All Categories → Security → security-tools

Top 654 security-tools open source projects

grapefruit
(WIP) Runtime Application Instruments for iOS. Previously Passionfruit
WWWE
💧 Check your email(s) using popular online services to see if it appears in any data-breach
urlRecon
📝 urlRecon - Info Gathering or Recon tool for Urls -> Retrieves * Whois information of the domain * DNS Details of the domain * Server Fingerprint * IP geolocation of the server
kali-my-linux
Install Kali Linux Tools & Others on your Linux.
nessus-file-analyzer
GUI tool which enables you to parse nessus scan files from Nessus and Tenable.SC by (C) Tenable, Inc. and exports results to a Microsoft Excel Workbook for effortless analysis.
s3-fuzzer
🔐 A concurrent, command-line AWS S3 Fuzzer. Written in Go.
weblogic honeypot
WebLogic Honeypot is a low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware. This is a Remote Code Execution vulnerability.
RapidRepoPull
The goal of this program is to quickly pull and install repos from its list
gosint
Gosint is a distributed asset information collection and vulnerability scanning platform
gradejs
GradeJS analyzes production Webpack bundles without having access to the source code of a website. Instantly see vulnerabilities, outdated packages, and more just by entering a web application URL.
minijail
sandboxing and containment tool used in ChromeOS and Android
cryptonice
CryptoNice is both a command line tool and library which provides the ability to scan and report on the configuration of SSL/TLS for your internet or internal facing web services. Built using the sslyze API and ssl, http-client and dns libraries, cryptonice collects data on a given domain and performs a series of tests to check TLS configuration…
lunasec
LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/
snyk-maven-plugin
Test and monitor your projects for vulnerabilities with Maven. This plugin is officially maintained by Snyk.
charts
Deploy Kubernetes Helm Charts for Check Point CloudGuard
owasp-zap-fileupload-addon
OWASP ZAP add-on for finding vulnerabilities in File Upload functionality.
imap-honey
IMAP or SMTP honeypot written in Golang
IPASN-History
IP ASN History to find ASN announcing an IP and the closest prefix announcing it at a specific date
EzScript
Cyberpatriot born Windows hardening script. It serves as a way to get to baseline and can help specialists further secure the machine.
Blue-Baron
Automate creating resilient, disposable, secure and agile monitoring infrastructure for Blue Teams.
proxmox toolbox
A toolbox to get the firsts configurations of Proxmox VE / BS done in no time
dep-scan
Fully open-source security audit for project dependencies based on known vulnerabilities and advisories. Supports both local repos and container images. Integrates with various CI environments such as Azure Pipelines, CircleCI and Google CloudBuild. No server required!
vilicus
Vilicus is an open source tool that orchestrates security scans of container images(docker/oci) and centralizes all results into a database for further analysis and metrics.
badchars
Bad char generator to instruct encoders such as shikata-ga-nai to transform those to other chars.
appsweep-gradle
This Gradle plugin can be used to continuously integrate app scanning using AppSweep into your Android app build process
ggshield-action
GitGuardian Shield GitHub Action - Find exposed credentials in your commits
ehtk
Ethical Hacking Toolkit is a collection of tools, cheat sheets, and resources for Ethical hackers, Penetration Tester, and Security Researchers etc. It contains almost all tools mentioned in CEH, OSCP, eCPPT and PNPT
dheater
D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which denial-of-service can be performed by enforcing the Diffie-Hellman key exchange.
assisted-log-enabler-for-aws
Assisted Log Enabler for AWS - Find AWS resources that are not logging, and turn them on.
Trapdoor
Serverless honeytoken 🕵🏻‍♂️
prowler
Prowler is an Open Source Security tool for AWS, Azure and GCP to perform Cloud Security best practices assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. It contains hundreds of controls covering CIS, PCI-DSS, ISO27001, GDPR, HIPAA, FFIEC, SOC2, AWS FTR, ENS and custom security frameworks.
601-654 of 654 security-tools projects