Showing 36 of 1288 projects
A Golang command-line utility that uses Chrome Headless to capture website screenshots and gather web data.
A free, open-source, cross-platform password manager that securely encrypts credentials in vault files.
A curated collection of cheat sheets and resources for penetration testing and security assessments.
A fully distributed networking and security observability platform for Kubernetes, built on Cilium and eBPF.
A security auditing tool for SSH server and client configurations, analyzing algorithms, vulnerabilities, and policy compliance.
A symbolic-execution-based security analysis tool for detecting vulnerabilities in Ethereum and EVM-compatible smart contracts.
A curated collection of security conference talks and videos from events like DEF CON, Black Hat, and BSides.
A Swift library for securely storing data in the Apple Keychain across iOS, macOS, tvOS, and watchOS with a simple API.
A scanner that detects JavaScript libraries with known vulnerabilities and can generate a Software Bill of Materials (SBOM).
Secure, stateless, and cookie-based session library for Next.js and other JavaScript frameworks.
A self-hosted web app to manage your Two-Factor Authentication (2FA) accounts and generate security codes.
A self-hosted network reconnaissance framework for building alternatives to Shodan, ZoomEye, Censys, and GreyNoise.
A fast HTML sanitizer that cleans user-submitted HTML while preserving whitelisted elements and attributes.
A Rust cryptography library derived from BoringSSL, designed as an experimental alternative to OpenSSL.
A production-ready Dockerfile template with security-focused best practices for building reliable container images.
A lightweight Linux process isolation tool using namespaces, cgroups, rlimits, and seccomp-bpf syscall filters for enhanced security.
Adds per-object permissions to Django's authorization system, enabling fine-grained access control.
A pure JavaScript steganography module that hides secrets inside text using invisible unicode characters, secured with passwords and encryption.
A secure and easy-to-use PHP library for encrypting data with keys or passwords.
An step by step fuzzing tutorial. A GitHub Security Lab initiative
A reverse engineering framework and command-line toolset for binary analysis, disassembly, debugging, and forensic tasks.
OpenID Certified OAuth 2.0 Authorization Server implementation for Node.js with extensive spec support.
An Nmap NSE script that transforms nmap into a vulnerability scanner using offline vulnerability databases.
An open-source Cloud Security Posture Management (CSPM) tool that scans AWS, Azure, GCP, Oracle, and GitHub for security misconfigurations.
An open-source, enterprise-grade Web Application Firewall library written in Go, compatible with ModSecurity SecLang rulesets.
Simple, Heroku-friendly Rails app configuration using ENV and a single YAML file.
A lightweight, fast, always-up HTTP reverse proxy built in Rust, configurable at runtime without reloading.
A Docker container providing a secure Nginx web server and reverse proxy with automated SSL certificates and fail2ban protection.
A fast, configurable HTML sanitizer for Go that scrubs user-generated content of XSS attacks using an allowlist policy.
A Ruby implementation of the RFC 7519 OAuth JSON Web Token (JWT) standard for secure token encoding and decoding.
A fast, standalone tool for rapid threat hunting and forensic analysis of Windows event logs and other forensic artefacts.
A Rust implementation of the age file encryption tool, offering simple, secure encryption with small explicit keys and UNIX-style composability.
An open-source firmware security analyzer for embedded Linux devices, performing extraction, static/dynamic analysis, SBOM generation, and vulnerability reporting.
A cloud native Identity & Access Proxy (IAP) and Access Control Decision API that authenticates, authorizes, and mutates HTTP requests.
Atomic and non-atomic counters and rate limiting tools for Node.js, Deno, and browsers to protect from DoS and brute force attacks.
An elegant, framework-agnostic package for managing roles and abilities in Laravel using Eloquent models.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.