days ago

NWebsec

Security libraries for ASP.NET

C#522bsd-3-clause

7 months ago

NodeGoat

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 sec

HTML1765apache-2.0

15 days ago

dockerherokujavascript

pac4j

pac4j

Security engine for Java (authentication, authorization, multi frameworks): OAut

Java2316apache-2.0

8 days ago

authenticationauthorizationcas

pareto-mac

pareto-mac

Automatically audit your Mac for basic security hygiene.

Swift274gpl-3.0

3 months ago

endpoint-securitymacossecurity

panel

panel

Pterodactyl® is a free, open-source game server management panel built with PHP,

PHP5303other

5 days ago

dockerfreegames

server

pushbits/server

A simple server for push notifications via Matrix (and a minimalistic alternativ

Go257isc

2 months ago

cloudgotifymatrix-org

action-tfsec

action-tfsec

Run tfsec with reviewdog on pull requests to enforce security best practices

Shell62mit

13 days ago

reviewdogterrafromtfsec

secure-electron-template

secure-electron-template

The best way to build Electron apps with security in mind.

JavaScript1520mit

4 months ago

boilerplateelectroni18next

cloudgoat

cloudgoat

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Python2185bsd-3-clause

7 days ago

Infosec_Reference

Infosec_Reference

An Information Security Reference That Doesn't Suck; https://rmusser.net/git/adm

CSS5133mit

2 months ago

blueteamforensicshacking

advisory-db

advisory-db

Security advisory database for Rust crates published through crates.io

762other

15 days ago

rustsecuritysecurity-advisories

nishang

Nishang - Offensive PowerShell for red team, penetration testing and offensive s

PowerShell7838other

23 days ago

activedirectoryhackinginfosec

DELTA

DELTA

PROJECT DELTA: SDN SECURITY EVALUATION FRAMEWORK

Java75

7 months ago

pentestingsdnsecurity-testing

sast-scan

Scan is a free & Open Source DevSecOps tool for performing static analysis based

Python682apache-2.0

5 months ago

appsecdependency-scandevsecops

HaboMalHunter

HaboMalHunter

HaboMalHunter is a sub-project of Habo Malware Analysis System (https://habo.qq.

Python714other

6 months ago

dynamic-analysiselflinux

tenzir

tenzir

Open source data pipelines for security teams.

C++535bsd-3-clause

yesterday

actor-modelbitmap-indexdataops

raspberry-pi-kernel-hardened

Cross-compile the Linux kernel for Raspberry Pi with enhanced security in a sing

Shell18mit

12 months ago

linux-kernelraspberry-piraspberrypi-kernel

VeraCrypt

Disk encryption with strong security based on TrueCrypt

C5413other

6 days ago

encryptionencryption-algorithmsencryption-decryption

ctf-tools

Some setup scripts for security research tools.

Shell7674bsd-3-clause

3 months ago

StaDynA

StaDynA: Addressing the Problem of Dynamic Code Updates in the Security Analysis

19

6 months ago

androidandroid-securitydynamic-analysis

awesome-privacy

awesome-privacy

Description Strongbox is an application for keeping all your passwords safely

4839cc0-1.0

5 days ago

awesomeawesome-listhacktoberfest

tpotce

tpotce

🍯 T-Pot - The All In One Honeypot Platform 🐝

C5257gpl-3.0

last month

deceptiondockerelk

building-secure-contracts

Guidelines and training material to write secure smart contracts

Solidity1952agpl-3.0

9 days ago

syphon

syphon

Description Syphon is a privacy focused, end-to-end encryption capable matrix

Dart991agpl-3.0

22 days ago

darte2eeencryption

Secur

A FOSS, cross-platform TOTP client written in Flutter with the aim of providing

Dart3mit

3 years ago

Free-Security-eBooks

Free Security and Hacking eBooks

3911

4 years ago

cloud-securitycyber-securityebooks

go-jwk-security

Go7

3 years ago

automotive-security-research

automotive-security-research

This repository contains reverse engineering results and resources for a few spe

Python74

4 years ago

automotive-securitycar-hacking

snync

Mitigate security concerns of Dependency Confusion supply chain security risks

JavaScript30other

last year

DumpsterFire

DumpsterFire

"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for

Python933mit

3 years ago

automationblue-teamblue-teams

timely-security-analytics

Demo code for the Timely Security Analytics and Analysis 2015 Re:Invent presenta

Scala28other

4 years ago

Security

[Archived] Middleware for security and authorization of web apps. Project moved

C#1256apache-2.0

5 years ago

aspnet-product

zen-rails-security-checklist

Checklist of security precautions for Ruby on Rails applications.

Ruby1810mit

4 years ago

checklistrailsruby

awesome-evm-security

awesome-evm-security

🕶 A high-level overview of the EVM security ecosystem

138cc0-1.0

last year

awesomeawesome-listblockchain

awesome-industrial-control-system-security

A curated list of resources related to Industrial Control System (ICS) security.

Python26apache-2.0

7 years ago

awesome-websocket-security

Awesome information for WebSockets security research

221apache-2.0

2 years ago

securitysecurity-toolsweb-application-security

security-belt

security-belt

🥋 Framework for continuously improving the IT-Security of your teams through ga

JavaScript73apache-2.0

last year

gamificationjavascriptmaturity-model

security-adventure

Go on an educational Web security adventure!

JavaScript335

10 years ago

roslyn-security-guard

roslyn-security-guard

Roslyn analyzers that aim to help security audit on .NET applications.

C#207lgpl-3.0

6 years ago

code-analysisroslynroslyn-analyzer

security-onion

Security Onion 16.04 - Linux distro for threat hunting, enterprise security moni

3033

2 years ago

dfirhuntingids

RSF

RSF

The Robot Security Framework (RSF), Robot Security Framework (RSF), a standardiz

80gpl-3.0

5 years ago

assessmentcybersecurityframework

pyt

pyt

A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Appl

Python2139gpl-2.0

3 years ago

abstract-syntaxabstract-syntax-treecontrol-flow-graph

AspNet.Security.OpenIdConnect.Server

OpenID Connect/OAuth2 server framework for OWIN/Katana and ASP.NET Core

C#562

3 years ago

aspnetcorekatanaoauth2

appsec-education

Presentations, training modules, and other education materials from Duo Security

JavaScript66bsd-3-clause

2 years ago

appseceducationtraining-materials

Sitecore-Security-Rights-Reporting

Sitecore-Security-Rights-Reporting

View all the Access right set on Sitecore rols or users

C#7

last year

sitecore

iOS-App-Security-Class

Simple class to check if app has been cracked, being debugged or enriched with c

Objective-C74mit

5 years ago

H5SC

HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors

JavaScript2781mpl-2.0

2 years ago

Cryptool

Cryptool

Cryptography and high security keystore Android application tool. It has a very

Kotlin44gpl-3.0

last year

androidcryptographykeystore

Umbrella_ios

Open source Android, iOS and Web app for learning about and managing digital and

Swift15

2 years ago

infoseciosopen-source

mortar

mortar

Framework to join Linux's physical security bricks.

Shell150gpl-3.0

last year

archbitlockerboot

safetybox

Security oriented helper functions for Elixir

Elixir19

8 years ago

stronghold

stronghold

Easily configure macOS security settings from the terminal.

Python1028mit

4 years ago

command-linecommand-line-toolhardening

AndroBugs_Framework

AndroBugs_Framework

AndroBugs Framework is an efficient Android vulnerability scanner that helps dev

Python1060gpl-3.0

4 years ago

totp-ssh-fluxer

totp-ssh-fluxer

Take security by obscurity to the next level (this is a bad idea, don't really u

Go912

last year

iptablesobscurityssh

joy

A package for capturing and analyzing network flow data and intraflow data, for

C1248other

4 years ago

jwtXploiter

A tool to test security of json web token

Python239gpl-3.0

3 years ago

ctfctf-toolsjku

hermetic

Security for Clack-based Common Lisp web applications.

Common Lisp40

4 years ago

buddy

Security library for Clojure

Clojure824apache-2.0

2 years ago

aaf-easypassword

aaf-easypassword

:lock: Easy Password is password management application. This application uses p

Kotlin33other

4 years ago

android-appandroid-applicationkotlin

scanner-cli

scanner-cli

A project security/vulnerability/risk scanning tool

JavaScript356other

2 years ago

cidockernodejs

toms_honeypot

Tom's Honey Pot as seen in Applied Network Security Monitoring.

Python25

8 years ago

insider

insider

Static Application Security Testing (SAST) engine focused on covering the OWASP

Go447mit

last year

androidandroid-securitycli

lorg

lorg

Apache Logfile Security Analyzer

HTML204gpl-2.0

5 years ago

threataggregator

Aggregates security threats from a number of online sources, and outputs to Sysl

Python76mit

8 years ago

bolt

An integrated security system for applications built on component

Clojure123mit

8 years ago

NetworkMapper

Android frontend for Nmap Security Scanner

Java56gpl-2.0

7 years ago

NoiseTorch

Project dead (security breach)

20

last year

AdminControl

Additional security settings for Android

Java35gpl-3.0

2 years ago

honeyup

An uploader honeypot designed to look like poor website security.

Rust24gpl-3.0

2 years ago

android_app_security_checklist

Android App Security Checklist

813

last year

security_monkey

security_monkey

Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and the

Python4338apache-2.0

3 years ago

awsaws-ec2aws-iam

BreachDetector

Detect root, emulation, debug mode and other security concerns in your Xamarin a

C#83mit

2 years ago

debugdetectionemulation

GRASSMARLIN

Provides situational awareness of Industrial Control Systems (ICS) and Superviso

Java843other

4 years ago

analysiscontrol-systemsics

movecerts

movecerts

Move Android Certificates to system to avoid security warnings

Java26gpl-3.0

4 years ago

v0lt

v0lt

Security CTF Toolkit (Not maintained anymore)

Python358

6 years ago

python3securitysecurity-ctf

Obfuscator-iOS

Secure your app by obfuscating all the hard-coded security-sensitive strings.

Objective-C624mit

3 years ago

secureyournode

Security workshop

JavaScript24mit

8 years ago

csaw_esc_2019

csaw_esc_2019

CSAW Embedded Security Challenge 2019

Python32mit

4 years ago

metta

metta

An information security preparedness tool to do adversarial simulation.

Python1041mit

4 years ago

adversarialceleryinfosec

Tokenize

Security tokens for CakePHP

PHP12mit

3 years ago

SOCKS5Engine

High-performance SOCKS5 server by Vee Security

Go41agpl-3.0

4 years ago

aurasium

Practical security policy enforcement for Android apps via bytecode rewriting an

Python37gpl-3.0

9 years ago

ShinobiCE

Shinobi Community Edition (CE) is a GPLv3+AGPLv3 release of Shinobi. The Free Op

JavaScript111other

3 years ago

statistically-likely-usernames

statistically-likely-usernames

Wordlists for creating statistically likely username lists for use in password a

654

last year

awesome-windows-domain-hardening

A curated list of awesome Security Hardening techniques for Windows.

1663

4 years ago

hardeningsecuritywindows

parse

Parse: A Static Security Scanner

PHP353

5 years ago

phpscannersecurity

hetty

hetty

An HTTP toolkit for security research.

Go4972mit

last year

bugbountyhttpinfosec

Scout2

Scout2

Security auditing tool for AWS environments

Python1729gpl-2.0

5 years ago

awssecurity

cloud-inquisitor

cloud-inquisitor

Enforce ownership and data security within AWS

Python452apache-2.0

3 years ago

CANalyzat0r

CANalyzat0r

Security analysis toolkit for proprietary car protocols

Python688gpl-3.0

2 years ago

automotive-securitycarhackingreverse-engineering

wagtailenforcer

wagtailenforcer

The Wagtail arm of the law - enforce security protocols on your Wagtail site

Python44

2 years ago

axessecuritysecurity-protocol

wysihtml5

Open source rich text editor based on HTML5 and the progressive-enhancement appr

JavaScript6516mit

7 years ago

vsfire

vsfire

Visual Studio Code extension for syntax highlighting, hover help and code comple

TypeScript74mit

3 years ago

firebasefirebase-storagevscode

cssInjection

Stealing CSRF tokens with CSS injection (without iFrames)

HTML306gpl-2.0

6 years ago

noble-ripemd160

noble-ripemd160

Noble RIPEMD160. High-security, easily auditable, 0-dep, 1-file hash function

TypeScript16mit

2 years ago

cryptographyhashjavascript

cSploit/android

cSploit - The most complete and advanced IT security professional toolkit on And

Java2916gpl-3.0

last year

awesome-blocksec-ctf

A curated list of blockchain security Capture the Flag (CTF) competitions

14cc0-1.0

3 years ago

RCTF

RCTF

Scenarios of the Robotics CTF (RCTF), a playground to challenge robot security.

30gpl-3.0

3 years ago

ctf-challengesctf-platformcybersecurity

ssh-audit

ssh-audit

SSH server auditing (banner, key exchange, encryption, mac, compression, compati

Python2886mit

3 years ago

mkit

mkit

MKIT is a Managed Kubernetes Inspection Tool that validates several common secur

Dockerfile401mit

2 years ago

aksawsazure

awesome-lockpicking

:unlock::sunglasses: A curated list of awesome guides, tools, and other resource

1182cc0-1.0

last year

awesomeawesome-listkeypicking

flask-talisman

HTTP security headers for Flask

Python878apache-2.0

last year

Heimdall

Heimdall

Heimdall is a wrapper around the Security framework for simple encryption/decryp

Swift398mit

3 years ago

aesencrypted-messagesios

machinae

machinae

Machinae Security Intelligence Collector

Python490mit

last year

ironbee

Universal web application security sensor intended for real-time monitoring and

XSLT296apache-2.0

8 years ago

Vuldroid

Vuldroid

Vuldroid is a Vulnerable Android Application made with security issues in order

Java49mit

2 years ago

android-applicationandroid-securityapplication-security

strong-node

strong-node

:heavy_check_mark: More than 100 security checks for your Node.js API

JavaScript486

2 years ago

bpflock

bpflock

bpflock - eBPF driven security for locking and auditing Linux machines

C125apache-2.0

2 years ago

bpfcontainersebpf

Logibit.Hawk

A F# Hawk implementation with a strongly typed API that guides your usage and mi

F#36other

5 years ago

packetpig

Packetpig - Open Source Big Data Security Analytics

Python300

5 years ago

awesome-sec-talks

A collected list of awesome security talks

3846

2 years ago

conferenceshackinginfosec

awesome-es

A collection of awesome resources for Splunk Enterprise Security

16cc0-1.0

3 years ago

awesomeawesome-listsplunk

dlint-check

Github Action to run dlint security linter on your Python code

Dockerfile2mit

2 years ago

flake8github-actionslinter

drydock

drydock provides a flexible way of assessing the security of your Docker daemon

Python63gpl-2.0

7 years ago

auditdockersecurity

expliot

EXPLIoT - Internet of Things Security Testing and Exploitation framework

Python89agpl-3.0

last year

ExploitatioInternet of Thingshacking

Universal Android Debloater

Bash script using ADB to debloat **rooted and non-rooted** android devices. Impr

Shell399gpl-3.0

2 years ago

androidbattery lifebloatware

Secure-Pref-Manager

Secure Preference Manager for android. It uses various Encryption to protect you

Java71apache-2.0

7 years ago

androidencryptionhide-preferences

force-dot-com-esapi

Enterprise Security API for the Apex language on the Force.com platform.

Apex122bsd-3-clause

2 years ago

goSecretBoxPassword

A probably paranoid Golang utility library for securely hashing and encrypting p

Go56mit

last year

credentialsgolanggolang-library

Secure-Photo-Viewer

Java46mit

3 years ago

androidimage-viewerjava

ewok-kernel

ewok-kernel

A secure and high performances microkernel for building secure MCU-based IoTs

Ada71apache-2.0

2 years ago

adaarmarmv7m

stormpath-sdk-dotnet

The Official Stormpath SDK for C# and Visual Basic. Stormpath enables developer

C#53apache-2.0

6 years ago

Docker-Secure-Deployment-Guidelines

Deployment checklist for securely deploying Docker

597

7 years ago

rack-secure-upload

Upload files securely

Ruby75mit

5 years ago

rackrailssecurity

secure-ruby-development-guide

Guide to secure software development in Ruby

Makefile9other

8 years ago

secure-quick-reliable-login

This repository is an implementation for SQRL (Secure Quick Reliable Login) on A

Java110mit

2 years ago

quick-secure

Quickly secure UNIX/Linux systems

Shell407gpl-3.0

4 years ago

dockerdocker-securitylinux

secure-remote-password

Crystal implementation of the Secure Remote Password protocol (SRP-6a)

Crystal4mit

last year

Introspy-Android

Introspy-Android

Security profiling for blackbox Android

Java459gpl-2.0

10 years ago

Secure-File-Manager

Secure-File-Manager

Secure File Manager is open source file manager for keeping your files in safe.

Kotlin146gpl-3.0

last year

androidencryptionfilemanager

HTTPS4All

HTTPS4All

Description Browse securely online with HTTPS4All. This app has an extensive

Swift28gpl-2.0

3 years ago

roverz

roverz

Description Groups - 1:1 / Private / PublicSecurely connect with a team membe

JavaScript44apache-2.0

5 years ago

android-appchatcollaboration

android-vts

android-vts

Android Vulnerability Test Suite - In the spirit of open data collection, and wi

Java1010other

4 years ago

interpol

The "interpol" security string interpolation library and the "police" command li

Go2gpl-2.0

last year

golangsecurity-tools

vue-kindergarten

Modular security for Vue, Vuex, Vue-Router and Nuxt

JavaScript309mit

5 years ago

javascriptkindergartennuxt

MARA_Framework

MARA_Framework

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a

Python594lgpl-3.0

4 years ago

arch-audit

A utility like pkg-audit for Arch Linux. Based on Arch Security Team data.

Rust30mit

2 years ago

freeotp-ios

freeotp-ios

Description FreeOTP adds a second layer of security for your online accounts.

Swift540apache-2.0

last year

extension-dashboard-m2

extension-dashboard-m2

A Magento 2 dashboard to display installed extensions. Read the blog post on som

PHP36

2 years ago