Showing 36 of 1010 projects
Open-source access management solution for identity authentication, authorization, and federation with single sign-on and centralized policy control.
A cross-platform static code analysis tool for mobile applications (APK/IPA) to find security vulnerabilities like hardcoded credentials and API keys.
A modular Linux persistence framework for security research, detection engineering, and penetration testing.
A Laravel package for handling user email verification with token generation, email sending, and verification management.
A security linter for npm and yarn lockfiles to detect malicious package injections and enforce trust policies.
A library that simplifies integrating Keycloak authentication and authorization into Angular applications.
An iOS library for reading NFC-enabled passports using CoreNFC APIs, supporting BAC, PACE, and multiple data groups.
A concise DSL for role-based authorization in Rails applications, focused on clarity and testability.
A concise DSL for role-based authorization in Rails applications, focused on clarity and testability.
A rootkit that leverages eBPF to implement offensive security techniques like container breakouts, network scanning, and RASP bypass.
An Objective-C utility class for securely storing sensitive data like passwords and tokens in the iOS keychain.
A curated collection of LLVM-based tools, compilers, and resources focused on security, obfuscation, binary lifting, and compiler development.
A Kustomize plugin that seamlessly decrypts SOPS-encrypted Kubernetes secrets and configs during GitOps workflows.
A simple Swift library for adding Apple Face ID and Touch ID authentication to iOS apps with comprehensive error handling.
A hypervisor-based runtime for OCI containers, enabling virtualized container execution with KVM, Xen, or QEMU.
An AWS IAM to least privilege Terraform execution framework that analyzes usage patterns and generates right-sized IAM configurations.
A standalone Python tool for applying SIGMA detection rules to EVTX, Auditd, Sysmon for Linux, and other log formats.
A Rust library and UI suite for accessing and decrypting passwords stored in the pass format.
A Deno web framework built with ES decorators for modular, secure, and dependency-injected applications.
A comprehensive JSON Web Token (JWT) library for Elixir applications.
Go library for accessing and controlling Tor clients and servers, including embedding Tor statically.
A robust, spec-compliant Node.js library for reading ZIP archives with async APIs and memory safety.
Hologram brings AWS IAM Roles to developer laptops by exposing an EC2-like metadata service for temporary credentials.
A low-interaction honeypot that emulates vulnerable services to capture malware and analyze attacks.
A comprehensive netlist reverse engineering and manipulation framework for hardware analysis, akin to IDA or Ghidra for hardware.
Adds two-factor authentication to SSH servers using Authy's API for enhanced security.
Simple authorization conventions for Phoenix applications with context-based policies and schema scoping.
A security middleware library for FastAPI providing IP control, rate limiting, penetration detection, and security headers.
A toolkit for easily deploying HTTP and HTTPS onion services (Tor hidden services) for existing websites.
A lightweight, multi-role, whitelist-based authorization gem for Rails and other Ruby applications.
A free web browser that enables anonymous internet communication by routing traffic through the Tor network.
A Bluetooth experimentation framework for Broadcom and Cypress chips that enables firmware patching and packet injection.
A lightweight Bash script for scanning Linux/Unix/OSX systems for Indicators of Compromise (IOCs) without installation.
An ATT&CK-like threat matrix mapping adversary tactics and techniques specific to CI/CD pipeline security.
A lightweight, secure, easy-to-use cryptographic library for constrained environments like microcontrollers.
A low-level, dependency-free JavaScript library for implementing OAuth 2.1, OAuth 2.0, OpenID Connect, and FAPI 2.0 clients.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.