Showing 36 of 400 projects
A Go library for fine-grained, policy-based access control inspired by AWS IAM, designed for microservices and IoT.
A comprehensive Nginx configuration template with optimized defaults, SSL setup, and Docker integration.
A Windows security tool for real-time adversary tradecraft detection, memory scanning, and forensics via behavior-driven rules.
A semi-automatic OSINT framework and package manager for gathering intelligence and enumerating attack surfaces.
A SpotBugs plugin for detecting security vulnerabilities in Java web and Android applications.
A peer-to-peer encrypted global filesystem and private web platform with secure file storage, social networking, and application hosting.
A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.
A Go package that adds OpenID Connect client support to the standard OAuth2 library.
Adds OAuth1.0a and OAuth2 authentication support to Symfony applications with 58+ provider integrations.
A complete Go implementation of JOSE (JWA/JWE/JWK/JWS/JWT) for signing, encryption, and key management.
The OWASP Mobile Application Security Verification Standard (MASVS) is the industry standard for mobile app security.
A flexible Go package for generating and verifying captchas as base64-encoded image or audio strings.
A PHP class for detecting bots, crawlers, and spiders via user agent and HTTP headers.
A toy implementation of an ERC20-like fungible token demonstrating Move language capabilities for secure smart contracts.
A Go HTTP middleware that provides essential security headers and protections for web applications.
A universal JavaScript library for implementing OAuth 2.0 and OpenID Connect client flows across Node.js, browsers, Deno, and other runtimes.
A Perl engine that routes all your internet traffic through the Tor network for enhanced privacy and anonymity.
A curated database of JavaScript engine CVEs with proof-of-concept exploits for security research.
A comprehensive guide and collection of best practices for deploying, monitoring, and securing Ruby on Rails applications in production environments.
A network OSINT tool that automates subdomain enumeration, service fingerprinting, and data collection via Shodan and ViewDNS APIs.
A curated list of software, hardware, books, and research for embedded and IoT security analysis.
Fast, dependency-free Go package to infer binary file types by checking magic number signatures.
An open-source security automation platform (SOAR) built for security professionals, focusing on collaboration and resource sharing.
A bleeding-edge Django project template focused on code quality, security, and modern development practices.
A deliberately vulnerable CI/CD environment with 11 challenges to learn and practice CI/CD security.
A collection of cryptographic hash functions implemented in pure Rust, designed for interoperability and no_std environments.
A Rust library for sending emails with multiple transport methods, SMTP security, and async support.
A comprehensive JWT (JSON Web Token) implementation for .NET with support for encoding, decoding, and ASP.NET Core integration.
A curated list of resources covering Identity and Access Management (IAM) for cloud platforms, including authentication, authorization, and security.
A curated list of resources covering Identity and Access Management (IAM) for cloud platforms, including authentication, authorization, and security.
An open-source security incident response platform that automates and coordinates enterprise defense workflows.
A Ruby wrapper for OAuth 2.0, 2.1, and OpenID Connect (OIDC) client implementations.
A static analysis tool for Go that finds vulnerabilities using SSA form and source-to-sink tracing to reduce false positives.
An advanced search and automation tool for mining code and sensitive information from public GitHub repositories.
Automatically generate least-privilege IAM policies for AWS based on resource ARNs and access levels.
Automatically generate least-privilege IAM policies for AWS by specifying resource ARNs and access levels.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.