Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Security

Security

400 projects

Showing 36 of 400 projects

eBPF
eBPF

A curated list of awesome projects, tutorials, and resources related to eBPF (extended Berkeley Packet Filter).

#tracing#bpf#observability
Stars5.0k
Forks424
Last commit14 days ago
OSSEC
OSSECC

Open Source Host-based Intrusion Detection System performing log analysis, file integrity checking, rootkit detection, and active response.

#real-time-alerting#siem#policy-monitoring
Stars5.0k
Forks1.1k
Last commit4 days ago
Cameradar
CameradarGo

A penetration testing tool that discovers and accesses RTSP video surveillance cameras through network scanning and dictionary attacks.

#video-surveillance#network-scanner#dictionary-attack
Stars5.0k
Forks621
Last commit11 days ago
W3af
W3afPython

An open-source web application security scanner that identifies and exploits 200+ vulnerabilities for developers and penetration testers.

#sql-injection#web-security#cross-site-scripting
Stars4.9k
Forks1.2k
Last commit3 years ago
Kanidm
KanidmRust

A simple, secure, and fast identity management platform for self-hosted authentication, supporting OAuth2, LDAP, RADIUS, and Unix integration.

#oauth2#authentication#high-availability
Stars4.9k
Forks318
Last commit1 day ago
NAXSI
NAXSIC

An open-source, high-performance Web Application Firewall (WAF) module for NGINX that blocks malicious web traffic by default.

#naxsi#waf#xss-protection
Stars4.8k
Forks600
Last commit2 years ago
shellharden
shellhardenRust

A syntax highlighter and tool to semi-automatically rewrite shell scripts for ShellCheck conformance, focusing on proper quoting.

#shellcheck#devops#lint
Stars4.8k
Forks134
Last commit3 months ago
Pomerium
PomeriumGo

A zero-trust identity and context-aware reverse proxy for secure, clientless access to internal web apps without a VPN.

#reverse-proxy#zero-trust#gateway
Stars4.8k
Forks324
Last commit3 hours ago
Password Manager Resources
Password Manager ResourcesJavaScript

A collaborative collection of data and code quirks to improve password manager compatibility with websites.

#credential-management#two-factor-authentication#browser-integration
Stars4.7k
Forks586
Last commit
Ockam
OckamRust

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications at scale.

#zero-trust#authentication#cryptographic-identities
Stars4.6k
Forks558
Last commit3 months ago
ockam
ockamRust

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications at scale.

#zero-trust#authentication#cryptographic-identities
Stars4.6k
Forks558
Last commit
Jint
JintC#

A JavaScript interpreter for .NET that runs on any modern .NET platform, enabling JavaScript execution within .NET applications.

#module-system#async-await#sandboxed-execution
Stars4.6k
Forks597
Last commit3 days ago
Tetragon
TetragonC

eBPF-based real-time security observability and runtime enforcement for Kubernetes and Linux systems.

#network-observability#bpf#runtime-enforcement
Stars4.6k
Forks530
Last commit55 minutes ago
Awesome Threat Detection and Hunting
Awesome Threat Detection and Hunting

A curated list of awesome open-source tools, detection rules, datasets, and resources for threat detection and hunting.

#sigma-rules#awesome-list#security
Stars4.6k
Forks733
Last commit3 months ago
Santa
SantaObjective-C++

A binary and file access authorization system for macOS that monitors and controls application execution.

#fleet-management#certificate-validation#macos-security
Stars4.5k
Forks287
Last commit1 year ago
Drozer
DrozerPython

A security testing framework for Android that identifies vulnerabilities by interacting with apps, IPC endpoints, and the OS.

#vulnerability-assessment#mobile-security#android-framework
Stars4.5k
Forks834
Last commit16 days ago
aya/aya-rs
aya/aya-rsRust

A pure-Rust eBPF library focused on developer experience, operability, and compile-once-run-everywhere capabilities.

#systems-programming#bpf#observability
Stars4.5k
Forks419
Last commit13 hours ago
Buttercup Desktop
Buttercup DesktopTypeScript

A free, open-source, cross-platform password manager that securely encrypts credentials in vault files.

#desktop-application#vault#encryption
Stars4.4k
Forks340
Last commit1 year ago
Cerbos
CerbosGo

An open-core, language-agnostic authorization solution for implementing and managing context-aware access control policies.

#yaml#api#rbac
Stars4.4k
Forks178
Last commit9 hours ago
Awesome Pentest Cheat Sheets
Awesome Pentest Cheat Sheets

A curated collection of cheat sheets and resources for penetration testing and security assessments.

#vulnerability-assessment#pentest#penetration-testing
Stars4.3k
Forks787
Last commit2 years ago
zizmor
zizmorRust

A static analysis tool that finds security vulnerabilities and misconfigurations in GitHub Actions workflows.

#supply-chain-security#workflow-analysis#vulnerability-detection
Stars4.3k
Forks171
Last commit8 hours ago
gowitness
gowitnessGo

A Golang command-line utility that uses Chrome Headless to capture website screenshots and gather web data.

#reporting#chrome#screenshot
Stars4.3k
Forks426
Last commit2 days ago
mythril
mythrilPython

A symbolic-execution-based security analysis tool for detecting vulnerabilities in Ethereum and EVM-compatible smart contracts.

#solidity#security-analysis#smart-contracts
Stars4.2k
Forks810
Last commit26 days ago
Awesome vehicle security and car hacking
Awesome vehicle security and car hacking

A curated list of resources for learning about vehicle security, car hacking, and automotive tinkering.

#automotive-cybersecurity#can-bus#embedded-security
Stars4.2k
Forks686
Last commit1 month ago
Awesome Security Talks & Videos
Awesome Security Talks & Videos

A curated collection of security conference talks and videos from events like DEF CON, Black Hat, and BSides.

#security-talks#owasp#video-library
Stars4.2k
Forks494
Last commit2 months ago
ssh-audit
ssh-auditPython

A security auditing tool for SSH server and client configurations, analyzing algorithms, vulnerabilities, and policy compliance.

#python-tool#ssh-security#compliance-checking
Stars4.2k
Forks212
Last commit7 months ago
Hubble
HubbleMakefile

A fully distributed networking and security observability platform for Kubernetes, built on Cilium and eBPF.

#tracing#observability#cilium
Stars4.2k
Forks282
Last commit2 days ago
Valet
ValetSwift

A Swift library for securely storing data in the Apple Keychain across iOS, macOS, tvOS, and watchOS with a simple API.

#keychain#crypto#ios
Stars4.2k
Forks224
Last commit7 days ago
sanitize-html
sanitize-htmlJavaScript

A fast HTML sanitizer that cleans user-submitted HTML while preserving whitelisted elements and attributes.

#user-input#web-security#html-sanitization
Stars4.1k
Forks369
Last commit1 month ago
next-iron-session
next-iron-sessionTypeScript

Secure, stateless, and cookie-based session library for Next.js and other JavaScript frameworks.

#expressjs#cookies#authentication
Stars4.1k
Forks256
Last commit1 day ago
retire.js
retire.jsJavaScript

A scanner that detects JavaScript libraries with known vulnerabilities and can generate a Software Bill of Materials (SBOM).

#sbom#vulnerabilities#owasp
Stars4.1k
Forks437
Last commit22 hours ago
Dockerfile best practices
Dockerfile best practicesDockerfile

A production-ready Dockerfile template with security-focused best practices for building reliable container images.

#container-security#containerization#devops
Stars4.1k
Forks154
Last commit4 years ago
ring
ringAssembly

A Rust cryptography library derived from BoringSSL, designed as an experimental alternative to OpenSSL.

#experimental#security#side-channel-mitigation
Stars4.1k
Forks787
Last commit6 hours ago
IVRE
IVREPython

A self-hosted network reconnaissance framework for building alternatives to Shodan, ZoomEye, Censys, and GreyNoise.

#nmap-results-analyse#nmap#passive-dns
Stars4.0k
Forks686
Last commit22 hours ago
django-guardian
django-guardianPython

Adds per-object permissions to Django's authorization system, enabling fine-grained access control.

#authentication#authorization#security
Stars3.9k
Forks587
Last commit3 days ago
2FAuth
2FAuthPHP

A self-hosted web app to manage your Two-Factor Authentication (2FA) accounts and generate security codes.

#totp#authentication#otp-generator
Stars3.9k
Forks284
Last commit7 days ago
PreviousPage 6 of 12Next

Related Tags

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
3 hours ago
3 months ago
#Authentication66
#Docker64
#Go54
#Security Tools48
#Self Hosted47
#Penetration Testing43
#Devsecops42
#Golang41
#Authorization40
#Cryptography37
#Hacktoberfest35
#Web Security35