Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
ClearURLs is an add-on based on the new WebExtensions technology and will automatically remove tracking elements from URLs to help protect your privac...
Free Security and Hacking eBooks
eBPF-based Security Observability and Runtime Enforcement
w3af: web application attack and audit framework, the open source web vulnerability scanner.
Open-Source Unified Vulnerability Management, DevSecOps & ASPM
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for...
Aya is an eBPF library for the Rust programming language, built with a focus on developer experience and operability.
Unlock an Android phone (or device) by bruteforcing the lockscreen PIN. Turn your Kali Nethunter phone into a bruteforce PIN cracker for Android devic...
✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
security tips for startups
An Efficient Enterprise-class Container Engine
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build...
Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at m...
Secure internet sharing made simple.
Dark Web OSINT Tool
The Leading Security Assessment Framework for Android.
Knowledge Base 慢雾安全团队知识库
Linux Runtime Security and Forensics using eBPF
Fully featured, open source, privacy friendly email app for Android
Cerbos is the open core, language-agnostic, scalable authorization solution that makes user permissions and authorization simple to implement and mana...
Популярные HTML / CSS / JavaScript / ECMAScript / TypeScript / React / Vue / Angular / Node вопросы на интервью и ответы на них (https://tinyurl.com/w...
A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.
A binary authorization and monitoring system for macOS
CTF竞赛权威指南
An OOB interaction gathering server and client library
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
🚗 A curated list of resources for learning about vehicle security and car hacking.
List of Awesome CobaltStrike Resources
:key: Cross-Platform Passwords & Secrets Vault
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.
Collection of the cheat sheets useful for pentesting
CISO Assistant is a one-stop-shop GRC platform for Risk Management, AppSec, Compliance & Audit, TPRM, BIA, Privacy, and Reporting. It supports 150+ gl...
Hubble - Network, Service & Security Observability for Kubernetes using eBPF
🧰 A zero trust swiss army knife for working with X509, OAuth, JWT, OATH OTP, etc.
Web-Security-Learning
Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种...
🐊 Policy Controller for Kubernetes
SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
Mythril is a symbolic-execution-based securty analysis tool for EVM bytecode. It detects security vulnerabilities in smart contracts built for Ethereu...
A collected list of awesome security talks
Tamper Dev is an extension that allows you to intercept and edit HTTP/HTTPS requests and responses as they happen without the need of a proxy. Works a...
AI-safe .env files: Schemas for agents, Secrets for humans.
Knock Subdomain Scan
Valet lets you securely store data in the iOS, tvOS, watchOS, or macOS Keychain without knowing a thing about how the Keychain works. It’s easy. We pr...
🛡 I2P: End-to-End encrypted and anonymous Internet
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DN...