Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Security Tools

Security Tools

294 projects

Showing 36 of 294 projects

Awesome WebSocket Security
Awesome WebSocket Security

A curated collection of CVEs, research, tools, and resources for WebSocket security testing and vulnerability research.

#fuzzing#websocket-security#penetration-testing
Stars309
Forks32
Last commit4 years ago
artifactcollector
artifactcollectorGo

A customizable single-binary agent for collecting forensic artifacts from Windows, macOS, and Linux systems.

#forensicartifacts#digital-forensics#macos-forensics
Stars308
Forks25
Last commit1 year ago
Aaia
AaiaPython

Visualizes AWS IAM and Organizations as a graph using Neo4j to identify security anomalies and privilege escalation paths.

#graph#security#anomaly-detection
Stars297
Forks40
Last commit4 months ago
PowerShell implementation of Autoruns
PowerShell implementation of AutorunsPowerShell

A PowerShell module for live incident response that enumerates Windows autorun artifacts to detect persistence mechanisms used by malware and legitimate programs.

#digital-forensics#malware-detection#persistence-enumeration
Stars295
Forks51
Last commit
File Scanning Framework
File Scanning FrameworkPython

A modular, recursive file scanning framework that extends Yara signatures to extract and analyze file objects for malware analysis and intelligence.

#file-analysis#security-automation#file-scanning
Stars294
Forks46
Last commit
Malware Persistence
Malware Persistence

A curated list of tools and resources for understanding, detecting, and removing malware persistence techniques across operating systems.

#malware-detection#red-teaming#awesome-list
Stars293
Forks20
Last commit2 months ago
idalib
idalibRust

Idiomatic Rust bindings for the IDA SDK, enabling development of standalone binary analysis tools.

#security-tools#binary-analysis#rust-bindings
Stars281
Forks29
Last commit13 days ago
PackerAttacker
PackerAttackerC++

A C++ Windows malware analysis tool that uses memory and code hooks to detect and extract hidden code from packers.

#windows-security#detours#c-plus-plus
Stars275
Forks70
Last commit8 years ago
Threat Bus
Threat BusPython

A pub-sub broker for threat intelligence data that connects open-source security tools like OpenCTI, MISP, Zeek, and VAST.

#opencti#ids#sightings
Stars270
Forks17
Last commit3 years ago
Fingerprinter
FingerprinterRuby

A Ruby script that fingerprints remote applications and third-party scripts to identify their versions for security assessment.

#vulnerability-assessment#web-security#version-detection
Stars258
Forks38
Last commit8 months ago
GDPR
GDPR

A curated list of resources, tools, and guidelines for understanding and implementing the General Data Protection Regulation (GDPR).

#data-protection#privacy-tools#gdpr-compliance
Stars254
Forks33
Last commit8 days ago
PINdemonium
PINdemoniumC++

A Windows malware unpacker using Intel PIN for dynamic binary instrumentation and Scylla for import reconstruction.

#unpacker#security-tools#malware-analysis
Stars240
Forks69
Last commit10 years ago
Sys
SysLLVM

A static and symbolic analysis tool for finding memory safety bugs in browser code and other software.

#memory-safety#vulnerability-detection#bug-finding
Stars236
Forks42
Last commit4 years ago
Suricata
Suricata

A curated list of awesome tools, libraries, dashboards, and resources for the Suricata intrusion detection/prevention system.

#lists#suricata#ids
Stars235
Forks22
Last commit24 days ago
shellclear
shellclearRust

A Rust CLI tool that finds and clears sensitive data from shell history to enhance command-line security.

#sensitive-data#devops#open-source
Stars227
Forks13
Last commit3 years ago
LogESP
LogESPPython

An open-source SIEM system built with Python Django for log management, risk assessment, and asset tracking.

#siem#vulnerability-management#nist-compliance
Stars219
Forks69
Last commit2 years ago
Quantum Insert detection for Suricata
Quantum Insert detection for SuricataHTML

A research project providing tools and detection rules for analyzing and simulating Quantum Insert network attacks.

#threat-research#suricata#ids
Stars214
Forks57
Last commit7 years ago
DAMM
DAMMPython

An open-source memory forensics tool built on Volatility for differential analysis and data reduction in malware investigations.

#digital-forensics#volatility#python
Stars214
Forks47
Last commit9 years ago
SentryPeer
SentryPeerC

A peer-to-peer SIP honeypot and fraud detection tool that collects and shares malicious IP addresses and phone numbers.

#honeypot#fail2ban-integration#telephony
Stars209
Forks25
Last commit3 days ago
roslyn-security-guard
roslyn-security-guardC#

Roslyn analyzers for detecting security vulnerabilities in .NET applications during development.

#ide-integration#csharp#vulnerability-detection
Stars206
Forks34
Last commit
gonids
gonidsGo

A Go library for parsing and manipulating Snort and Suricata IDS/IPS rules with Suricata compatibility focus.

#parse#suricata#ids
Stars195
Forks49
Last commit17 days ago
VolDiff
VolDiffPython

A Python script that uses Volatility to analyze malware memory footprints by comparing Windows memory images before and after infection.

#digital-forensics#security-tools#malware-analysis
Stars195
Forks45
Last commit8 years ago
HttpSniffer
HttpSnifferC

A multi-threading tool to sniff TCP flow statistics and extract HTTP headers from live traffic or PCAP files.

#network-debugging#command-line-tool#tcp-flow
Stars193
Forks50
Last commit4 months ago
Malfunction
MalfunctionPython

A Python toolset for malware analysis using function-level fuzzy hashing to catalog and compare malicious binaries.

#radare2#function-analysis#python
Stars192
Forks32
Last commit10 years ago
PyrsistenceSniper
PyrsistenceSniperPython

A Python tool for offline detection of Windows persistence mechanisms in forensic collections like KAPE dumps or mounted disk images.

#digital-forensics#kape#registry-analysis
Stars191
Forks26
Last commit2 months ago
statsprocessor
statsprocessorC

A word generator using per-position Markov chains for password cracking and dictionary generation.

#word-generator#offline-tool#markov-chains
Stars190
Forks70
Last commit2 years ago
huginn-net
huginn-netRust

A Rust library for multi-protocol passive network fingerprinting, combining p0f-style TCP/HTTP analysis with JA4-style TLS client analysis.

#traffic-analysis#network#security
Stars189
Forks16
Last commit15 days ago
GSDF
GSDFPython

A Python tool that queries Google's SSL transparency report to discover subdomains and identify expired certificates.

#subdomain-enumeration#python-2#certificate-transparency
Stars184
Forks52
Last commit8 years ago
vim-troll-stopper
vim-troll-stopperVim Script

A Vim plugin that highlights visually similar Unicode characters to prevent trolls from corrupting your code.

#developer-tools#syntax-highlighting#text-editor
Stars181
Forks6
Last commit3 years ago
Forager
ForagerPython

A Python-based multithreaded threat intelligence gathering tool that collects, stores, and serves indicators of compromise from various sources.

#feed-management#ioc-extraction#carbonblack-integration
Stars177
Forks29
Last commit8 years ago
Android_application_analyzer
Android_application_analyzerPython

A Python-based GUI tool for analyzing Android applications locally, including decompilation, logcat monitoring, and security testing.

#mobile-application-testing#frida-integration#apk-analysis
Stars175
Forks32
Last commit
MemoryMap
MemoryMapPascal

A Windows utility for visualizing process memory maps, analyzing hooks, and disassembling code with advanced debugging features.

#disassembler#security-tools#delphi
Stars171
Forks28
Last commit5 days ago
Wavecrack
WavecrackPython

A web interface for sharing a hashcat password cracking box among multiple users with user-friendly attack automation.

#pentest#authentication#flask
Stars170
Forks36
Last commit4 years ago
dotgpg
dotgpgRuby

A tool for securely backing up and versioning production secrets and shared passwords using GPG encryption.

#version-control#team-collaboration#production-secrets
Stars168
Forks15
Last commit8 years ago
no-secrets
no-secretsTypeScript

An ESLint plugin that detects potential secrets and credentials in code and JSON files using entropy analysis and pattern matching.

#entropy-analysis#secret-detection#pattern-matching
Stars166
Forks6
Last commit
SDLC Infrastructure Threat Framework (SITF)
SDLC Infrastructure Threat Framework (SITF)HTML

A framework for analyzing and defending against supply chain attacks targeting Software Development Lifecycle infrastructure.

#supply-chain-security#attack-framework#vcs-security
Stars165
Forks17
Last commit
PreviousPage 7 of 9

Related Tags

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
2 months ago
4 years ago
8 years ago
11 days ago
3 months ago
12 days ago
Next
#Security84
#Penetration Testing69
#Reverse Engineering65
#Malware Analysis64
#Cybersecurity54
#Python44
#Incident Response39
#Docker34
#Static Analysis34
#Devsecops33
#Binary Analysis29
#Digital Forensics27