Most popular security repositories and open source projects

Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.

ufw-docker

To fix the Docker and UFW security flaw without disabling iptables

259   2936   2936  

dumb-password-rules

A compilation of sites with dumb password rules.

291   2919   2919  

solution-architecture-patterns

Reusable, vendor-neutral, industry-specific, vendor-specific solution...

513   2919   2919  

vulmap

Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且...

537   2904   2904  

blokada

The official repo for Blokada apps.

203   2903   2903  

vulscan

Advanced vulnerability scanning with Nmap NSE

635   2900   2900  

django-DefectDojo

DefectDojo is a DevSecOps and vulnerability management tool.

1338   2878   2878  

pentest-tools

A collection of custom security tools for quick needs.

780   2867   2867  

ssl-kill-switch2

Blackbox tool to disable SSL certificate validation - including certif...

457   2834   2834  

botnets

This is a collection of #botnet source codes, unorganized. For EDUCATI...

707   2820   2820  

express-gateway

A microservices API Gateway built on top of Express.js

340   2818   2818  

WebHackersWeapons

⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hacke...

566   2800   2800  

streamalert

StreamAlert is a serverless, realtime data analysis framework which em...

344   2785   2785  

gau

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback M...

351   2761   2761  

honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-dri...

513   2746   2746  

hubble

Hubble - Network, Service & Security Observability for Kubernetes usin...

199   2729   2729  

bluemonday

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java H...

166   2725   2725  

kscan

Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,...

399   2712   2712  

bless

Repository for BLESS, an SSH Certificate Authority that runs as a AWS...

232   2699   2699  

awesome-threat-detection

✨ A curated list of awesome threat detection and hunting resources 🕵️‍...

535   2669   2669  

inspec

InSpec: Auditing and Testing Framework

680   2661   2661  

Scumblr

Web framework that allows performing periodic syncs of data sources an...

335   2647   2647  

itsdangerous

Safely pass trusted data to untrusted environments and back.

215   2647   2647  

kubernetes-security-best-practice

Kubernetes Security - Best Practice Guide

251   2646   2646  

chipsec

Platform Security Assessment Framework

552   2644   2644  

tracee

Linux Runtime Security and Forensics using eBPF

308   2596   2596  

badssl.com

:lock: Memorable site for testing clients against bad SSL configs.

197   2587   2587  

WWDC

You don't have the time to watch all the WWDC session videos yourself?...

143   2582   2582  

cloudsploit

Cloud Security Posture Management (CSPM)

587   2568   2568  

bundler-audit

Patch-level verification for Bundler

234   2564   2564  

FedML

FedML - The federated learning and analytics library enabling secure a...

604   2547   2547  

user.js

user.js -- Firefox configuration hardening

242   2543   2543  

node-rate-limiter-flexible

Count and limit requests by key with atomic increments in single proce...

137   2531   2531  

bettercap

DEPRECATED, bettercap developement moved here: https://github.com/bett...

367   2504   2504  

RE-iOS-Apps

A completely free, open source and online course about Reverse Enginee...

341   2499   2499  

jasypt-spring-boot

Jasypt integration for Spring boot

457   2490   2490  

OpenSK

OpenSK is an open-source implementation for security keys written in R...

251   2476   2476  

SecretScanner

:unlock: :unlock: Find secrets and passwords in container images and f...

197   2474   2474  

shynet

Modern, privacy-friendly, and detailed web analytics that works withou...

144   2459   2459  

hardentools

Hardentools simply reduces the attack surface on Microsoft Windows com...

249   2451   2451  

openrasp

🔥Open source RASP solution

584   2444   2444  

dalfox

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on...

319   2443   2443  

AppInfoScanner

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、...

349   2436   2436  

oletools

oletools - python tools to analyze MS OLE2 files (Structured Storage,...

531   2435   2435  

awesome-vehicle-security

🚗 A curated list of resources for learning about vehicle security and...

564   2425   2425  

Nettacker

Automated Penetration Testing Framework - Open-Source Vulnerability Sc...

642   2424   2424  

TextAttack

TextAttack 🐙 is a Python framework for adversarial attacks, data augm...

324   2409   2409  

lldap

Light LDAP implementation

91   2393   2393  

block

Let's make an annoyance free, better open internet, altogether!

192   2386   2386  

i2pd

🛡 I2P: End-to-End encrypted and anonymous Internet

380   2382   2382