Showing 36 of 389 projects
A curated list of tools and resources for digital forensics and incident response (DFIR) teams.
A tool for securely storing AWS credentials in your OS keystore and generating temporary credentials for development.
A cloud native runtime security tool for Linux that detects abnormal behavior and security threats in real-time.
A rapid development PHP framework using MVC and design patterns to build robust web applications quickly.
A static analysis tool that scans Go source code for security vulnerabilities by analyzing the AST and SSA representations.
A secure, cross-platform Git credential helper that provides authentication to GitHub, Azure DevOps, Bitbucket, and GitLab.
An open-source implementation of the Matter standard, a unified IP-based connectivity protocol for secure and interoperable smart home devices.
A lightweight multi-architecture disassembly framework for binary analysis and reverse engineering.
A static analysis tool for detecting security misconfigurations and flaws in Nginx configuration files.
A minimal authorization library for Ruby on Rails using plain Ruby classes and object-oriented design.
A malicious traffic detection system that monitors network traffic for blacklisted threats and suspicious activities using public feeds and heuristics.
A simple Swift wrapper for the iOS/macOS Keychain that provides an easy-to-use API for secure credential storage.
An open-source implementation of lightweight VMs that perform like containers but offer VM-level isolation and security.
Query APIs, cloud services, and code directly with SQL using a zero-ETL approach—no database required.
A native Node.js library for hashing passwords using the bcrypt algorithm with async support and security best practices.
A pure Go library for loading, compiling, debugging, and attaching eBPF programs to Linux kernel hooks.
An open-source multi-cloud security auditing tool that assesses cloud environment security posture via provider APIs.
A simple OIDC provider that enables passkey-only authentication for self-hosted services.
A PHP library for creating, parsing, and validating JSON Web Tokens (JWT) and JSON Web Signatures (JWS).
A curated collection of interesting, funny, and concerning search queries for Shodan.io to find exposed devices and services.
An open-source, large-scale network packet capture, indexing, and analysis system for security and network monitoring.
An open-source, large-scale network packet capture, indexing, and analysis system with a web interface.
A static analysis security vulnerability scanner for Ruby on Rails applications.
A performant, incremental type checker for Python with integrated security analysis via Pysa.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
A static analysis security scanner for Terraform code that identifies misconfigurations across major cloud providers.
Securely and anonymously share files, host websites, and chat via the Tor network.
An isomorphic JavaScript authorization library that restricts user access to resources with incremental adoption and scalability.
A curated list of books, articles, websites, and tools for learning application security across multiple programming languages.
A curated list of books, articles, websites, and tools for learning application security across multiple programming languages.
A curated list of cryptography resources, libraries, tools, and educational materials for developers and security professionals.
A curated list of cryptography resources, libraries, tools, and educational materials for developers and researchers.
A native macOS KeePass client for managing passwords with a native macOS experience.
A command-line password manager for teams, built as a drop-in replacement for pass with GPG encryption and git versioning.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.