Showing 36 of 1287 projects
A curated list of resources for learning about vehicle security, car hacking, and automotive tinkering.
A free, open-source, cross-platform password manager that securely encrypts credentials in vault files.
A curated collection of cheat sheets and resources for penetration testing and security assessments.
A symbolic-execution-based security analysis tool for detecting vulnerabilities in Ethereum and EVM-compatible smart contracts.
A fully distributed networking and security observability platform for Kubernetes, built on Cilium and eBPF.
A security auditing tool for SSH server and client configurations, analyzing algorithms, vulnerabilities, and policy compliance.
A curated collection of security conference talks and videos from events like DEF CON, Black Hat, and BSides.
A Swift library for securely storing data in the Apple Keychain across iOS, macOS, tvOS, and watchOS with a simple API.
A scanner that detects JavaScript libraries with known vulnerabilities and can generate a Software Bill of Materials (SBOM).
Secure, stateless, and cookie-based session library for Next.js and other JavaScript frameworks.
A fast HTML sanitizer that cleans user-submitted HTML while preserving whitelisted elements and attributes.
A Rust cryptography library derived from BoringSSL, designed as an experimental alternative to OpenSSL.
A self-hosted network reconnaissance framework for building alternatives to Shodan, ZoomEye, Censys, and GreyNoise.
A production-ready Dockerfile template with security-focused best practices for building reliable container images.
A self-hosted web app to manage your Two-Factor Authentication (2FA) accounts and generate security codes.
A lightweight Linux process isolation tool using namespaces, cgroups, rlimits, and seccomp-bpf syscall filters for enhanced security.
Adds per-object permissions to Django's authorization system, enabling fine-grained access control.
A secure and easy-to-use PHP library for encrypting data with keys or passwords.
A pure JavaScript steganography module that hides secrets inside text using invisible unicode characters, secured with passwords and encryption.
An step by step fuzzing tutorial. A GitHub Security Lab initiative
OpenID Certified OAuth 2.0 Authorization Server implementation for Node.js with extensive spec support.
An Nmap NSE script that transforms nmap into a vulnerability scanner using offline vulnerability databases.
An open-source Cloud Security Posture Management (CSPM) tool that scans AWS, Azure, GCP, Oracle, and GitHub for security misconfigurations.
Simple, Heroku-friendly Rails app configuration using ENV and a single YAML file.
A reverse engineering framework and command-line toolset for binary analysis, disassembly, debugging, and forensic tasks.
A lightweight, fast, always-up HTTP reverse proxy built in Rust, configurable at runtime without reloading.
A fast, configurable HTML sanitizer for Go that scrubs user-generated content of XSS attacks using an allowlist policy.
A Docker container providing a secure Nginx web server and reverse proxy with automated SSL certificates and fail2ban protection.
A Ruby implementation of the RFC 7519 OAuth JSON Web Token (JWT) standard for secure token encoding and decoding.
An open-source, enterprise-grade Web Application Firewall library written in Go, compatible with ModSecurity SecLang rulesets.
A fast, standalone tool for rapid threat hunting and forensic analysis of Windows event logs and other forensic artefacts.
A cloud native Identity & Access Proxy (IAP) and Access Control Decision API that authenticates, authorizes, and mutates HTTP requests.
A Rust implementation of the age file encryption tool, offering simple, secure encryption with small explicit keys and UNIX-style composability.
An elegant, framework-agnostic package for managing roles and abilities in Laravel using Eloquent models.
Atomic and non-atomic counters and rate limiting tools for Node.js, Deno, and browsers to protect from DoS and brute force attacks.
A PHP client library for Google's reCAPTCHA service to verify user responses and protect websites from spam.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.