E.System.Security
E.System.Security is an actively developed library for .NET that simplifies integrating your microservices with a Service Mesh and provides enterprise-grade se
Enter
Web Security Basics
Web Security Basics is a beginner-friendly review of essential web security concepts that equips web developers with foundational knowledge about protecting ap
Enter
security-headers
Zero-dependency Node.js CLI that grades a website's HTTP security headers (HSTS, CSP, X-Frame-Options and more) from A+ to F. Flags dangerous CSP values an
Enter
Guia de Cyber Security
Guia de Cyber Security is a cybersecurity learning guide for people entering or specializing in information security. It collects study resources, tools, caree
Enter
Security VMS
Features: Intuitive, Responsive and Resource-effective . This is an application that can also be fetched from https: //sourceforge.net/projects/security-vms/.
Enter
SCAP Security Guide
The purpose of this project is to create security policy content for various platforms, Red Hat Enterprise Linux, Fedora, Ubuntu, Debian, SUSE Linux Enterprise
Enter
Symfony Security Core
Part of the Symfony framework, the Security Core component provides the foundational tools for managing authentication, authorization, and access control in PH
Enter
Spring Security
Spring Security is a powerful and highly customizable authentication and access-control framework. It is the de-facto standard for securing Spring-based applic
Enter
spring-security-jwt-guide
This project is a comprehensive example repository that demonstrates how to secure a Spring Boot application using Spring Security and JSON Web Tokens (JWT). I
Enter
OWASP Find Security Bugs
The SpotBugs plugin for security audits of Java web applications. Find Security Bugs is the SpotBugs plugin for security audits of Java web applications. It ca
Enter
security-audit
security-audit is a coding-agent skill for running structured security audits on software repositories. It organizes the audit into multiple phases so the agen
Enter
Claude Code Security Review
The claude-code-security-review repository implements a GitHub Action that uses Claude (via the Anthropic API) to perform semantic security audits of code chan
Enter
Symfony Security Bundle
Symfony Security Bundle is a powerful tool for adding authentication and authorization to Symfony applications. It provides mechanisms for managing user roles,
Enter
Agentic Security
The open-source Agentic LLM Vulnerability Scanner. Features: Customizable Rule Sets or Agent based attacksDocumentation availableExamples availableComprehensiv
Enter
FMSec - File Manager Security
FMSec (File Manager SECurity) is a set of extensions to file managers that enable some security-related operations to be easily performed. The operations are:
Enter
Code Quality and Security for Java
Hundreds of unique rules to find Java bugs, code smells & vulnerabilities. Sonar static analysis helps you build and maintain high-quality Java code. Cover
Enter
KubeArmor
KubeArmor is a runtime Kubernetes security engine. It uses eBPF and Linux Security Modules(LSM) for fortifying workloads based on Cloud Containers, IoT/Edge, a
Enter
Docker Scout CLI
Designed to identify security issues, outdated packages, and potential compliance problems within container images, Docker Scout surfaces dependency vulnerabil
Enter
Shuffle Automation
Shuffle is an open-source security automation platform built for security teams, MSSPs, and service providers. It helps teams connect tools, automate repetitiv
Enter
Stacklok Minder
Minder by Stacklok is an open source platform that helps development teams and open source communities build more secure software, and prove to others that wha
Enter
Cloud Scanner of Death
Cloud Scanner of Death is a professional-grade cloud security assessment tool designed to identify vulnerabilities, misconfigurations, and compliance issues ac
Enter
fsociety
fsociety is a modular penetration testing framework designed to provide a unified interface for running and managing a wide range of security tools. It focuses
Enter
secator
Secator is a task and workflow runner designed to streamline security assessments by integrating many well-known penetration testing and reconnaissance tools i
Enter
CodeBurn
CodeBurn is a security-focused tool designed to evaluate and stress-test codebases using adversarial techniques, often leveraging AI to identify vulnerabilitie
Enter
deepsec
deepsec is an agent-powered security harness for finding vulnerabilities in large codebases. It is designed to run on the user’s own infrastructure, using codi
Enter
Tracee
Tracee is a runtime security and observability tool that helps you understand how your system and applications behave. It is using eBPF technology to tap into
Enter
Windows Defender Remover
This is a command?line tool and executable that fully disables or removes Microsoft Defender and associated Windows security components. It disables the Window
Enter
Tsunami
Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence. When s
Enter
Arkime
Arkime is an open source, large-scale, full packet capturing, indexing, and database system designed to augment existing security infrastructure by storing and
Enter
Custom Erase Algorithm by Mariano Ortu
This project provides a secure file deletion algorithm designed to permanently erase data by overwriting files with customizable patterns. It ensures that dele
Enter
Obscura
Obscura is a security-focused project aimed at providing tools and techniques for enhancing privacy, anonymity, and operational security in digital environment
Enter
Algo VPN
Introducing Algo, a self-hosted personal VPN server designed for ease of deployment and security. Algo automatically deploys an on-demand VPN service in the cl
Enter
tirreno
tirreno is a security framework. tirreno [tir.?r?.no] helps understand, monitor, and protect your product from threats, fraud, and abuse. While classic cyberse
Enter
OSCAL
NIST is developing the Open Security Controls Assessment Language (OSCAL), a set of hierarchical, XML-, JSON-, and YAML-based formats that provide a standardiz
Enter
Infosec Reference
Infosec Reference is a curated knowledge base and resource repository for information security practitioners. It aggregates cheat sheets, tooling guides, proto
Enter
Sploitware
Sploitware is a curated repository that maps the world of exploit development, offensive security, and binary exploitation into organized learning material. It
Enter
firejail
Firejail is a SUID program that reduces the risk of security breaches by restricting the running environment of untrusted applications using Linux namespaces a
Enter
PentestAgent
PentestAgent is an open-source autonomous security testing platform designed to help organizations identify vulnerabilities and assess security posture by simu
Enter
Anthropic Cybersecurity Skills
Anthropic Cybersecurity Skills is a collection of structured prompts, tools, and workflows designed to enhance the cybersecurity capabilities of AI systems. It
Enter
Simple Event Correlator
Simple Event Correlator (SEC) is a lightweight event correlator for network management, log file monitoring, security management, fraud detection, and other ta
Enter
Is Website Vulnerable
A command-line tool that scans websites for known security vulnerabilities in their frontend dependencies by checking against the Snyk vulnerability database.
Enter
Cr3dOv3r
Cr3dOv3r is a penetration testing and security auditing tool designed to demonstrate and analyze the risks associated with credential reuse across multiple onl
Enter
fleet
Fleet exposes familiar concepts from traditional MDMs like custom attributes and dynamic grouping, but in a way that lets you work directly with data and event
Enter
EMBA
EMBA is designed as the central firmware analysis tool for penetration testers and product security teams. It supports the complete security analysis process s
Enter
Vault
Manage secrets and protect sensitive data. Secure, store and tightly control access to tokens, passwords, certificates, encryption keys for protecting secrets
Enter
CodeQL
CodeQL is a semantic code analysis engine that treats programs as queryable databases, enabling users to write expressive queries that identify security vulner
Enter
GuardDog
guarddog is an open-source security tool by DataDog designed to detect risks in open-source dependencies. It helps developers analyze software supply chain ris
Enter
XRAY
XRAY is a modular security toolset that helps developers and security professionals analyze, fuzz, and test web applications, protocols, and network services f
Enter
OWASP Amass
The OWASP Amass Project has developed a tool to help information security professionals perform network mapping of attack surfaces and perform external asset d
Enter
Paseto
Paseto (Platform-Agnostic Security Tokens) is an open-source security token format designed as a more secure alternative to JWT (JSON Web Tokens). Unlike JWT,
Enter
Claw Hunter
Claw Hunter is an open-source security tool designed to detect, analyze, and mitigate risks associated with autonomous AI agents, specifically those built on p
Enter
SecurityHeaderAudit
SecurityHeaderAudit is a beginner-friendly defensive security tool that checks websites for common HTTP security headers and reports missing protections. Categ
Enter
var-lib-apt-lists
This is an application that can also be fetched from https: //sourceforge.net/projects/var-lib-apt-lists/. It has been hosted in OnWorks in order to be run onl
Enter
Laravel CSP
By default, all scripts on a webpage are allowed to send and fetch data to any site they want. This can be a security problem. Imagine one of your JavaScript d
Enter
wpa-dictionary
wpa-dictionary is a Wi-Fi security wordlist repository focused on WPA and WPA2 password auditing. It collects several password dictionary files that can be use
Enter
Digital Signer (a PDF Signing software)
Digital Signer is a powerful and user-friendly software designed to secure and authenticate your digital documents with ease. Ideal for individuals, businesses
Enter
PoisonTap
PoisonTap is a security research project that demonstrates risks involving USB networking, locked computers, browser sessions, and internal network exposure. I
Enter
SIPVicious
SIPVicious OSS has been around since 2007 and is actively updated to help security teams, QA and developers test SIP-based VoIP systems and applications. Open-
Enter
Sec-Context
Sec-Context is a curated security research project that distills common code anti-patterns and vulnerabilities that generative AI tends to produce, presenting
Enter
Wazuh
Wazuh is an open-source, unified security platform that delivers extended detection and response (XDR) and SIEM capabilities for on-premises, cloud, container,
Enter
pwd.sh
pwd.sh is a lightweight command-line utility designed to generate strong, secure passwords using simple and reproducible methods directly from the terminal. Th
Enter
Claude BugHunter
Claude-BugHunter is a Claude Code skill bundle focused on bug hunting, security testing, and external red-team research workflows. It packages a large collecti
Enter
CookieGuardAudit
CookieGuardAudit is a simple Python command-line security tool that checks a website's cookies for common security flag issues. It helps users quickly spot
Enter
CyberStrikeAI
CyberStrikeAI is an AI-native security testing platform built in Go that brings autonomous penetration testing, vulnerability discovery, and attack chain analy
Enter
Tailsnitch
tailsnitch is a security auditing tool for Tailscale networks (tailnets) that scans configurations and device setups to detect risky or overly permissive setti
Enter
Lighthouse Ethereum
Lighthouse is an Ethereum consensus client that connects to other Ethereum consensus clients to form a resilient and decentralized proof-of-stake blockchain. L
Enter
AWS EKS Terraform module
Terraform module which creates AWS EKS (Kubernetes) resources. Windows-based node support is limited to a default user data template that is provided due to th
Enter
url-checker-php-sdk
The EmailVeritas URL Checker PHP SDK provides real-time phishing and malicious link detection through the official EmailVeritas API. It enables developers to c
Enter
thc-hydra
Number one of the biggest security holes are passwords, as every password security study shows. This tool is a proof of concept code, to give researchers and s
Enter
Nebular
Nebular is a customizable Angular UI library that contains 40+ UI components, four visual themes, and Auth and Security modules. Recognized at the prestigious
Enter
Null-CLi
NullSquare is an AI-powered security platform that can do both penetration testing and compliance auditing. Features: pentestingcompliance auditcode review Au
Enter
Spring Boot Demo
This repository is a hands-on, “deep learning by doing” collection of Spring Boot demos that you can run and study module by module. It currently includes 66 p
Enter
Trivy Operator
The Trivy Operator leverages Trivy to continuously scan your Kubernetes cluster for security issues. The scans are summarised in security reports as Kubernetes
Enter
Sigma
Welcome to the Sigma main rule repository. The place where detection engineers, threat hunters and all defensive security practitioners collaborate on detectio
Enter
Falco
Falco is a open source project to detect abnormal application behavior in a cloud native environment like Kubernetes. This cloud native runtime security projec
Enter
BrowserBox
Remote isolated browser API for security, automation visibility and interactivity. Run-on our cloud, or bring your own. Full scope double reverse web proxy wit
Enter
Raccoon
Raccoon is a high-performance offensive security tool designed to assist with reconnaissance and vulnerability scanning during penetration testing and security
Enter
bearer
Welcome to the Bearer documentation. Bearer is a static application security testing (SAST) tool that scans your source code and analyzes your data flows to di
Enter
nuclei
Nuclei is used to send requests across targets based on a template, leading to zero false positives and providing fast scanning on a large number of hosts. Nuc
Enter
HexStrike AI MCP Agents
HexStrike AI is an MCP server that lets LLM agents autonomously operate a large catalog of offensive-security tools. Its goal is to bridge “language models” an
Enter
NPQ
npq is a security-focused package manager that analyzes npm dependencies for potential vulnerabilities before installation. It helps developers ensure the safe
Enter
Trail of Bits Skills Marketplace
Trail of Bits Skills Marketplace is a specialized Claude Code skills marketplace built by the security research firm Trail of Bits that focuses on enhancing AI
Enter
Go Safe Web
go-safeweb is a security-focused HTTP framework for Go that bakes in secure defaults so common web vulnerabilities are harder to introduce. Instead of leaving
Enter
Vulnhuntr
Vulnhuntr is an open source security tool that uses large language models to analyze codebases and identify remotely exploitable vulnerabilities. It focuses on
Enter
BigBountyRecon
BigBountyRecon is an open source reconnaissance tool designed to assist security researchers, penetration testers, and bug bounty hunters during the early stag
Enter
Application Inspector
Microsoft Application Inspector is a software source code characterization tool that helps identify coding features of first or third party software components
Enter
DEVIL FISH
Devil-Fish is a Windows application for analyzing Portable Executable (PE) files such as EXE and DLL files. It provides information about the file structure, s
Enter
LLM Guard
LLM Guard is an open-source security toolkit designed to protect large language model applications from various security risks and adversarial attacks. The lib
Enter
Arcjet
Arcjet helps developers protect their apps in just a few lines of code. Implement rate limiting, bot protection, email verification, and defense against common
Enter
Bandit
Bandit is a tool designed to find common security issues in Python code. To do this, Bandit processes each file, builds an AST from it, and runs appropriate pl
Enter
Passbolt API
Passbolt API is an open-source password manager designed for teams. It allows users to securely store and share passwords using end-to-end encryption. Passbolt
Enter
Mobile Verification Toolkit
Mobile Verification Toolkit (MVT) is a collection of utilities to simplify and automate the process of gathering forensic traces helpful to identify a potentia
Enter
Lexik JWT Authentication Bundle
LexikJWTAuthenticationBundle is a Symfony bundle that provides JWT (JSON Web Token) authentication for RESTful APIs. It simplifies the process of generating an
Enter
Universal Intel Wi-Fi BT Drivers Updater
Universal Intel Wi-Fi & Bluetooth Drivers Updater automatically detects Intel wireless hardware and installs the latest official drivers with enterprise-gr
Enter
windows_hardening
This repository, also known as HardeningKitty, is a comprehensive Windows hardening checklist for personal and enterprise environments. It translates security
Enter
SafeBox
A free and Open-Source File Encryption and Decryption app with GUI (Graphical User Interface) and CLI (Command Line Interface) that help you to protect your pr
Enter
MagSpoof
MagSpoof is a hardware and security research project that demonstrates magnetic stripe emulation. It was created to explore how magnetic stripe systems work an
Enter
Anya
Anya is a privacy-first static malware analysis tool for Windows, Linux, and macOS. It combines PE, ELF, and Mach-O binary analysis with MITRE ATT&CK mappi
Enter
Exploitarium
Exploitarium is a consolidated archive of public proof-of-concept vulnerability research and exploit writeups. It gathers older standalone research repositorie
Enter
Django Hijack
With Django Hijack, admins can log in and work on behalf of other users without having to know their credentials. 3.x docs are available in the docs folder. Th
Enter
malware_training_vol1
malware_training_vol1 is an educational repository for Windows malware analysis training. It is designed to help learners understand common malware techniques
Enter
SonarQube
SonarQube empowers all developers to write cleaner and safer code. Thousands of automated Static Code Analysis rules, protecting your app on multiple fronts, a
Enter
nebula
Nebula is a scalable overlay networking tool with a focus on performance, simplicity and security. It lets you seamlessly connect computers anywhere in the wor
Enter
truffleHog
truffleHog searches through git repositories for high entropy strings and secrets, digging deep into commit history. TruffleHog runs behind the scenes to scan
Enter
readpe
readpe (formerly known as pev) is a multiplatform toolkit to work with PE (Portable Executable) binaries. Its main goal is to provide feature-rich tools for pr
Enter
Master Spring and Spring Boot
Master Spring and Spring Boot is a comprehensive educational project that teaches how to build enterprise-grade Java applications using the Spring ecosystem. I
Enter
DeathStar
DeathStar is a Python-based red-team automation project that integrates with the Empire REST API for Active Directory security assessment. Its main purpose is
Enter
Lantern
Can't access your favorite apps? Download Lantern to easily access videos, messaging, and other popular apps while at school or work. Lantern is an applica
Enter
Rancher
From datacenter to cloud to edge, Rancher lets you deliver Kubernetes-as-a-Service. Rancher is a complete software stack for teams adopting containers. It addr
Enter
Defending Code Reference Harness
Defending Code Reference Harness is a reference implementation for autonomous vulnerability discovery and remediation with Claude. It is designed for security
Enter
Stegcore
Stegcore combines cryptography and steganography to hide encrypted data inside ordinary files. It encrypts your payload before embedding it, so the hidden cont
Enter
Wapiti
Wapiti is a vulnerability scanner for web applications. It currently search vulnerabilities like XSS, SQL and XPath injections, file inclusions, command execut
Enter
BurpSuite for Pentester
BurpSuite for Pentester is a structured learning repository for web application security testing with Burp Suite. It is designed for penetration testers, bug b
Enter
The Book of Secret Knowledge
The Book of Secret Knowledge is a large curated knowledge base for developers, system administrators, security learners, and technical power users. It collects
Enter
SkillSpector
SkillSpector is a security scanner built to evaluate AI agent skills before they are installed or trusted. It helps teams inspect skills used by tools such as
Enter
Privilege-Escalation
Privilege Escalation is a practical cybersecurity reference for learning how attackers gain higher permissions after obtaining initial access to a system. It i
Enter
Full Stack Computer Scanner
The Full Stack Computer Scanner is a read-only Windows security diagnostics tool for system awareness. No ads. No accounts. No data collection. Fully offline.
Enter
Ajv JSON schema validator
Security and reliability for JavaScript applications. Ensure your data is valid as soon as it's received. Instead of having your data validation and saniti
Enter
Heartbleed
Heartbleed contains a compact, purpose-built implementation for detecting the infamous Heartbleed vulnerability in OpenSSL’s TLS heartbeat extension (CVE-2014-
Enter
SpringBoot Labs
SpringBoot-Labs is a comprehensive learning and reference repository created by yudaocode that explores advanced concepts, features, and best practices in Spri
Enter
NextDNS
NextDNS protects you from all kinds of security threats, blocks ads and trackers on websites and in apps and provides a safe and supervised Internet for kids,
Enter
OmniEdge
OmniEdge is an Open source p2p layer 2 , zero-config mesh VPN infrastructure, a traditional VPN, AWS VPC, Ngrok, DDNS alternative. No central server, easy to s
Enter
SpringAll
SpringAll is a comprehensive learning project that gathers a wide range of Spring, Spring Boot, and Spring Cloud demos in one repository. It is designed for de
Enter
Single Web Page to Edit any MySQL table
Add a single web page to edit any mysql table. Just put in the DB credentials, the file handles the rest. Optionally: * Put the credentials in a secure /etc/ f
Enter
Username Anarchy
Username Anarchy is an open source command line tool designed to generate possible usernames for use in penetration testing and security assessments. It focuse
Enter
Skill Scanner
This repository is a public security-focused scanning tool intended to analyze and assess AI agent skills for potential issues, quality concerns, and vulnerabi
Enter
Al-Khaser
al-khaser is an open-source proof-of-concept security tool that deliberately implements techniques commonly used by real-world malware to test and evaluate the
Enter
LINKERD
Enterprise power without enterprise complexity. Linkerd adds security, observability, and reliability to any Kubernetes cluster. 100% open source, CNCF graduat
Enter
Harpoon
Harpoon is a command line tool designed to assist with open source intelligence (OSINT) and threat intelligence investigations. It helps security professionals
Enter
Awesome Stars
awesome-hacking-lists is a curated directory of penetration-testing tools and productivity utilities spanning multiple security domains. Curated lists across m
Enter
InQL Scanner
A security testing tool to facilitate GraphQL technology security auditing efforts. InQL can be used as a stand-alone script or as a Burp Suite extension. Sinc
Enter
Pterodactyl Panel
Pterodactyl® is a free, open-source game server management panel built with PHP, React, and Go. Designed with security in mind, Pterodactyl runs all game serve
Enter
Monkey Code
Monkey Code is an enterprise-grade AI programming assistant designed to transform how development teams collaborate, build, and manage code across complex envi
Enter
CloudQuery
CloudQuery extracts, transforms and loads your cloud assets into normalized PostgreSQL tables. CloudQuery enables you to assess, audit, and monitor the configu
Enter
Conscrypt
Conscrypt is a modern TLS/SSL provider for Java that replaces the default JCE/JCA crypto stack with one backed by BoringSSL for better performance and security
Enter
ByteHook
ByteHook is a ByteDance-hosted project whose name suggests a hooking or instrumentation library, likely used for hooking system calls or API calls for monitori
Enter
uncover
Uncover is an open source reconnaissance tool designed to quickly discover exposed hosts on the internet by querying multiple search engine APIs through a unif
Enter
gitGraber
gitGraber is a Python-based security tool designed to monitor GitHub in real time to detect exposed sensitive information in publicly indexed repositories. It
Enter
CrossLinked
CrossLinked is an open source LinkedIn enumeration tool designed to collect employee names associated with a target organization. Instead of accessing LinkedIn
Enter
Domain Password Spray
DomainPasswordSpray is a focused security tool designed to perform enterprise-scale password spraying assessments against Active Directory environments. It aut
Enter
Cyber Ghost — Scanner
CyberGhost Code Scanner — Smart Malware Detection for Developers CyberGhost Code Scanner is a powerful, all-in-one executable tool designed for source code and
Enter
MagicUSB
### Magic USB (2014) A security experiment I made when I was 17. It shuts down the PC when a USB flash drive is inserted. Unfortunately, it does not shut down
Enter
NGINX Admin’s Handbook
nginx-admins-handbook is a practical, in-depth guide for configuring, securing, and operating NGINX across real-world deployments. It distills years of researc
Enter
ProxyCrypt
ProxyCrypt is a command line tool that creates encrypted volumes within a file or a hard drive. Encryption and decryption are made on the fly, allowing you to
Enter
koa-helmet
koa-helmet is a wrapper for helmet to work with koa. It provides important security headers to make your app more secure by default. Features: Usage is the sam
Enter
SHS VPN Client
VPN client for Small HTTP server Small HTTP server includes a VPN server that works on the https protocol. This is a client application for this server. Featur
Enter
SipLine
SipLine is a modern, lightweight SIP softphone for Windows 10/11 built with .NET 9 WPF. It provides enterprise-grade VoIP communication with a focus on perform
Enter
ClamSAP
ClamSAP exists of two 'C' shared libraries which link between ClamAV and the Virus Scan Interface (VSI) of SAP (offical name: NW-VSI). A SAP applicatio
Enter
knokspack
**WP Site Suite is the only plugin you need to manage and supercharge your WordPress site.** Tired of juggling dozens of plugins for security, performance, mar
Enter
Docker-OSX
Run Mac OS X in Docker with near-native performance! X11 Forwarding. iMessage security research! iPhone USB working! macOS in a Docker container. Features: Con
Enter
badpi-cyphering
encryption/decryption/key generation/CRC. You may use as a library (header *.hpp files) . Features: symetric key algorithmdifficult Cryptanalysiszero knowledge
Enter
Tutanota
Tutanota is an open source email client focused on security and privacy. It is built with end-to-end encryption and 2FA, so you can be assured of utmost email
Enter
Universal Intel Chipset Device Updater
Universal Intel Chipset Device Updater is an advanced, security-focused tool that automatically detects your Intel hardware and installs the latest official ch
Enter
tracecat
Tracecat is an open-source Tines / Splunk SOAR alternative for security engineers. We're building the features of Tines using enterprise-grade open-source
Enter
Coin Wallet
Coin Wallet is a non-custodial multicurrency wallet for multiple platforms. A secure, user-friendly cryptocurrency wallet focused on providing essential featur
Enter
Mega OS (Old Versions only)
Mega OS is an advanced operating system designed to provide a comprehensive and user-friendly computing experience. It incorporates a wide range of features an
Enter
encrypt
encrypt is a multi-platform, file encryption application. Binary packages are currently provided for Arch, Debian, Fedora, MS Windows, Android and OS X. For fu
Enter
wolfi
Unofficial community packages for Wolfi Linux This project provides APK packages for applications not yet available in the official Wolfi repositories, with fo
Enter
WhatWeb
WhatWeb is a Ruby-based web scanner for fingerprinting websites. It identifies CMS, server technologies, JavaScript frameworks, and other characteristics by an
Enter
USBShield
USBShield stands out as a free and open-source option for users seeking security against unauthorized USB access. Unlike many competing paid solutions, it offe
Enter
PrivateBin
PrivateBin is a minimalist, open-source online pastebin that allows users to securely share text data. It encrypts the content client-side, ensuring that no on
Enter
Cloudflare Worker JWT
cloudflare-worker-jwt is a JavaScript library for handling JSON Web Tokens (JWTs) inside Cloudflare Workers. It enables authentication, token validation, and s
Enter
Advanced-Root-Checker
Advanced Root Checker is a free, open-source Android app that detects if your device has been rooted. All 34 checks run entirely offline on your device.No data
Enter
Wabe
Wabe is an open-source backend that allows you to create your own fully customizable backend in just a few minutes. It handles database access, automatic Graph
Enter
WPScan
WPScan is a black-box WordPress vulnerability scanner written in Ruby. It analyzes WordPress sites to identify outdated core, plugins, themes, exposed APIs, an
Enter
Namecoin Core
Namecoin Core is the reference implementation of Namecoin, a decentralized naming system based on the Bitcoin protocol. It allows users to register and manage
Enter
HackBrowserData
HackBrowserData is an open-source tool that could help you decrypt data ( password|bookmark|cookie|history|credit card|download|localStorage|extension ) from t
Enter
UltraSecure-Archiver
UltraSecure Archiver is a revolutionary file compression and encryption tool that combines cutting-edge compression algorithms with military-grade security. Bu
Enter
ScubaGear
ScubaGear is a PowerShell-based assessment tool developed by CISA to verify that Microsoft?365 tenant configuration aligns with Secure Cloud Business Applicati
Enter
ezXSS
ezXSS is an open-source XSS (Cross-Site Scripting) testing platform designed to help security researchers identify and collect XSS vulnerabilities. It acts as
Enter
ElAdmin
Eladmin is a modular, full-featured backend management system based on Spring Boot, Spring Security, JWT, and Vue.js. It provides a front-end and back-end sepa
Enter
VHR
VHR is a front-end/back-end separated human resources management system built with Spring Boot (back end) and Vue (front end), featuring common enterprise-leve
Enter
YubiKey Guide
The YubiKey-Guide by drduh is a community-maintained, in-depth tutorial and reference on how to use a YubiKey (hardware authentication token) with GPG, SSH, an
Enter
JMD5Sum
With JMD5Sum it is possible to calculate and/or compare two MD5 files and/or texts in just a few clicks. Once you have chosen the file or entered the text, cop
Enter
RustDesk
RustDesk is a full-featured open source remote control alternative for self-hosting and security with minimal configuration. Desktop versions use Flutter or Sc
Enter
pe_to_shellcode
pe_to_shellcode is a research-oriented tool that converts a Windows Portable Executable into a form that can be loaded from memory like shellcode. The resultin
Enter
HestiaCP
HestiaCP is an open-source web hosting control panel designed to manage web servers efficiently. It provides a simple and intuitive graphical interface to mana
Enter
TwitterOAuth
The most popular PHP library for use with the Twitter OAuth REST API. The recommended and easy as pie method is Composer. Setup require in your projects compos
Enter
RabbitRemoteControl
Rabbit Remote Control is a open-source, cross-platform, multi-protocol remote control software. Allows you to use any device and system in anywhere and remotel
Enter
Damn Vulnerable GraphQL Application
Damn Vulnerable GraphQL Application is an intentionally vulnerable implementation of Facebook's GraphQL technology, to learn and practice GraphQL Security.
Enter
Google Node.js Datastore
Google’s Node.js Datastore client is a library for interacting with Google Cloud Datastore, a fully managed NoSQL database. It enables developers to store and
Enter
Authlib
The ultimate Python library in building OAuth and OpenID Connect servers. Various built-in high-level framework integrations for both clients and servers, aimi
Enter
Soap
A SOAP client and server for node.js. This module lets you connect to web services using SOAP. It also provides a server that allows you to run your own SOAP s
Enter
Password Pusher
Give your users the tools to be secure by default. Password Pusher is an open source application to communicate passwords over the web. Links to passwords expi
Enter
Hubble
Hubble is a fully distributed networking and security observability platform for cloud native workloads. It is built on top of Cilium and eBPF to enable deep v
Enter
The Astrid Book
The Astrid Book is the canonical reference project for Astrid OS. It documents the kernel, capsule model, host ABI, bus, and security model in one structured t
Enter
React Native Auth0
With a few lines of code, you can have Auth0 integrated into any app written in any language, and any framework. We provide 30+ SDKs & Quickstarts to help
Enter
Zuul
Zuul is an L7 application gateway that offers many capabilities, including dynamic routing, monitoring, security, resiliency and more. It is used in the backen
Enter
Boulder
This is an implementation of an ACME-based CA. The ACME protocol allows the CA to automatically verify that an applicant for a certificate actually controls an
Enter
WAFW00F
The Web Application Firewall Fingerprinting Tool. Sends a normal HTTP request and analyses the response; this identifies a number of WAF solutions. If that is
Enter
4gen
4gen is a secure, offline, lightweight password generator for windows packaged in hta. it offers cool features like mouse-movement entropy, full charset contro
Enter
LetoDMS
LetoDMS is an open-source, web-based document management system (DMS) written in PHP with a database backend. LetoDMS provides document meta-data, version cont
Enter
Ring
This repo contains unofficial packages to enable interaction and automation with the majority of Ring products. The ring-client-API is a TypeScript package des
Enter
Hacks
Hacks is a collection of experimental scripts, utilities, and one-off tools created to solve specific problems in security research, data processing, and autom
Enter
Ultramarker
Is a Windows (and Linux) based application that allows educators and assessors to design criteria based assessment rubrics. It specifically allows generic feed
Enter
Decred
dcrd is the full-node implementation of Decred, a hybrid proof-of-work/proof-of-stake cryptocurrency focused on decentralized governance, long-term sustainabil
Enter
Parsedown
Parsedown is capable of escaping user-input within the HTML that it generates. Additionally Parsedown will apply sanitisation to additional scripting vectors (
Enter
Wfuzz
Wfuzz provides a framework to automate web applications security assessments and could help you to secure your web applications by finding and exploiting web a
Enter
Keycastr
KeyCastr requires access to the macOS Accessibility API in order to receive your key events and broadcast the keystrokes you are interested in. On newer versio
Enter
Spam Filter Zone
The project goal is to create server-side web application, capable of detecting and blocking spam for multiple mailboxes. Features: detecting different sender
Enter