Security
287 items from sbilly/awesome-security ★14,959
-
Trivy github.com
Aqua Security's open source simple and comprehensive vulnerability scanner for containers (suitable for CI).
-
jadx github.com
Command line and GUI tools for produce Java source code from Android Dex and Apk files.
-
-
bridgecrewio/checkov :fire::fire::fire::fire::fire: github.com
Static analysis for infrastructure as code manifests (Terraform, Kubernetes, Cloudformation, Helm, Dockerfile, Kustomize) find security misconfiguration and fix them.
-
-
sops github.com
An editor of encrypted files that supports YAML, JSON and BINARY formats and encrypts with AWS KMS and PGP.
-
Deepfence Threat Mapper github.com
Powerful runtime vulnerability scanner for kubernetes, virtual machines and serverless.
-
official OWASP ZAP github.com
OWASP - An open-source web application vulnerability scanner, including an API for CI/CD integration.
-
KICS github.com
An infrastructure-as-code scanning tool, find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle. Can be extended for additional policies.
-
Metasploit github.com
A tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shellcode archive and related research.
-
themis github.com
Multilanguage framework for making typical encryption schemes easy to use: data at rest, authenticated data exchange, transport protection, authentication, and so on.
-
-
acra github.com
Network encryption proxy to protect database-based applications from data leaks: strong selective encryption, SQL injections prevention, intrusion detection system.
-
PayloadsAllTheThings github.com
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
-
-
Fibratus github.com
Fibratus is a tool for exploration and tracing of the Windows kernel. It is able to capture the most of the Windows kernel activity - process/thread creation and termination, file system I/O, registry, network activity, DLL loading/unloading and much more. Fibratus has a very…
-
android-security-awesome github.com
A collection of android security related resources. A lot of work is happening in academia and industry on tools to perform dynamic analysis, static analysis and reverse engineering of android apps.
-
Maigret github.com
🆓 “Collect a dossier on a person by username from 3000+ sites”, useful for account enumeration and unmasking fraud or abuse.
-
Fleet device management github.com
Lightweight, programmable telemetry for servers and workstations.
-
FingerprintJS github.com
Identifies browser and hybrid mobile application users even when they purge data storage. Allows you to detect account takeovers, account sharing and repeated malicious activity.
-
-
grr github.com
GRR Rapid Response is an incident response framework focused on remote live forensics.
-
-
-
-
OWASP Mobile Security Testing Guide github.com
A comprehensive manual for mobile app security testing and reverse engineering.
-
-
-
PhpSploit github.com
Full-featured C2 framework which silently persists on webserver via evil PHP oneliner. Built for stealth persistence, with many privilege-escalation & post-exploitation features.
-
Firezone github.com
Open-source VPN server and egress firewall for Linux built on WireGuard. Firezone is easy to set up (all dependencies are bundled thanks to Chef Omnibus), secure, performant, and self hostable.
- next page of items loading…