/

lunasec

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

最終更新日:358日前
1.4k

QuivrHQ/quivr
355日前28.0k

Your GenAI Second Brain 🧠 A personal productivity assistant (RAG) ⚡️🤖 Chat with your docs (PDF, CSV, ...) & apps using Langchain, GPT 3.5 / 4 turbo, Private, Anthropic, VertexAI, Ollama, LLMs, that you can share with users ! Local & Private alternative to OpenAI GPTs & ChatGPT powered by retrieval-augmented generation.

SpacehuhnTech/esp8266_deauther
355日前12.7k

Affordable WiFi hacking platform for testing and learning

getsops/sops
355日前14.7k

Simple and flexible tool for managing secrets

prowler-cloud/prowler
355日前9.2k

Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more

radareorg/radare2
355日前19.3k

UNIX-like reverse engineering framework and command-line toolset

ajinabraham/nodejsscan
357日前2.3k

nodejsscan is a static security code scanner for Node.js applications.

crev-dev/cargo-crev
355日前2.0k

A cryptographically verifiable code review system for the cargo (Rust) package manager.

bit4woo/python_sec
359日前1.3k

python安全和代码审计相关资料收集 resource collection of python security and code review

x64dbg/x64dbg
355日前42.7k

An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.

monero-project/monero
355日前8.4k

Monero: the secure, private, untraceable cryptocurrency

firezone/firezone
355日前6.0k

WireGuard®-based zero trust access platform that supports OIDC authentication, user/group sync, and requires zero firewall configuration.

unicorn-engine/unicorn
355日前7.0k

Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)

OpenZeppelin/openzeppelin-contracts
355日前23.7k

OpenZeppelin Contracts is a library for secure smart contract development.

Consensys/smart-contract-best-practices
356日前7.2k

A guide to smart contract security best practices

capstone-engine/capstone
355日前6.9k

Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), BPF, Ethereum VM, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.

arkenfox/user.js
355日前8.8k

Firefox privacy, security and anti-tracking: a comprehensive user.js template for configuration and hardening

jofpin/trape
356日前7.8k

People tracker on the Internet: OSINT analysis and research tool by Jose Pino

CTFd/CTFd
355日前5.2k

CTFs as you need them

michenriksen/gitrob
355日前5.8k

Reconnaissance tool for GitHub organizations

eth0izzle/shhgit
359日前3.8k

Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.

caddyserver/caddy
355日前52.3k

Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

simplex-chat/simplex-chat
355日前5.0k

SimpleX - the first messaging platform operating without user identifiers of any kind - 100% private by design! iOS, Android and desktop apps 📱!

hjdhjd/homebridge-unifi-protect
355日前1.3k

:video_camera: Complete HomeKit integration for all UniFi Protect device types with full support for most features including HomeKit Secure Video, and more. https://homebridge.io

mitmproxy/mitmproxy
354日前33.6k

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

berty/berty
355日前7.2k

Berty is a secure peer-to-peer messaging app that works with or without internet access, cellular data or trust in the network

animir/node-rate-limiter-flexible
355日前2.8k

Atomic counters and rate limiting tools. Limit resource access at any scale.

matomo-org/matomo
354日前18.8k

Liberating Web Analytics. Star us on Github? +1. Matomo is the leading open alternative to Google Analytics that gives you full control over your data. Matomo lets you easily collect data from websites & apps and visualise this data and extract insights. Privacy is built-in. We love Pull Requests!

allinurl/goaccess
354日前17.2k

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

jedisct1/piknik
363日前2.4k

Copy/paste anything over the network.

trimstray/nginx-admins-handbook
354日前13.3k

How to improve NGINX performance, security, and other important things.

authorizerdev/authorizer
354日前1.3k

Your data, your control. Fully open source, authentication and authorization. No lock-ins. Deployment in Railway in 120 seconds || Spin a docker image as a micro-service in your infra. Built in login page and Admin panel out of the box.

ImranR98/Obtainium
354日前4.2k

Get Android App Updates Directly From the Source.

yokoffing/Betterfox
354日前3.2k

Firefox user.js for speed, privacy, and security. Your favorite browser, but better.

build-trust/ockam
354日前4.3k

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at massive scale.

introlab/rtabmap
357日前2.4k

RTAB-Map library and standalone application

osquery/osquery
355日前20.9k

SQL powered operating system instrumentation, monitoring, and analytics.

bettercap/bettercap
354日前15.4k

The Swiss Army knife for 802.11, BLE, IPv4 and IPv6 networks reconnaissance and MITM attacks.

linkedin/school-of-sre
354日前7.6k

At LinkedIn, we are using this curriculum for onboarding our entry-level talents into the SRE role.

pirate/wireguard-docs
354日前4.3k

📖 Unofficial WireGuard Documentation: Setup, Usage, Configuration, and full example setups for VPNs supporting both servers & roaming clients.

evilsocket/opensnitch
354日前9.4k

OpenSnitch is a GNU/Linux interactive application firewall inspired by Little Snitch.

gravitl/netmaker
354日前8.7k

Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.

jopohl/urh
354日前10.2k

Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

presidentbeef/brakeman
354日前6.9k

A static analysis security vulnerability scanner for Ruby on Rails applications

hwdsl2/setup-ipsec-vpn
354日前23.6k

Scripts to build your own IPsec VPN server, with IPsec/L2TP, Cisco IPsec and IKEv2

swisskyrepo/PayloadsAllTheThings
354日前55.4k

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

OWASP/CheatSheetSeries
354日前25.8k

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

StevenBlack/hosts
354日前24.8k

🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.

shieldfy/API-Security-Checklist
354日前21.8k

Checklist of the most important security countermeasures when designing, testing, and releasing your API

aquasecurity/trivy
354日前20.5k

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

imthenachoman/How-To-Secure-A-Linux-Server
354日前16.5k

An evolving how-to guide for securing a Linux server.

ory/hydra
354日前14.9k

OpenID Certified™ OpenID Connect and OAuth Provider written in Go - cloud native, security-first, open source API security for your infrastructure. SDKs for any language. Works with Hardware Security Modules. Compatible with MITREid.

bridgecrewio/checkov
354日前6.4k

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

turbot/steampipe
354日前6.2k

Zero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.

chaifeng/ufw-docker
354日前3.7k

To fix the Docker and UFW security flaw without disabling iptables

toolswatch/blackhat-arsenal-tools
356日前3.7k

Official Black Hat Arsenal Security Tools Repository

wpscanteam/wpscan
355日前8.1k

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

walidshaari/Certified-Kubernetes-Security-Specialist
354日前1.9k

Curated resources help you prepare for the CNCF/Linux Foundation CKS 2021 "Kubernetes Certified Security Specialist" Certification exam. Please provide feedback or requests by raising issues, or making a pull request. All feedback for improvements are welcome. thank you.

open-policy-agent/opa
354日前8.9k

Open Policy Agent (OPA) is an open source, general-purpose policy engine.

yeahhub/Hacking-Security-Ebooks
353日前4.8k

Top 100 Hacking & Security E-Books (Free Download)

winsiderss/systeminformer
353日前10.0k

A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsider Seminars & Solutions, Inc. @ http://www.windows-internals.com

OWASP/wstg
353日前6.4k

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

upgundecha/howtheysre
353日前8.8k

A curated collection of publicly available resources on how technology and tech-savvy organizations around the world practice Site Reliability Engineering (SRE)

jeremylong/DependencyCheck
353日前5.7k

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

google/tamperchrome
355日前4.1k

Tamper Dev is an extension that allows you to intercept and edit HTTP/HTTPS requests and responses as they happen without the need of a proxy. Works across all operating systems (including Chrome OS).

webpro/knip
353日前5.1k

✂️ Find unused files, dependencies and exports in your JavaScript and TypeScript projects. Knip it before you ship it!

MobSF/Mobile-Security-Framework-MobSF
353日前15.9k

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

FISCO-BCOS/FISCO-BCOS
360日前2.3k

FISCO BCOS(发音为/ˈfɪskl bi:ˈkɒz/)是一个稳定、高效、安全的许可区块链平台,已被广泛应用于现实的行业应用。截至目前,已拥有4000多家企事业单位,300多个行业数字标杆应用,涵盖文化版权、司法服务、政府服务、物联网、金融、智慧社区、房地产建设、社区治理、乡村振兴等领域。FISCO BCOS (pronounced /ˈfɪskl bi:ˈkɒz/) is a stable, efficient, and secure permissioned blockchain platform that has been widely used in real-world industry applications.

theupdateframework/python-tuf
366日前1.6k

Python reference implementation of The Update Framework (TUF)

infobyte/evilgrade
356日前1.2k

Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

cloud-custodian/cloud-custodian
354日前5.1k

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources