Showing 36 of 1288 projects
A security linter for npm and yarn lockfiles to detect malicious package injections and enforce trust policies.
A cross-platform static code analysis tool for mobile applications (APK/IPA) to find security vulnerabilities like hardcoded credentials and API keys.
A Laravel package for handling user email verification with token generation, email sending, and verification management.
A library that simplifies integrating Keycloak authentication and authorization into Angular applications.
An iOS library for reading NFC-enabled passports using CoreNFC APIs, supporting BAC, PACE, and multiple data groups.
A rootkit that leverages eBPF to implement offensive security techniques like container breakouts, network scanning, and RASP bypass.
A concise DSL for role-based authorization in Rails applications, focused on clarity and testability.
A concise DSL for role-based authorization in Rails applications, focused on clarity and testability.
A standalone Python tool for applying SIGMA detection rules to EVTX, Auditd, Sysmon for Linux, and other log formats.
A Kustomize plugin that seamlessly decrypts SOPS-encrypted Kubernetes secrets and configs during GitOps workflows.
An Objective-C utility class for securely storing sensitive data like passwords and tokens in the iOS keychain.
A hypervisor-based runtime for OCI containers, enabling virtualized container execution with KVM, Xen, or QEMU.
A Rust library and UI suite for accessing and decrypting passwords stored in the pass format.
A simple Swift library for adding Apple Face ID and Touch ID authentication to iOS apps with comprehensive error handling.
An AWS IAM to least privilege Terraform execution framework that analyzes usage patterns and generates right-sized IAM configurations.
Go library for accessing and controlling Tor clients and servers, including embedding Tor statically.
A robust, spec-compliant Node.js library for reading ZIP archives with async APIs and memory safety.
A comprehensive netlist reverse engineering and manipulation framework for hardware analysis, akin to IDA or Ghidra for hardware.
A Deno web framework built with ES decorators for modular, secure, and dependency-injected applications.
A low-interaction honeypot that emulates vulnerable services to capture malware and analyze attacks.
A comprehensive JSON Web Token (JWT) library for Elixir applications.
A security middleware library for FastAPI providing IP control, rate limiting, penetration detection, and security headers.
Hologram brings AWS IAM Roles to developer laptops by exposing an EC2-like metadata service for temporary credentials.
Simple authorization conventions for Phoenix applications with context-based policies and schema scoping.
Adds two-factor authentication to SSH servers using Authy's API for enhanced security.
A toolkit for easily deploying HTTP and HTTPS onion services (Tor hidden services) for existing websites.
A free web browser that enables anonymous internet communication by routing traffic through the Tor network.
A Bluetooth experimentation framework for Broadcom and Cypress chips that enables firmware patching and packet injection.
A lightweight, secure, easy-to-use cryptographic library for constrained environments like microcontrollers.
A lightweight, multi-role, whitelist-based authorization gem for Rails and other Ruby applications.
A lightweight Bash script for scanning Linux/Unix/OSX systems for Indicators of Compromise (IOCs) without installation.
A low-level, dependency-free JavaScript library for implementing OAuth 2.1, OAuth 2.0, OpenID Connect, and FAPI 2.0 clients.
An ATT&CK-like threat matrix mapping adversary tactics and techniques specific to CI/CD pipeline security.
An automatic, platform-independent unpacker for Windows binaries using emulation to analyze packed malware.
Rails integration for the Rodauth authentication framework, providing a robust, feature-rich alternative to Devise.
A data pipeline engine for security teams to collect, transform, enrich, and route telemetry data at scale.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.