Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
Avast JavaScript Interactive Shell
phpcs-security-audit is a set of PHP_CodeSniffer rules that finds vulnerabilities and weaknesses related to security in PHP code
Emotet detection tool for Windows OS
A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.
Scan your code for security misconfiguration, search for passwords and secrets. :mag:
:vertical_traffic_light:Web Application Firewall or API Gateway(应用防火墙/API网关)
Steeltoe samples and reference application collection
Passive API key and secret discovery browser extension for Chrome and Firefox. 80+ detection patterns, zero config.
Tools, scripts and tips useful during Penetration Testing engagements.
0day安全_软件漏洞分析技术
A security extension for devise, meeting industry-standard security demands for web applications.
Diffy is a triage tool used during cloud-centric security incidents, to help digital forensics and incident response (DFIR) teams quickly identify sus...
All in One Recon Tool for Bug Bounty
Linux privilege escalation exploit via snapd (CVE-2019-7304)
A curated list of awesome serverless security resources such as (e)books, articles, whitepapers, blogs and research papers.
Exploit allowing you to read registry hives as non-admin on Windows 10 and 11
JSshell - JavaScript reverse/remote shell
An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.
Automation and Scaling of Digital Forensics Tools
An example Node.js Relying Party implementation of the WebAuthn specification
Home of the dionaea honeypot
Scheme flooding vulnerability: how it works and why it is a threat to anonymous browsing
Repository to store what we have studied. :book: We want everyone to get a job through TechnicalNote.
Simplify Your Secrets
Firefox's Lockwise app for Android
:books:Translate the distinct technical blogs. Please star or watch. Welcome to join me.
Easily connect to and switch between, OpenVPN servers hosted by NordVPN on Linux (+patch leakes)
coyim - a safe and secure chat client
Web Application Security Scanner
Curiefense is a unified, open source platform protecting cloud native applications.
Zip Slip Vulnerability (Arbitrary file write through archive extraction)
:lock: Secure localStorage data with high level of encryption and data compression
all paths lead to clouds
GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.
Open Source Security Guide. Learn all about Security Standards, Frameworks, Threat Models, Encryption, and Benchmarks.
http://firewalla.com
Send a welcome notification to new users
ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.
Auto Scanning to SSL Vulnerability
A Security Framework for Python applications featuring Authorization (rbac permissions and roles), Authentication (2fa totp), Session Management and a...
OCI (Open Containers Initiative) compatible runtime using Virtual Machines
mXtract - Memory Extractor & Analyzer
Whonix is an operating system focused on anonymity, privacy and security. It's based on the Tor anonymity network, Debian GNU/Linux and security by is...
Hacker, ready for more of our story ! 🚀
A pure Python steganography module.
:white_check_mark: .NET crypto done right. Professionally audited.
wolfMQTT is a small, fast, portable MQTT client implementation, including support for TLS 1.3.
CMS渗透测试框架-A CMS Exploit Framework
Two-factor authentication for Symfony applications 🔐
Raspberry PI-TIMOLO ( PI-TImelapse, MOtion, LOwLight ) uses RPI picamera and OpenCV for Remote Headless Security Monitoring using Motion Tracking, Rcl...