Showing 36 of 955 projects
A curated list of tools and resources for digital forensics and incident response (DFIR) teams.
A cloud native runtime security tool for Linux that detects abnormal behavior and security threats in real-time.
A tool for securely storing AWS credentials in your OS keystore and generating temporary credentials for development.
A secure, cross-platform Git credential helper that provides authentication to GitHub, Azure DevOps, Bitbucket, and GitLab.
A static analysis tool that scans Go source code for security vulnerabilities by analyzing the AST and SSA representations.
A lightweight multi-architecture disassembly framework for binary analysis and reverse engineering.
A rapid development PHP framework using MVC and design patterns to build robust web applications quickly.
An open-source implementation of the Matter standard, a unified IP-based connectivity protocol for secure and interoperable smart home devices.
A static analysis tool for detecting security misconfigurations and flaws in Nginx configuration files.
A minimal authorization library for Ruby on Rails using plain Ruby classes and object-oriented design.
A malicious traffic detection system that monitors network traffic for blacklisted threats and suspicious activities using public feeds and heuristics.
A simple Swift wrapper for the iOS/macOS Keychain that provides an easy-to-use API for secure credential storage.
A simple OIDC provider that enables passkey-only authentication for self-hosted services.
An open-source implementation of lightweight VMs that perform like containers but offer VM-level isolation and security.
Query APIs, cloud services, and code directly with SQL using a zero-ETL approach—no database required.
A native Node.js library for hashing passwords using the bcrypt algorithm with async support and security best practices.
A pure Go library for loading, compiling, debugging, and attaching eBPF programs to Linux kernel hooks.
An open-source multi-cloud security auditing tool that assesses cloud environment security posture via provider APIs.
A curated collection of interesting, funny, and concerning search queries for Shodan.io to find exposed devices and services.
A PHP library for creating, parsing, and validating JSON Web Tokens (JWT) and JSON Web Signatures (JWS).
An open-source, large-scale network packet capture, indexing, and analysis system with a web interface.
An open-source, large-scale network packet capture, indexing, and analysis system for security and network monitoring.
A static analysis security vulnerability scanner for Ruby on Rails applications.
A performant, incremental type checker for Python with integrated security analysis via Pysa.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
Securely and anonymously share files, host websites, and chat via the Tor network.
A curated list of cryptography resources, libraries, tools, and educational materials for developers and security professionals.
A curated list of cryptography resources, libraries, tools, and educational materials for developers and researchers.
An isomorphic JavaScript authorization library that restricts user access to resources with incremental adoption and scalability.
A curated list of books, articles, websites, and tools for learning application security across multiple programming languages.
A curated list of books, articles, websites, and tools for learning application security across multiple programming languages.
A command-line password manager for teams, built as a drop-in replacement for pass with GPG encryption and git versioning.
A native macOS KeePass client for managing passwords with a native macOS experience.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.