Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
Yet, just another hexo plugin for security.
Security Apps for Android
Mobile Hacker's Weapons / A collection of cool tools used by Mobile hackers. Happy hacking , Happy bug-hunting
Automated System Hardening Framework
A Ruby framework designed to aid in the penetration testing of WordPress systems.
Electronegativity is a tool to identify misconfigurations and security anti-patterns in Electron applications.
T Wiki 云安全知识文库,可能是国内首个云安全知识文库?
Sleepy Puppy XSS Payload Management Framework
Statically-linked ssh server with reverse shell functionality for CTFs and such
Pythonic WebAuthn 🐍
WebAuthn (FIDO2) server library written in Go
"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easil...
Awesome PHP Security Resources 🕶🐘🔐
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific or...
Attify OS - Distro for pentesting IoT devices
Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more
Ultimate Javascript Object Signing and Encryption (JOSE), JSON Web Token (JWT) and Json Web Keys (JWK) Implementation for .NET and .NET Core
Cloudlist is a tool for listing Assets from multiple Cloud Providers.
Curated list of resources for security Governance, Risk Management, Compliance and Audit professionals and enthusiasts (if they exist).
Protect against malicious open source packages 🤖
🛡 Make safest code in Android. (基于libsodium实现chacha20算法,key在native中,防止被二次打包){长期维护,请star,勿fork}
A repository for ebooks, including C, C plus plus, Linux Kernel, Compiler, OS, Algorithm, Security, Database, Network, ML and DL
A modular and blazing fast runtime security tool for the IoT, powered by eBPF.
PCI-DSS compliant Debian 11/12 hardening
An HTTP/HTTPS intercept proxy written in Go.
最好用最智能最可控的目录Fuzz工具 | The most powerful, user-friendly, intelligent, and precise HTTP Fuzzer.
vet is a command-line tool that acts as a safety net for the risky curl | bash pattern. It lets you inspect, diff against previous versions, and lint...
A Blazing fast Security Auditing tool for Kubernetes
Verify apps easily.
Endo is a distributed secure JavaScript sandbox, based on SES
Web Application Firewall (WAF) package for Laravel
A simple remote tool in C#.
A task based API for taking screenshots and scraping text from websites.
RockYou2021.txt is a MASSIVE WORDLIST compiled of various other wordlists. RockYou2021.txt DOES NOT CONTAIN USER:PASS logins!
A manager for ssh-agent and gpg-agent
An intelligence gathering tool for hacking Bluetooth
in-toto is a framework to protect supply chain integrity.
Username enumeration and password spraying tool aimed at Microsoft O365.
Code-Audit-Challenges
Tools and packages that are used for countering forensic activities, including encryption, steganography, and anything that modify attributes. This al...
Your performance & security consultant, an artisan command away.
DevSkim is a set of IDE plugins, language analyzers, and rules that provide security "linting" capabilities.
Collection of Linux eBPF slides/documents.
The fast and secure Load Balancer / API Gateway / Reverse Proxy with built-in service discovery, GeoIP, WAF, bot protection and much more - https://pi...
A W.I.P Android Security Ref
Real-time, container-based file scanning at enterprise scale
JSON Web Token Hack Toolkit
BCrypt.Net - Bringing updates to the original bcrypt package
记录自己对《代码审计》的理解和总结,对危险函数的深入分析以及在p牛的博客和代码审计圈的收获
The most exhaustive list of reliable DNS resolvers.