Showing 36 of 1010 projects
A curated collection of vulnerabilities and non-standard implementations in ERC20 token smart contracts.
A Rust library providing extensible, strongly-typed interfaces for OpenID Connect authentication with major identity providers.
A Go-based tool to automatically scan networks for SSH servers with weak passwords and track credential vulnerabilities.
A simple iOS 7 style passcode lock view controller for iOS apps, supporting Touch ID and Face ID.
A certified C#/.NET Standard OpenID Connect client library for native mobile and desktop applications implementing RFC 8252.
A custom Android ImageView that generates and displays CAPTCHA images with built-in validation.
A lightweight, extensible API gateway written in Java with native OpenAPI support, SOAP/XML compatibility, and container optimization.
A curated list of Bluetooth security resources covering vulnerabilities, tools, research, and conference talks for BR/EDR, LE, and Mesh.
A Meteor package for secure, direct client-side file uploads to cloud storage services like AWS S3 and Google Cloud.
A static analysis tool for Rust that detects concurrency bugs, memory bugs, and panic locations.
A formal semantics of the Ethereum Virtual Machine (EVM) written in the K framework, enabling verification and symbolic execution of smart contracts.
A professionally audited .NET cryptography library implementing secure-by-default patterns and algorithms.
A customizable security middleware for Apollo GraphQL, Yoga, and Envelop GraphQL servers.
A lightweight Go library for password strength validation using entropy calculations, without arbitrary character rules.
A high-level SSL/TLS configuration library for Java, Kotlin, and Scala HTTP clients and servers with hot reloading and rich utilities.
A utility for bug hunters and organizations to identify Blind Cross-Site Scripting vulnerabilities via customizable payloads and notifications.
A PHP class for generating and validating CAPTCHA images and audio with extensive customization options.
A collection of open-source Rust crates for cryptography, security, and utility functions from iqlusion.
A secure, self-destructing message service using HashiCorp Vault for temporary secret storage.
Node.js bindings for Google's RE2 regex engine, providing a fast and safe alternative to backtracking regex engines.
Advanced OAuth2/OpenID Connect server framework for ASP.NET Core and OWIN/Katana with a low-level, protocol-first approach.
A static application security testing (SAST) CLI tool that scans source code for OWASP Top 10 vulnerabilities across multiple programming languages.
Pure Go implementation of the NaCL cryptography API with full feature parity and cross-language compatibility.
A Swift interface to libsodium for safe and easy cryptographic operations on Apple platforms and Linux.
A Rust crate providing platform-native TLS bindings for secure client and server communication.
A unified Node.js API for password hashing algorithms like Argon2, PBKDF2, and bcrypt, simplifying secure password management.
A curated list of security resources for penetration testing and vulnerability assessment of VoIP, WebRTC, and VoLTE systems.
An Elixir library and Plug for handling CORS requests with compliance to the W3C specification.
A serverless application to create and monitor fake HTTP endpoints (URL honeytokens) on AWS Lambda and API Gateway.
Tool and policy library for validating Google Kubernetes Engine clusters against configuration best practices and scalability limits.
An InSpec compliance profile that automates security testing for Docker daemon and containers against CIS benchmarks.
A comprehensive CakePHP plugin for user management, authentication, authorization, and social login.
A NixOS module for convenient system hardening by securely configuring existing software and reducing attack surface.
A high-performance peer-to-peer VPN written in Rust, designed for minimal configuration and multi-platform support.
A tool for real-time SSL/TLS key extraction and traffic decryption to simplify encrypted network analysis for security researchers.
A Go implementation of JOSE standards (JWE, JWS, JWT) for secure JSON object signing and encryption.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.