Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primari...
Free Elasticsearch security plugin and Kibana security plugin: super-easy Kibana multi-tenancy, Encryption, Authentication, Authorization, Auditing
Ansible Role - Security
Angora is a mutation-based fuzzer. The main goal of Angora is to increase branch coverage by solving path constraints without symbolic execution.
Generate links that users can use to submit messages encrypted with your public key.
Pytools: Some useful tools written by pure python.
The LinuxBoot project is working to enable Linux to replace your firmware on all platforms.
🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks
Open Security Controls Assessment Language (OSCAL)
Open-Source Security Architecture | 开源安全架构
🔑 Free Offline-first Password Manager
Platform-Agnostic Security Tokens implementation in GO (Golang)
一个方便安全研究人员获取每日安全日报的爬虫和推送程序,目前爬取范围包括先知社区、安全客、Seebug Paper、跳跳糖、奇安信攻防社区、棱角社区以及绿盟、腾讯玄...
Infosec Wordlists and more.
Pure PHP polyfill for ext/sodium
(Formerly Solium) Code quality & Security Linter for Solidity
A vulnerable version of Rails that follows the OWASP Top 10
Project Calico's per-host agent Felix, responsible for programming routes and security policy.
Dangerously fast DNS/network/port scanner
A stupid game for learning about containers, capabilities, and syscalls.
Historical Windows temporal memory-state research artifact for studying time-bound memory observations, validation limits, and defensive visibility.
Automate creating resilient, disposable, secure and agile infrastructure for Red Teams.
Open Source Tripwire®
HULK DoS tool ported to Go with some additional features.
[DEPRECATED] Detect threats with log data and improve cloud security posture
The Hitchhiker’s Guide to Online Anonymity
Digital Forensics Investigation Platform
NetCat for Windows
Run programs on linux with selectively restricted permissions.
🦄🔒 Awesome list of secrets in environment variables 🖥️
ZAP Add-ons
The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.
Java RMI Vulnerability Scanner
OpenID, OAuth 2.0, SCIM2.0, UMA2.0, FAPI, CIBA & OPENBANKING Framework for ASP.NET Core
The best authentication plugin for the Bukkit/Spigot API!
OpenZeppelin Contracts written in Cairo for Starknet, a decentralized ZK Rollup
Smart Contract Weakness Classification and Test Cases
Automated HTTP Request Repeating With Burp Suite
Share passwords securely
umbrella project for emulation of smart card readers or smart cards
Network packet and pcap file crafting/sniffing/manipulation/visualization security tool. Originally forked from scapy in 2015 and providing python3 co...
Set content security policy headers in a Laravel app
被动式漏洞扫描系统
macOS keychain cracking tool
A flexible, driver based Acl package for PHP 5.4+
Some of my security stuff and vulnerabilities. Nothing advanced. More to come.
A Suite of Tools written in Python for wireless auditing and security testing.
Stunner is a tool to test and exploit STUN, TURN and TURN over TCP servers.
:satellite: A Mac menubar app that notifies you whenever SSH, VNC, sudo, or other auth events occur.
A curated list of adversarial attacks and defenses papers on graph-structured data.