Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Tags
  3. Security

Security

400 projects

Showing 36 of 400 projects

Ladon
LadonGo

A Go library for fine-grained, policy-based access control inspired by AWS IAM, designed for microservices and IoT.

#iot#rbac#acl
Stars2.5k
Forks224
Last commit6 months ago
Nginx Boilerplate - Configuration template and a set of handy must-have snippets
Nginx Boilerplate - Configuration template and a set of handy must-have snippetsDockerfile

A comprehensive Nginx configuration template with optimized defaults, SSL setup, and Docker integration.

#reverse-proxy#devops#web-server
Stars2.4k
Forks192
Last commit
Fibratus
FibratusGo

A Windows security tool for real-time adversary tradecraft detection, memory scanning, and forensics via behavior-driven rules.

#rule-engine#windows-security#adversary
Stars2.4k
Forks208
Last commit17 hours ago
sn0int
sn0intRust

A semi-automatic OSINT framework and package manager for gathering intelligence and enumerating attack surfaces.

#osint#subdomain-enumeration#data-enrichment
Stars2.4k
Forks222
Last commit1 year ago
Find Security Bugs
Find Security BugsJava

A SpotBugs plugin for detecting security vulnerabilities in Java web and Android applications.

#taint-analysis#owasp#spotbugs-plugin
Stars2.4k
Forks479
Last commit1 month ago
Peergos
PeergosJava

A peer-to-peer encrypted global filesystem and private web platform with secure file storage, social networking, and application hosting.

#privacy-first#ipfs#storage
Stars2.4k
Forks188
Last commit20 hours ago
Malcolm
MalcolmPython

A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.

#suricata#pcap#opensearch-dashboards
Stars2.4k
Forks413
Last commit3 days ago
go-oidc
go-oidcGo

A Go package that adds OpenID Connect client support to the standard OAuth2 library.

#oauth2#authentication#openid-connect
Stars2.4k
Forks427
Last commit17 days ago
HWIOAuthBundle
HWIOAuthBundlePHP

Adds OAuth1.0a and OAuth2 authentication support to Symfony applications with 58+ provider integrations.

#oauth#api#oauth2
Stars2.4k
Forks788
Last commit2 months ago
jwx
jwxGo

A complete Go implementation of JOSE (JWA/JWE/JWK/JWS/JWT) for signing, encryption, and key management.

#authentication#jwe#jwt
Stars2.4k
Forks191
Last commit12 hours ago
OWASP MASVS
OWASP MASVSPython

The OWASP Mobile Application Security Verification Standard (MASVS) is the industry standard for mobile app security.

#app-security#mobile-security#standard
Stars2.4k
Forks664
Last commit4 months ago
base64Captcha
base64CaptchaGo

A flexible Go package for generating and verifying captchas as base64-encoded image or audio strings.

#bot-protection#web-security#unicode
Stars2.4k
Forks309
Last commit6 months ago
CrawlerDetect
CrawlerDetectPHP

A PHP class for detecting bots, crawlers, and spiders via user agent and HTTP headers.

#bots#hacktoberfest#user-agent
Stars2.3k
Forks277
Last commit10 days ago
BasicCoin
BasicCoinRust

A toy implementation of an ERC20-like fungible token demonstrating Move language capabilities for secure smart contracts.

#resource-oriented#toy-implementation#move-language
Stars2.3k
Forks700
Last commit2 years ago
secure
secureGo

A Go HTTP middleware that provides essential security headers and protections for web applications.

#https-enforcement#http-middleware#web-security
Stars2.3k
Forks146
Last commit1 year ago
openid-client
openid-clientTypeScript

A universal JavaScript library for implementing OAuth 2.0 and OpenID Connect client flows across Node.js, browsers, Deno, and other runtimes.

#openid#oauth2#client
Stars2.3k
Forks410
Last commit11 days ago
Nipe
NipePerl

A Perl engine that routes all your internet traffic through the Tor network for enhanced privacy and anonymity.

#network-routing#privacy-tools#anonymize
Stars2.3k
Forks334
Last commit7 days ago
js-vuln-db
js-vuln-db

A curated database of JavaScript engine CVEs with proof-of-concept exploits for security research.

#cve#vulnerability#vulnerability-database
Stars2.3k
Forks404
Last commit6 years ago
production_rails
production_rails

A comprehensive guide and collection of best practices for deploying, monitoring, and securing Ruby on Rails applications in production environments.

#devops#production-deployment#performance-optimization
Stars2.3k
Forks140
Last commit24 days ago
xray
xrayGo

A network OSINT tool that automates subdomain enumeration, service fingerprinting, and data collection via Shodan and ViewDNS APIs.

#osint#subdomain-enumeration#banner-grabbing
Stars2.3k
Forks299
Last commit1 year ago
Embedded and IoT Security
Embedded and IoT Security

A curated list of software, hardware, books, and research for embedded and IoT security analysis.

#iot#embedded-security#hardware-hacking
Stars2.3k
Forks281
Last commit2 years ago
filetype
filetypeGo

Fast, dependency-free Go package to infer binary file types by checking magic number signatures.

#filetype#media-processing#validation
Stars2.3k
Forks187
Last commit10 months ago
Shuffle
ShuffleJavaScript

An open-source security automation platform (SOAR) built for security professionals, focusing on collaboration and resource sharing.

#react-frontend#openapi-integration#soar
Stars2.2k
Forks403
Last commit2 days ago
wemake-django-template
wemake-django-templatePython

A bleeding-edge Django project template focused on code quality, security, and modern development practices.

#caddy#pytest#project-template
Stars2.2k
Forks224
Last commit1 day ago
cicd-goat
cicd-goatPython

A deliberately vulnerable CI/CD environment with 11 challenges to learn and practice CI/CD security.

#security-training#jenkins#devops
Stars2.2k
Forks399
Last commit1 year ago
hashes
hashesRust

A collection of cryptographic hash functions implemented in pure Rust, designed for interoperability and no_std environments.

#groestl#gost#sha2
Stars2.2k
Forks315
Last commit17 hours ago
lettre
lettreRust

A Rust library for sending emails with multiple transport methods, SMTP security, and async support.

#hacktoberfest#unicode#authentication
Stars2.2k
Forks223
Last commit17 hours ago
Jwt.Net
Jwt.NetC#

A comprehensive JWT (JSON Web Token) implementation for .NET with support for encoding, decoding, and ASP.NET Core integration.

#nuget#authentication#jwt
Stars2.2k
Forks466
Last commit1 year ago
IAM
IAM

A curated list of resources covering Identity and Access Management (IAM) for cloud platforms, including authentication, authorization, and security.

#zero-trust#openid#oauth2
Stars2.2k
Forks178
Last commit4 days ago
Awesome List of IAM: Fraud links
Awesome List of IAM: Fraud links

A curated list of resources covering Identity and Access Management (IAM) for cloud platforms, including authentication, authorization, and security.

#zero-trust#oauth2#authentication
Stars2.2k
Forks178
Last commit4 days ago
MozDef
MozDefPython

An open-source security incident response platform that automates and coordinates enterprise defense workflows.

#elk-stack#siem#enterprise-defense
Stars2.2k
Forks325
Last commit4 years ago
OAuth2
OAuth2Ruby

A Ruby wrapper for OAuth 2.0, 2.1, and OpenID Connect (OIDC) client implementations.

#oidc-client#oauth2#authentication
Stars2.2k
Forks624
Last commit5 days ago
gokart
gokartGo

A static analysis tool for Go that finds vulnerabilities using SSA form and source-to-sink tracing to reduce false positives.

#false-positive-reduction#source-to-sink-tracing#static-code-analysis
Stars2.2k
Forks108
Last commit2 years ago
GitMiner
GitMinerPython

An advanced search and automation tool for mining code and sensitive information from public GitHub repositories.

#information-gathering-tool#sensitive-data-discovery#reconnaissance
Stars2.1k
Forks430
Last commit5 months ago
Policy Sentry
Policy SentryPython

Automatically generate least-privilege IAM policies for AWS based on resource ARNs and access levels.

#aws-security#hacktoberfest#salesforce
Stars2.1k
Forks152
Last commit11 days ago
policy_sentry
policy_sentryPython

Automatically generate least-privilege IAM policies for AWS by specifying resource ARNs and access levels.

#aws-security#hacktoberfest#salesforce
Stars2.1k
Forks152
Last commit11 days ago
PreviousPage 9 of 12Next

Related Tags

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
7 years ago
#Authentication66
#Docker64
#Go54
#Security Tools48
#Self Hosted47
#Penetration Testing43
#Devsecops42
#Golang41
#Authorization40
#Cryptography37
#Hacktoberfest35
#Web Security35