Showing 36 of 1287 projects
An open-source firmware security analyzer for embedded Linux devices, performing extraction, static/dynamic analysis, SBOM generation, and vulnerability reporting.
A cross-platform desktop application for managing passwords and sensitive data, built with Electron and Angular.
A modern, web-based SSH console and key management tool that functions as a secure bastion host.
A curated collection of proof-of-concept exploits for Common Vulnerabilities and Exposures (CVEs).
A batteries-included framework for building authorization in your application with a declarative policy language.
An open-source Ethereum consensus client written in Rust, designed for security and performance on the Ethereum proof-of-stake network.
A collection of reusable, vendor-neutral, industry-specific, and vendor-specific solution architecture patterns for building enterprise software systems.
A collection of reusable, vendor-neutral, and industry-specific solution architecture patterns for building enterprise software systems.
A fully managed, high-performance FTP and FTPS client library for .NET and .NET Standard, optimized for speed.
An open-source implementation of FIDO2 and U2F security keys written in Rust, enabling custom hardware authentication devices.
An open-source tool for collaborative forensic timeline analysis, enabling teams to organize, annotate, and investigate timelines together.
A standalone tool that finds unprotected secrets like passwords and API keys in container images and file systems.
A security-oriented, feedback-driven, evolutionary software fuzzer that uses hardware and software code coverage to find bugs.
A standards-compliant HTML filtering library for PHP that removes malicious code while preserving safe markup.
An open-source webhooks service that handles deliverability, retries, and security with a single API call.
A client and server implementation of The Update Framework (TUF) for securing software distribution and updates.
A self-contained cryptographic library for Python
Chrome extension and Express server demonstrating a CSS-based keylogging attack on password inputs.
A security tool that visualizes and analyzes Windows Active Directory event logs to investigate malicious logon activity.
Cryptographically sign and verify data to safely pass it between trusted and untrusted environments.
Securely share passwords, text, files, and URLs via self-destructing links with full audit logs.
A Windows security tool that reduces the attack surface by disabling risky features in Windows, Office, Adobe Reader, and LibreOffice.
A simple wrapper for Apple's Keychain APIs on iOS, watchOS, tvOS, and macOS, making secure storage as easy as NSUserDefaults.
Static code analysis tool for Kubernetes YAML and Helm charts that provides recommendations to improve reliability and security.
A non-Turing complete expression language for fast, safe, and portable evaluation with C-like syntax.
A microservices API gateway built on Node.js and Express.js for securing and exposing services in cloud-native architectures.
A crowdsourced collection of websites with frustrating and counterproductive password requirements.
A Swift library providing simple helper functions for securely storing text and data in the iOS/macOS Keychain.
Open source Runtime Application Self-Protection (RASP) solution that integrates security directly into application servers via instrumentation.
A modern, open-source password manager for individuals and teams with end-to-end encryption and self-hosting capabilities.
A Composer package that blocks installation of PHP dependencies with known security vulnerabilities.
A protocol-oriented Swift library for interacting with the iOS/macOS keychain with type-safe results.
StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define.
A comprehensive list of all known public suffixes (like .com, .co.uk) under which internet users can directly register domain names.
A lightweight, portable TLS/SSL library written in ANSI C for embedded systems, RTOS, and cloud applications.
A curated list of SSH applications, libraries, and resources for developers and system administrators.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.