/

faraday

Open Source Vulnerability Management Platform

最終更新日:626日前
4.5k

mattermost/mattermost
630日前27.5k

Mattermost is an open source platform for secure collaboration across the entire software development lifecycle..

lunasec-io/lunasec
631日前1.4k

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

httpie/cli
628日前31.1k

🥧 HTTPie CLI — modern, user-friendly command-line HTTP client for the API era. JSON support, colors, sessions, downloads, plugins & more.

QuivrHQ/quivr
628日前28.0k

Your GenAI Second Brain 🧠 A personal productivity assistant (RAG) ⚡️🤖 Chat with your docs (PDF, CSV, ...) & apps using Langchain, GPT 3.5 / 4 turbo, Private, Anthropic, VertexAI, Ollama, LLMs, that you can share with users ! Local & Private alternative to OpenAI GPTs & ChatGPT powered by retrieval-augmented generation.

getsops/sops
628日前14.7k

Simple and flexible tool for managing secrets

prowler-cloud/prowler
628日前9.2k

Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more

radareorg/radare2
628日前19.3k

UNIX-like reverse engineering framework and command-line toolset

ajinabraham/nodejsscan
630日前2.3k

nodejsscan is a static security code scanner for Node.js applications.

crev-dev/cargo-crev
628日前2.0k

A cryptographically verifiable code review system for the cargo (Rust) package manager.

bit4woo/python_sec
632日前1.3k

python安全和代码审计相关资料收集 resource collection of python security and code review

jenkins-x/jx
629日前4.5k

Jenkins X provides automated CI+CD for Kubernetes with Preview Environments on Pull Requests using Cloud Native pipelines from Tekton

ovh/cds
629日前4.4k

Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform

werf/werf
628日前3.9k

A solution for implementing efficient and consistent software delivery to Kubernetes facilitating best practices.

x64dbg/x64dbg
628日前42.7k

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

monero-project/monero
628日前8.4k

Monero: the secure, private, untraceable cryptocurrency

vitobotta/hetzner-k3s
628日前1.3k

A CLI tool to create and manage Kubernetes clusters in Hetzner Cloud using the lightweight distribution k3s by Rancher.

sqlmapproject/sqlmap
628日前29.9k

Automatic SQL injection and database takeover tool

chef/chef
629日前7.4k

Chef Infra, a powerful automation platform that transforms infrastructure into code automating how infrastructure is configured, deployed and managed across any environment, at any scale

StackStorm/st2
628日前5.8k

StackStorm (aka "IFTTT for Ops") is event-driven automation for auto-remediation, incident responses, troubleshooting, deployments, and more for DevOps and SREs. Includes rules engine, workflow, 160 integration packs with 6000+ actions (see https://exchange.stackstorm.org) and ChatOps. Installer at https://docs.stackstorm.com/install/index.html

shuttle-hq/shuttle
628日前5.3k

Build & ship backends without writing any infrastructure files.

rundeck/rundeck
628日前5.2k

Enable Self-Service Operations: Give specific users access to your existing tools, services, and scripts

healthchecks/healthchecks
628日前7.1k

Open-source cron job and background task monitoring service, written in Python & Django

firezone/firezone
628日前6.0k

WireGuard®-based zero trust access platform that supports OIDC authentication, user/group sync, and requires zero firewall configuration.

unicorn-engine/unicorn
628日前7.0k

Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)

OpenZeppelin/openzeppelin-contracts
628日前23.7k

OpenZeppelin Contracts is a library for secure smart contract development.

Consensys/smart-contract-best-practices
629日前7.2k

A guide to smart contract security best practices

capstone-engine/capstone
628日前6.9k

Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), BPF, Ethereum VM, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.

arkenfox/user.js
628日前8.8k

Firefox privacy, security and anti-tracking: a comprehensive user.js template for configuration and hardening

jofpin/trape
629日前7.8k

People tracker on the Internet: OSINT analysis and research tool by Jose Pino

CTFd/CTFd
628日前5.2k

CTFs as you need them

go-gitea/gitea
628日前40.7k

Git with a cup of tea! Painless self-hosted all-in-one software development service, including Git hosting, code review, team collaboration, package registry and CI/CD

michenriksen/gitrob
628日前5.8k

Reconnaissance tool for GitHub organizations

eth0izzle/shhgit
632日前3.8k

Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.

caddyserver/caddy
628日前52.3k

Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

excalidraw/excalidraw
627日前68.2k

Virtual whiteboard for sketching hand-drawn like diagrams

simplex-chat/simplex-chat
628日前5.0k

SimpleX - the first messaging platform operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!

hjdhjd/homebridge-unifi-protect
628日前1.3k

:video_camera: Complete HomeKit integration for all UniFi Protect device types with full support for most features including HomeKit Secure Video, and more. https://homebridge.io

mitmproxy/mitmproxy
627日前33.6k

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

TryQuiet/quiet
628日前1.8k

A private, p2p alternative to Slack and Discord built on Tor & IPFS

animir/node-rate-limiter-flexible
628日前2.8k

Atomic counters and rate limiting tools. Limit resource access at any scale.

dokku/dokku
627日前25.7k

A docker-powered PaaS that helps you build and manage the lifecycle of applications

MichaelCade/90DaysOfDevOps
627日前25.1k

I am using this repository to document my journey learning about DevOps. I began this process on January 1, 2022, and plan to continue until March 31. I will be dedicating one hour each day, including weekends, to gaining a foundational understanding of the various aspects of DevOps. This will be a 90-day intensive study period. 2022 & 2023 inc.

matomo-org/matomo
627日前18.8k

Liberating Web Analytics. Star us on Github? +1. Matomo is the leading open alternative to Google Analytics that gives you full control over your data. Matomo lets you easily collect data from websites & apps and visualise this data and extract insights. Privacy is built-in. We love Pull Requests!

jedisct1/piknik
636日前2.4k

Copy/paste anything over the network.

trimstray/nginx-admins-handbook
627日前13.3k

How to improve NGINX performance, security, and other important things.

authorizerdev/authorizer
627日前1.3k

Your data, your control. Fully open source, authentication and authorization. No lock-ins. Deployment in Railway in 120 seconds || Spin a docker image as a micro-service in your infra. Built in login page and Admin panel out of the box.

RocketChat/Rocket.Chat
627日前38.3k

The communications platform that puts data protection first.

zulip/zulip
627日前19.4k

Zulip server and web application. Open-source team chat that helps teams stay productive and focused.

ImranR98/Obtainium
627日前4.2k

Get Android App Updates Directly From the Source.

RocketChat/Rocket.Chat.Electron
631日前1.6k

Official OSX, Windows, and Linux Desktop Clients for Rocket.Chat

yokoffing/Betterfox
627日前3.2k

Firefox user.js for speed, privacy, and security. Your favorite browser, but better.

cryptpad/cryptpad
628日前5.0k

Collaborative office suite, end-to-end encrypted and open-source.

build-trust/ockam
627日前4.3k

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at massive scale.

osquery/osquery
628日前20.9k

SQL powered operating system instrumentation, monitoring, and analytics.

bettercap/bettercap
627日前15.4k

The Swiss Army knife for 802.11, BLE, IPv4 and IPv6 networks reconnaissance and MITM attacks.

linkedin/school-of-sre
627日前7.6k

At LinkedIn, we are using this curriculum for onboarding our entry-level talents into the SRE role.

HariSekhon/DevOps-Bash-tools
628日前2.3k

1000+ DevOps Bash Scripts - AWS, GCP, Kubernetes, Docker, CI/CD, APIs, SQL, PostgreSQL, MySQL, Hive, Impala, Kafka, Hadoop, Jenkins, GitHub, GitLab, BitBucket, Azure DevOps, TeamCity, Spotify, MP3, LDAP, Code/Build Linting, pkg mgmt for Linux, Mac, Python, Perl, Ruby, NodeJS, Golang, Advanced dotfiles: .bashrc, .vimrc, .gitconfig, .screenrc, tmux..

pirate/wireguard-docs
627日前4.3k

📖 Unofficial WireGuard Documentation: Setup, Usage, Configuration, and full example setups for VPNs supporting both servers & roaming clients.

evilsocket/opensnitch
627日前9.4k

OpenSnitch is a GNU/Linux interactive application firewall inspired by Little Snitch.

gravitl/netmaker
627日前8.7k

Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.

jopohl/urh
627日前10.2k

Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

mattermost/focalboard
627日前18.4k

Focalboard is an open source, self-hosted alternative to Trello, Notion, and Asana.

ONLYOFFICE/CommunityServer
629日前2.5k

Free open source office suite with business productivity tools: document and project management, CRM, mail aggregator.

presidentbeef/brakeman
627日前6.9k

A static analysis security vulnerability scanner for Ruby on Rails applications

hwdsl2/setup-ipsec-vpn
627日前23.6k

Scripts to build your own IPsec VPN server, with IPsec/L2TP, Cisco IPsec and IKEv2

swisskyrepo/PayloadsAllTheThings
627日前55.4k

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

OWASP/CheatSheetSeries
627日前25.8k

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

StevenBlack/hosts
627日前24.8k

🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.

shieldfy/API-Security-Checklist
627日前21.8k

Checklist of the most important security countermeasures when designing, testing, and releasing your API

aquasecurity/trivy
627日前20.5k

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

imthenachoman/How-To-Secure-A-Linux-Server
627日前16.5k

An evolving how-to guide for securing a Linux server.

ory/hydra
627日前14.9k

OpenID Certified™ OpenID Connect and OAuth Provider written in Go - cloud native, security-first, open source API security for your infrastructure. SDKs for any language. Works with Hardware Security Modules. Compatible with MITREid.

adnanh/webhook
627日前9.7k

webhook is a lightweight incoming webhook server to run shell commands

khuedoan/homelab
628日前7.5k

Modern self-hosting framework, fully automated from empty disk to operating services with a single command.

gruntwork-io/terragrunt
627日前7.5k

Terragrunt is a thin wrapper for Terraform that provides extra tools for working with multiple Terraform modules.

gruntwork-io/terratest
628日前7.3k

Terratest is a Go library that makes it easier to write automated tests for your infrastructure code.

runatlantis/atlantis
627日前7.0k

Terraform Pull Request Automation

bridgecrewio/checkov
627日前6.4k

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

turbot/steampipe
627日前6.2k

Zero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.

buger/goreplay
627日前18.1k

GoReplay is an open-source tool for capturing and replaying live HTTP traffic into a test environment in order to continuously test your system with real data. It can be used to increase confidence in code deployments, configuration changes and infrastructure changes.

chaifeng/ufw-docker
627日前3.7k

To fix the Docker and UFW security flaw without disabling iptables

geerlingguy/ansible-vagrant-examples
629日前2.0k

Ansible examples using Vagrant to deploy to local VMs.

wpscanteam/wpscan
628日前8.1k

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

walidshaari/Certified-Kubernetes-Security-Specialist
627日前1.9k

Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or making a pull request. All feedback for improvements are welcome. thank you.

goq/telegram-list
628日前4.4k

List of telegram groups, channels & bots // Список интересных групп, каналов и ботов телеграма // Список чатов для программистов

WeMakeDevs/roadmaps
627日前3.8k

This repository contains the list of communities and job portals you can join and apply to.

kapicorp/kapitan
629日前1.7k

Generic templated configuration management for Kubernetes, Terraform and other things

yeahhub/Hacking-Security-Ebooks
626日前4.8k

Top 100 Hacking & Security E-Books (Free Download)

toeverything/blocksuite
626日前3.4k

🧩 Content editing tech stack for the web - BlockSuite is a toolkit for building editors and collaborative applications.

woodpecker-ci/woodpecker
626日前3.5k

Woodpecker is a simple yet powerful CI/CD engine with great extensibility.

winsiderss/systeminformer
626日前10.0k

A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsider Seminars & Solutions, Inc. @ http://www.windows-internals.com

hackmdio/codimd
627日前8.9k

CodiMD - Realtime collaborative markdown notes on all platforms.

OWASP/wstg
626日前6.4k

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

upgundecha/howtheysre
626日前8.8k

A curated collection of publicly available resources on how technology and tech-savvy organizations around the world practice Site Reliability Engineering (SRE)

go-task/task
626日前9.5k

A task runner / simpler Make alternative written in Go

jeremylong/DependencyCheck
626日前5.7k

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.