Showing 36 of 400 projects
A curated list of awesome projects, tutorials, and resources related to eBPF (extended Berkeley Packet Filter).
Open Source Host-based Intrusion Detection System performing log analysis, file integrity checking, rootkit detection, and active response.
A penetration testing tool that discovers and accesses RTSP video surveillance cameras through network scanning and dictionary attacks.
An open-source web application security scanner that identifies and exploits 200+ vulnerabilities for developers and penetration testers.
A simple, secure, and fast identity management platform for self-hosted authentication, supporting OAuth2, LDAP, RADIUS, and Unix integration.
An open-source, high-performance Web Application Firewall (WAF) module for NGINX that blocks malicious web traffic by default.
A syntax highlighter and tool to semi-automatically rewrite shell scripts for ShellCheck conformance, focusing on proper quoting.
A zero-trust identity and context-aware reverse proxy for secure, clientless access to internal web apps without a VPN.
A collaborative collection of data and code quirks to improve password manager compatibility with websites.
Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications at scale.
Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications at scale.
A JavaScript interpreter for .NET that runs on any modern .NET platform, enabling JavaScript execution within .NET applications.
eBPF-based real-time security observability and runtime enforcement for Kubernetes and Linux systems.
A curated list of awesome open-source tools, detection rules, datasets, and resources for threat detection and hunting.
A binary and file access authorization system for macOS that monitors and controls application execution.
A security testing framework for Android that identifies vulnerabilities by interacting with apps, IPC endpoints, and the OS.
A pure-Rust eBPF library focused on developer experience, operability, and compile-once-run-everywhere capabilities.
A free, open-source, cross-platform password manager that securely encrypts credentials in vault files.
An open-core, language-agnostic authorization solution for implementing and managing context-aware access control policies.
A curated collection of cheat sheets and resources for penetration testing and security assessments.
A static analysis tool that finds security vulnerabilities and misconfigurations in GitHub Actions workflows.
A Golang command-line utility that uses Chrome Headless to capture website screenshots and gather web data.
A symbolic-execution-based security analysis tool for detecting vulnerabilities in Ethereum and EVM-compatible smart contracts.
A curated list of resources for learning about vehicle security, car hacking, and automotive tinkering.
A curated collection of security conference talks and videos from events like DEF CON, Black Hat, and BSides.
A security auditing tool for SSH server and client configurations, analyzing algorithms, vulnerabilities, and policy compliance.
A fully distributed networking and security observability platform for Kubernetes, built on Cilium and eBPF.
A Swift library for securely storing data in the Apple Keychain across iOS, macOS, tvOS, and watchOS with a simple API.
A fast HTML sanitizer that cleans user-submitted HTML while preserving whitelisted elements and attributes.
Secure, stateless, and cookie-based session library for Next.js and other JavaScript frameworks.
A scanner that detects JavaScript libraries with known vulnerabilities and can generate a Software Bill of Materials (SBOM).
A production-ready Dockerfile template with security-focused best practices for building reliable container images.
A Rust cryptography library derived from BoringSSL, designed as an experimental alternative to OpenSSL.
A self-hosted network reconnaissance framework for building alternatives to Shodan, ZoomEye, Censys, and GreyNoise.
Adds per-object permissions to Django's authorization system, enabling fine-grained access control.
A self-hosted web app to manage your Two-Factor Authentication (2FA) accounts and generate security codes.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.