security-headers
Zero-dependency Node.js CLI that grades a website's HTTP security headers (HSTS, CSP, X-Frame-Options and more) from A+ to F. Flags dangerous CSP values an
Enter
Guia de Cyber Security
Guia de Cyber Security is a cybersecurity learning guide for people entering or specializing in information security. It collects study resources, tools, caree
Enter
SCAP Security Guide
The purpose of this project is to create security policy content for various platforms, Red Hat Enterprise Linux, Fedora, Ubuntu, Debian, SUSE Linux Enterprise
Enter
Symfony Security Core
Part of the Symfony framework, the Security Core component provides the foundational tools for managing authentication, authorization, and access control in PH
Enter
Spring Security
Spring Security is a powerful and highly customizable authentication and access-control framework. It is the de-facto standard for securing Spring-based applic
Enter
security-audit
security-audit is a coding-agent skill for running structured security audits on software repositories. It organizes the audit into multiple phases so the agen
Enter
Codex Security
Codex Security is an OpenAI command-line tool and TypeScript SDK for discovering, validating, and fixing vulnerabilities in source code. It can scan an entire
Enter
Symfony Security Bundle
Symfony Security Bundle is a powerful tool for adding authentication and authorization to Symfony applications. It provides mechanisms for managing user roles,
Enter
Personal Security Checklist
Personal Security Checklist is a comprehensive, plain-language checklist for improving personal digital security and privacy across devices, accounts, and ever
Enter
Agentic Security
The open-source Agentic LLM Vulnerability Scanner. Features: Customizable Rule Sets or Agent based attacksDocumentation availableExamples availableComprehensiv
Enter
Code Quality and Security for Java
Hundreds of unique rules to find Java bugs, code smells & vulnerabilities. Sonar static analysis helps you build and maintain high-quality Java code. Cover
Enter
KubeArmor
KubeArmor is a runtime Kubernetes security engine. It uses eBPF and Linux Security Modules(LSM) for fortifying workloads based on Cloud Containers, IoT/Edge, a
Enter
Docker Scout CLI
Designed to identify security issues, outdated packages, and potential compliance problems within container images, Docker Scout surfaces dependency vulnerabil
Enter
Shuffle Automation
Shuffle is an open-source security automation platform built for security teams, MSSPs, and service providers. It helps teams connect tools, automate repetitiv
Enter
Stacklok Minder
Minder by Stacklok is an open source platform that helps development teams and open source communities build more secure software, and prove to others that wha
Enter
fsociety
fsociety is a modular penetration testing framework designed to provide a unified interface for running and managing a wide range of security tools. It focuses
Enter
DroneSploit
DroneSploit is a Python command-line framework for authorized security testing of drones and related wireless systems. Its interface is modeled after Metasploi
Enter
secator
Secator is a task and workflow runner designed to streamline security assessments by integrating many well-known penetration testing and reconnaissance tools i
Enter
deepsec
deepsec is an agent-powered security harness for finding vulnerabilities in large codebases. It is designed to run on the user’s own infrastructure, using codi
Enter
CodeBurn
CodeBurn is a security-focused tool designed to evaluate and stress-test codebases using adversarial techniques, often leveraging AI to identify vulnerabilitie
Enter
Arkime
Arkime is an open source, large-scale, full packet capturing, indexing, and database system designed to augment existing security infrastructure by storing and
Enter
Obscura
Obscura is a security-focused project aimed at providing tools and techniques for enhancing privacy, anonymity, and operational security in digital environment
Enter
tirreno
tirreno is a security framework. tirreno [tir.?r?.no] helps understand, monitor, and protect your product from threats, fraud, and abuse. While classic cyberse
Enter
OSCAL
NIST is developing the Open Security Controls Assessment Language (OSCAL), a set of hierarchical, XML-, JSON-, and YAML-based formats that provide a standardiz
Enter
firejail
Firejail is a SUID program that reduces the risk of security breaches by restricting the running environment of untrusted applications using Linux namespaces a
Enter
PentestAgent
PentestAgent is an open-source autonomous security testing platform designed to help organizations identify vulnerabilities and assess security posture by simu
Enter
Anthropic Cybersecurity Skills
Anthropic Cybersecurity Skills is a collection of structured prompts, tools, and workflows designed to enhance the cybersecurity capabilities of AI systems. It
Enter
Is Website Vulnerable
A command-line tool that scans websites for known security vulnerabilities in their frontend dependencies by checking against the Snyk vulnerability database.
Enter
Cr3dOv3r
Cr3dOv3r is a penetration testing and security auditing tool designed to demonstrate and analyze the risks associated with credential reuse across multiple onl
Enter
fleet
Fleet exposes familiar concepts from traditional MDMs like custom attributes and dynamic grouping, but in a way that lets you work directly with data and event
Enter
EMBA
EMBA is designed as the central firmware analysis tool for penetration testers and product security teams. It supports the complete security analysis process s
Enter
Vault
Manage secrets and protect sensitive data. Secure, store and tightly control access to tokens, passwords, certificates, encryption keys for protecting secrets
Enter
GuardDog
guarddog is an open-source security tool by DataDog designed to detect risks in open-source dependencies. It helps developers analyze software supply chain ris
Enter
OWASP Amass
The OWASP Amass Project has developed a tool to help information security professionals perform network mapping of attack surfaces and perform external asset d
Enter
Claw Hunter
Claw Hunter is an open-source security tool designed to detect, analyze, and mitigate risks associated with autonomous AI agents, specifically those built on p
Enter
SecurityHeaderAudit
SecurityHeaderAudit is a beginner-friendly defensive security tool that checks websites for common HTTP security headers and reports missing protections. Categ
Enter
var-lib-apt-lists
This is an application that can also be fetched from https: //sourceforge.net/projects/var-lib-apt-lists/. It has been hosted in OnWorks in order to be run onl
Enter
Laravel CSP
By default, all scripts on a webpage are allowed to send and fetch data to any site they want. This can be a security problem. Imagine one of your JavaScript d
Enter
wpa-dictionary
wpa-dictionary is a Wi-Fi security wordlist repository focused on WPA and WPA2 password auditing. It collects several password dictionary files that can be use
Enter
PoisonTap
PoisonTap is a security research project that demonstrates risks involving USB networking, locked computers, browser sessions, and internal network exposure. I
Enter
SIPVicious
SIPVicious OSS has been around since 2007 and is actively updated to help security teams, QA and developers test SIP-based VoIP systems and applications. Open-
Enter
Wazuh
Wazuh is an open-source, unified security platform that delivers extended detection and response (XDR) and SIEM capabilities for on-premises, cloud, container,
Enter
pwd.sh
pwd.sh is a lightweight command-line utility designed to generate strong, secure passwords using simple and reproducible methods directly from the terminal. Th
Enter
Claude BugHunter
Claude-BugHunter is a Claude Code skill bundle focused on bug hunting, security testing, and external red-team research workflows. It packages a large collecti
Enter
CookieGuardAudit
CookieGuardAudit is a simple Python command-line security tool that checks a website's cookies for common security flag issues. It helps users quickly spot
Enter
CyberStrikeAI
CyberStrikeAI is an AI-native security testing platform built in Go that brings autonomous penetration testing, vulnerability discovery, and attack chain analy
Enter
Tailsnitch
tailsnitch is a security auditing tool for Tailscale networks (tailnets) that scans configurations and device setups to detect risky or overly permissive setti
Enter
Lighthouse Ethereum
Lighthouse is an Ethereum consensus client that connects to other Ethereum consensus clients to form a resilient and decentralized proof-of-stake blockchain. L
Enter
AWS EKS Terraform module
Terraform module which creates AWS EKS (Kubernetes) resources. Windows-based node support is limited to a default user data template that is provided due to th
Enter
thc-hydra
Number one of the biggest security holes are passwords, as every password security study shows. This tool is a proof of concept code, to give researchers and s
Enter
Null-CLi
NullSquare is an AI-powered security platform that can do both penetration testing and compliance auditing. Features: pentestingcompliance auditcode review Au
Enter
Spring Boot Demo
This repository is a hands-on, “deep learning by doing” collection of Spring Boot demos that you can run and study module by module. It currently includes 66 p
Enter
Trivy Operator
The Trivy Operator leverages Trivy to continuously scan your Kubernetes cluster for security issues. The scans are summarised in security reports as Kubernetes
Enter
Sigma
Welcome to the Sigma main rule repository. The place where detection engineers, threat hunters and all defensive security practitioners collaborate on detectio
Enter
Falco
Falco is a open source project to detect abnormal application behavior in a cloud native environment like Kubernetes. This cloud native runtime security projec
Enter
Raccoon
Raccoon is a high-performance offensive security tool designed to assist with reconnaissance and vulnerability scanning during penetration testing and security
Enter
bearer
Welcome to the Bearer documentation. Bearer is a static application security testing (SAST) tool that scans your source code and analyzes your data flows to di
Enter
HexStrike AI MCP Agents
HexStrike AI is an MCP server that lets LLM agents autonomously operate a large catalog of offensive-security tools. Its goal is to bridge “language models” an
Enter
NPQ
npq is a security-focused package manager that analyzes npm dependencies for potential vulnerabilities before installation. It helps developers ensure the safe
Enter
Trail of Bits Skills Marketplace
Trail of Bits Skills Marketplace is a specialized Claude Code skills marketplace built by the security research firm Trail of Bits that focuses on enhancing AI
Enter
Vulnhuntr
Vulnhuntr is an open source security tool that uses large language models to analyze codebases and identify remotely exploitable vulnerabilities. It focuses on
Enter
BigBountyRecon
BigBountyRecon is an open source reconnaissance tool designed to assist security researchers, penetration testers, and bug bounty hunters during the early stag
Enter
Application Inspector
Microsoft Application Inspector is a software source code characterization tool that helps identify coding features of first or third party software components
Enter
DEVIL FISH
Devil-Fish is a Windows application for analyzing Portable Executable (PE) files such as EXE and DLL files. It provides information about the file structure, s
Enter
LLM Guard
LLM Guard is an open-source security toolkit designed to protect large language model applications from various security risks and adversarial attacks. The lib
Enter
Arcjet
Arcjet helps developers protect their apps in just a few lines of code. Implement rate limiting, bot protection, email verification, and defense against common
Enter
Passbolt API
Passbolt API is an open-source password manager designed for teams. It allows users to securely store and share passwords using end-to-end encryption. Passbolt
Enter
Mobile Verification Toolkit
Mobile Verification Toolkit (MVT) is a collection of utilities to simplify and automate the process of gathering forensic traces helpful to identify a potentia
Enter
Universal Intel Wi-Fi BT Drivers Updater
Universal Intel Wi-Fi & Bluetooth Drivers Updater automatically detects Intel wireless hardware and installs the latest official drivers with enterprise-gr
Enter
MagSpoof
MagSpoof is a hardware and security research project that demonstrates magnetic stripe emulation. It was created to explore how magnetic stripe systems work an
Enter
Anya
Anya is a privacy-first static malware analysis tool for Windows, Linux, and macOS. It combines PE, ELF, and Mach-O binary analysis with MITRE ATT&CK mappi
Enter
Exploitarium
Exploitarium is a consolidated archive of public proof-of-concept vulnerability research and exploit writeups. It gathers older standalone research repositorie
Enter
truffleHog
truffleHog searches through git repositories for high entropy strings and secrets, digging deep into commit history. TruffleHog runs behind the scenes to scan
Enter
malware_training_vol1
malware_training_vol1 is an educational repository for Windows malware analysis training. It is designed to help learners understand common malware techniques
Enter
SonarQube
SonarQube empowers all developers to write cleaner and safer code. Thousands of automated Static Code Analysis rules, protecting your app on multiple fronts, a
Enter
nebula
Nebula is a scalable overlay networking tool with a focus on performance, simplicity and security. It lets you seamlessly connect computers anywhere in the wor
Enter
Master Spring and Spring Boot
Master Spring and Spring Boot is a comprehensive educational project that teaches how to build enterprise-grade Java applications using the Spring ecosystem. I
Enter
DeathStar
DeathStar is a Python-based red-team automation project that integrates with the Empire REST API for Active Directory security assessment. Its main purpose is
Enter
Lantern
Can't access your favorite apps? Download Lantern to easily access videos, messaging, and other popular apps while at school or work. Lantern is an applica
Enter
Rancher
From datacenter to cloud to edge, Rancher lets you deliver Kubernetes-as-a-Service. Rancher is a complete software stack for teams adopting containers. It addr
Enter
Defending Code Reference Harness
Defending Code Reference Harness is a reference implementation for autonomous vulnerability discovery and remediation with Claude. It is designed for security
Enter
Stegcore
Stegcore combines cryptography and steganography to hide encrypted data inside ordinary files. It encrypts your payload before embedding it, so the hidden cont
Enter
Wapiti
Wapiti is a vulnerability scanner for web applications. It currently search vulnerabilities like XSS, SQL and XPath injections, file inclusions, command execut
Enter
BurpSuite for Pentester
BurpSuite for Pentester is a structured learning repository for web application security testing with Burp Suite. It is designed for penetration testers, bug b
Enter
The Book of Secret Knowledge
The Book of Secret Knowledge is a large curated knowledge base for developers, system administrators, security learners, and technical power users. It collects
Enter
HOL Guard
HOL Guard is an open-source security layer designed to protect AI agents and their local tool ecosystems at runtime. It evaluates supported actions for secret
Enter
Privilege-Escalation
Privilege Escalation is a practical cybersecurity reference for learning how attackers gain higher permissions after obtaining initial access to a system. It i
Enter
Full Stack Computer Scanner
The Full Stack Computer Scanner is a read-only Windows security diagnostics tool for system awareness. No ads. No accounts. No data collection. Fully offline.
Enter
SkillSpector
SkillSpector is a security scanner built to evaluate AI agent skills before they are installed or trusted. It helps teams inspect skills used by tools such as
Enter
SpringBoot Labs
SpringBoot-Labs is a comprehensive learning and reference repository created by yudaocode that explores advanced concepts, features, and best practices in Spri
Enter
NextDNS
NextDNS protects you from all kinds of security threats, blocks ads and trackers on websites and in apps and provides a safe and supervised Internet for kids,
Enter
SpringAll
SpringAll is a comprehensive learning project that gathers a wide range of Spring, Spring Boot, and Spring Cloud demos in one repository. It is designed for de
Enter
Username Anarchy
Username Anarchy is an open source command line tool designed to generate possible usernames for use in penetration testing and security assessments. It focuse
Enter
Skill Scanner
This repository is a public security-focused scanning tool intended to analyze and assess AI agent skills for potential issues, quality concerns, and vulnerabi
Enter
LINKERD
Enterprise power without enterprise complexity. Linkerd adds security, observability, and reliability to any Kubernetes cluster. 100% open source, CNCF graduat
Enter
Harpoon
Harpoon is a command line tool designed to assist with open source intelligence (OSINT) and threat intelligence investigations. It helps security professionals
Enter
Pterodactyl Panel
Pterodactyl® is a free, open-source game server management panel built with PHP, React, and Go. Designed with security in mind, Pterodactyl runs all game serve
Enter
Monkey Code
Monkey Code is an enterprise-grade AI programming assistant designed to transform how development teams collaborate, build, and manage code across complex envi
Enter
Conscrypt
Conscrypt is a modern TLS/SSL provider for Java that replaces the default JCE/JCA crypto stack with one backed by BoringSSL for better performance and security
Enter
CloudQuery
CloudQuery extracts, transforms and loads your cloud assets into normalized PostgreSQL tables. CloudQuery enables you to assess, audit, and monitor the configu
Enter
ByteHook
ByteHook is a ByteDance-hosted project whose name suggests a hooking or instrumentation library, likely used for hooking system calls or API calls for monitori
Enter
uncover
Uncover is an open source reconnaissance tool designed to quickly discover exposed hosts on the internet by querying multiple search engine APIs through a unif
Enter
gitGraber
gitGraber is a Python-based security tool designed to monitor GitHub in real time to detect exposed sensitive information in publicly indexed repositories. It
Enter
CrossLinked
CrossLinked is an open source LinkedIn enumeration tool designed to collect employee names associated with a target organization. Instead of accessing LinkedIn
Enter
MagicUSB
### Magic USB (2014) A security experiment I made when I was 17. It shuts down the PC when a USB flash drive is inserted. Unfortunately, it does not shut down
Enter
AI-Infra-Guard
AI-Infra-Guard (A.I.G.) is an open platform for auditing the security of artificial intelligence (AI) systems, developed by Tencent’s Zhuque Lab. It is designe
Enter
ProxyCrypt
ProxyCrypt is a command line tool that creates encrypted volumes within a file or a hard drive. Encryption and decryption are made on the fly, allowing you to
Enter
SipLine
SipLine is a modern, lightweight SIP softphone for Windows 10/11 built with .NET 9 WPF. It provides enterprise-grade VoIP communication with a focus on perform
Enter
Tutanota
Tutanota is an open source email client focused on security and privacy. It is built with end-to-end encryption and 2FA, so you can be assured of utmost email
Enter
tracecat
Tracecat is an open-source Tines / Splunk SOAR alternative for security engineers. We're building the features of Tines using enterprise-grade open-source
Enter
Universal Intel Chipset Device Updater
Universal Intel Chipset Device Updater is an advanced, security-focused tool that automatically detects your Intel hardware and installs the latest official ch
Enter
encrypt
encrypt is a multi-platform, file encryption application. Binary packages are currently provided for Arch, Debian, Fedora, MS Windows, Android and OS X. For fu
Enter
WhatWeb
WhatWeb is a Ruby-based web scanner for fingerprinting websites. It identifies CMS, server technologies, JavaScript frameworks, and other characteristics by an
Enter
USBShield
USBShield stands out as a free and open-source option for users seeking security against unauthorized USB access. Unlike many competing paid solutions, it offe
Enter
PrivateBin
PrivateBin is a minimalist, open-source online pastebin that allows users to securely share text data. It encrypts the content client-side, ensuring that no on
Enter
Cloudflare Worker JWT
cloudflare-worker-jwt is a JavaScript library for handling JSON Web Tokens (JWTs) inside Cloudflare Workers. It enables authentication, token validation, and s
Enter
Advanced-Root-Checker
Advanced Root Checker is a free, open-source Android app that detects if your device has been rooted. All 34 checks run entirely offline on your device.No data
Enter
Wabe
Wabe is an open-source backend that allows you to create your own fully customizable backend in just a few minutes. It handles database access, automatic Graph
Enter
HackBrowserData
HackBrowserData is an open-source tool that could help you decrypt data ( password|bookmark|cookie|history|credit card|download|localStorage|extension ) from t
Enter
YubiKey Guide
The YubiKey-Guide by drduh is a community-maintained, in-depth tutorial and reference on how to use a YubiKey (hardware authentication token) with GPG, SSH, an
Enter
JMD5Sum
With JMD5Sum it is possible to calculate and/or compare two MD5 files and/or texts in just a few clicks. Once you have chosen the file or entered the text, cop
Enter
RustDesk
RustDesk is a full-featured open source remote control alternative for self-hosting and security with minimal configuration. Desktop versions use Flutter or Sc
Enter
pe_to_shellcode
pe_to_shellcode is a research-oriented tool that converts a Windows Portable Executable into a form that can be loaded from memory like shellcode. The resultin
Enter
HestiaCP
HestiaCP is an open-source web hosting control panel designed to manage web servers efficiently. It provides a simple and intuitive graphical interface to mana
Enter
RabbitRemoteControl
Rabbit Remote Control is a open-source, cross-platform, multi-protocol remote control software. Allows you to use any device and system in anywhere and remotel
Enter
Authlib
The ultimate Python library in building OAuth and OpenID Connect servers. Various built-in high-level framework integrations for both clients and servers, aimi
Enter
Soap
A SOAP client and server for node.js. This module lets you connect to web services using SOAP. It also provides a server that allows you to run your own SOAP s
Enter
Password Pusher
Give your users the tools to be secure by default. Password Pusher is an open source application to communicate passwords over the web. Links to passwords expi
Enter
Hubble
Hubble is a fully distributed networking and security observability platform for cloud native workloads. It is built on top of Cilium and eBPF to enable deep v
Enter
The Astrid Book
The Astrid Book is the canonical reference project for Astrid OS. It documents the kernel, capsule model, host ABI, bus, and security model in one structured t
Enter
Boulder
This is an implementation of an ACME-based CA. The ACME protocol allows the CA to automatically verify that an applicant for a certificate actually controls an
Enter
React Native Auth0
With a few lines of code, you can have Auth0 integrated into any app written in any language, and any framework. We provide 30+ SDKs & Quickstarts to help
Enter
Zuul
Zuul is an L7 application gateway that offers many capabilities, including dynamic routing, monitoring, security, resiliency and more. It is used in the backen
Enter
LetoDMS
LetoDMS is an open-source, web-based document management system (DMS) written in PHP with a database backend. LetoDMS provides document meta-data, version cont
Enter
Hacks
Hacks is a collection of experimental scripts, utilities, and one-off tools created to solve specific problems in security research, data processing, and autom
Enter
Authelia
Authelia is an open-source authentication and authorization server and portal fulfilling the identity and access management (IAM) role of information security
Enter
Keycastr
KeyCastr requires access to the macOS Accessibility API in order to receive your key events and broadcast the keystrokes you are interested in. On newer versio
Enter
Spam Filter Zone
The project goal is to create server-side web application, capable of detecting and blocking spam for multiple mailboxes. Features: detecting different sender
Enter
xpoc
xpoc is a lightweight command-line scanner created for fast emergency response in supply chain vulnerability scanning. It is designed to help security teams te
Enter
ZIO JSON
ZIO Json is a fast and secure JSON library with tight ZIO integration. The goal of this project is to create the best all-round JSON library for Scala. Extreme
Enter
improve
improve is an agent skill that audits a codebase and writes implementation plans for other agents or humans to execute. Its core idea is to use a stronger mode
Enter
Svix
Build a secure, reliable, and scalable webhook platform in minutes using the Svix webhook service. Webhooks require a lot more engineering time, resources and
Enter
s2n
s2n-tls is a C99 implementation of the TLS/SSL protocols that is designed to be simple, small, fast, and with security as a priority. It is released and licens
Enter
Harbor
Harbor is an open-source trusted cloud native registry project that stores, signs, and scans content. Harbor extends the open-source Docker Distribution by add
Enter
Tarantool
In OLTP scenarios, Tarantool can be used instead of relational databases. Such a solution will work many times faster. With Tarantool, you can replace the trad
Enter
cert-manager
Automate certificate management in cloud native environments. Cert-manager builds on top of Kubernetes, introducing certificate authorities and certificates as
Enter
Wemake Django Template
What this project is all about? The main idea of this project is to provide a fully configured template for django projects, where code quality, testing, docum
Enter
cordum
Cordum is the infrastructure layer for the Agentic Era. Unlike standard "agent builders," Cordum is an enterprise-grade platform designed to run, manag
Enter
Fara-7B
Fara-7B is a Microsoft initiative aimed at bringing rigor, transparency, and structured evaluation to AI systems through automated and customizable assessment
Enter
ECC
ECC is an agent harness performance optimization system for AI coding tools such as Claude Code, Codex, Opencode, and similar environments. It packages rules,
Enter
Privacy Respecting
Privacy Respecting is a curated list of privacy-focused services, software, and educational resources. It is organized as a reference guide for users who want
Enter
Bottlerocket OS
Bottlerocket is a free and open-source Linux-based operating system meant for hosting containers. Bottlerocket focuses on security and maintainability, providi
Enter
OpenVAS Scanner
OpenVAS Scanner is the scanner component of Greenbone Community Edition and serves as a full-featured vulnerability scanning engine. It executes a continuously
Enter
Optimal State
Optimal State is a complete performance suite that does it all: database optimization, automated backups, page caching, brute force protection, 2FA, search &am
Enter
Evilginx v.1.1.0
Evilginx v.1.1.0 is the original version of a man-in-the-middle phishing research framework created to demonstrate risks in web authentication systems. It used
Enter
Betterfox
Betterfox is an opinionated configuration profile for Mozilla Firefox designed to improve everyday web browsing by making the browser faster, more private, and
Enter
Cerbos
Cerbos is an authorization layer that evolves with your product. It enables you to define powerful, context-aware access control rules for your application res
Enter
JavaTutorial
Java Tutorial is a large Chinese-language knowledge base built from years of practical Java development experience. It connects core Java material with Java EE
Enter
GoClaw
GoClaw is an enterprise AI agent platform that rebuilds OpenClaw in Go for stronger concurrency, simpler deployment, and production-oriented multi-agent orches
Enter
FileDNA
FileDNA is an advanced cybersecurity solution developed by CyberQuay Inc. that delivers comprehensive analysis and proactive neutralization of suspicious and m
Enter
OrientDB
OrientDB is an Open Source Multi-Model NoSQL DBMS with the support of Native Graphs, Documents, Full-Text search, Reactivity, Geo-Spatial and Object Oriented c
Enter
iDeal-DNS-Switcher
iDeal DNS Switcher is a simple utility that allows you to switch between 18 DNS configurations from 10 privacy-oriented providers with the click of a button. T
Enter
Bitwarden Client Applications
Bitwarden client applications (web, browser extension, desktop, and cli). This repository houses all Bitwarden client applications except the mobile applicatio
Enter
AmneziaWG for Windows
AmneziaWG for Windows is a dedicated Windows client designed for securely connecting to VPN servers using the AmneziaWG protocol. Based on the WireGuard for Wi
Enter
waybackurls
waybackurls is a command-line reconnaissance tool that retrieves historical URLs associated with a given domain by querying the Internet Archive’s Wayback Mach
Enter
Dokploy
Streamline your operations with our all-in-one platform, perfect for managing projects, data, and system health with simplicity and efficiency. Simplify your p
Enter
Cloudflare OS
Cloudflare OS is an open-source AI productivity environment originally developed for internal use across Cloudflare. It combines an agent chat interface, compa
Enter
spoof
spoof is a cross-platform Node.js utility designed to simplify MAC address spoofing and network interface identity manipulation for developers, security resear
Enter
Evilginx 3.0
Evilginx 3.0 is a standalone security-testing framework that demonstrates reverse-proxy phishing attacks against modern web authentication systems. It sits bet
Enter
Brakeman
Brakeman is a free vulnerability scanner specifically designed for Ruby on Rails applications. It statically analyzes Rails application code to find security i
Enter
ggshield
GitGuardian’s ggshield is an open-source command-line interface (CLI) tool designed to help developers and security teams detect hardcoded secrets and sensitiv
Enter
Osmedeus Core Engine
Osmedeus is a Workflow Engine for Offensive Security that allows you to build and run a reconnaissance system on a wide range of targets, including domains, UR
Enter
GnuTLS
GnuTLS is an open-source secure communications library designed to implement cryptographic protocols such as TLS, SSL, and DTLS for protecting data transmitted
Enter
dgs-framework
The DGS Framework (Domain Graph Service) is a GraphQL server framework for Spring Boot, developed by Netflix. Annotation based Spring Boot programming model. T
Enter
IdentityServer
The most flexible and standards-compliant OpenID Connect and OAuth 2.0 framework for ASP.NET Core. IdentityServer gives you full control over your UI, UX, busi
Enter
MQTT Protocol Chinese Version
MQTT is a Chinese translation of the OASIS MQTT 3.1.1 protocol specification for developers working with messaging, machine-to-machine systems, and the Interne
Enter
cargo-crev
A cryptographically verifiable code review system for the cargo (Rust) package manager. cargo-crev is an implementation of Crev as a command-line tool integrat
Enter
System Prompts and Models of AI Tools
System Prompts and Models of AI Tools is a large open-source repository that collects and documents system prompts, internal tools, and model configurations us
Enter
Destructive Command Guard
Destructive Command Guard is a high-performance safety hook for AI coding agents and command-line workflows. It intercepts shell commands before execution and
Enter
anti-distill
anti-distill is a research-oriented project focused on protecting machine learning models from knowledge distillation attacks, where smaller models attempt to
Enter
Kuma
Kuma is a modern Envoy-based service mesh that can run on every cloud, in a single or multi-zone capacity, across both Kubernetes and VMs. Thanks to its broad
Enter
Hakrawler
hakrawler is a lightweight command-line web crawler built in Go that is designed to quickly discover URLs, endpoints, and assets within web applications. It is
Enter
agentOS
agentOS is a portable, open-source runtime environment designed specifically for executing AI agents efficiently, acting as a lightweight operating system tail
Enter
ufonet
UFONet - Is a set of hacktivist tools that allow launching coordinated DDoS and DoS attacks and combine both in a single offensive. It also works as an encrypt
Enter
Dr0p1t-Framework
Dr0p1t-Framework is a penetration testing tool designed to generate advanced and stealthy droppers capable of delivering and executing payloads on target syste
Enter
Capslock
Capslock is a command-line tool for analyzing the capabilities of Go packages to reveal what privileged operations their code and dependencies can perform. Rat
Enter
Mitaka
Mitaka is a browser extension designed to streamline Open Source Intelligence (OSINT) investigations by enabling quick searches and scans directly from the bro
Enter
Google Kubernetes Engine (GKE) Samples
Google Kubernetes Engine (GKE) Samples repository is a comprehensive collection of sample applications and reference implementations designed to demonstrate ho
Enter
dnstwist
dnstwist is an open source cybersecurity tool designed to identify malicious or suspicious domain names that imitate legitimate websites. It works by generatin
Enter
Open Gauss
Open Gauss is an enterprise-grade open-source relational database management system designed to handle large-scale data processing with high performance, relia
Enter
sqliv
SQLiv is a command-line security tool designed to identify SQL injection vulnerabilities in web applications through automated scanning techniques. Written pri
Enter
h8mail
h8mail is an open source email OSINT and password breach hunting tool designed to help security professionals investigate compromised credentials associated wi
Enter
Cloud Custodian
Cloud Custodian enables users to be well managed in the cloud. The simple YAML DSL allows you to easily define rules to enable a well-managed cloud infrastruct
Enter
Zerocode
A community-developed, free, open source, microservices API automation and load testing framework built using JUnit core runners for Http REST, SOAP, Security,
Enter
Codex Autoresearch
Codex Autoresearch is an autonomous software improvement framework that enables AI coding agents to iteratively enhance codebases without continuous human inpu
Enter
SecretScanner
Deepfence SecretScanner can find unprotected secrets in container images or file systems. Secrets are any kind of sensitive or private data that gives authoriz
Enter
Shortcut Virus Removal Tool
Shortcut Virus Removal Tool (SVRT) Shortcut Virus Removal Tool is a powerful, portable, easy to use and safe program for fixing USB drives, external HDD / SSD
Enter
linkedin2username
linkedin2username is an open source OSINT (Open Source Intelligence) tool designed to generate lists of potential usernames by scraping employee information fr
Enter
LiteBox
LiteBox is a security-focused “library OS” sandboxing project that aims to shrink the interface between an application and its host environment to reduce attac
Enter
IPRanges
ipranges is an open source repository that provides continuously updated lists of IP address ranges associated with major cloud providers, search engine crawle
Enter