Skip to main content
buildradar
Sign in
Topic · security-tools

security-tools

Tracked open-source repos tagged security-tools, sorted by stars.

331 repos
  • urlcrazy@urbanadventurer

    Generate and test domain typos and variations to detect and perform typo squatting, URL hijacking, phishing, and corporate espionage.

    692+0Star change over the last 7 days
  • packj@ossillate-inc

    Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

    692+0Star change over the last 7 days
  • cve-lite-cli@OWASP

    Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix, JSON output, and practical remediation guidance.

    692+10Star change over the last 7 days
  • cyberbro@stanfrbd

    A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

    686+2Star change over the last 7 days
  • scant3r@MindPatch

    ScanT3r - Module based Bug Bounty Automation Tool ( use Lotus instead github.com/bugBlocker/lotus )

    684-2Star change over the last 7 days
  • ppfuzz@dwisiswant0

    A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀

    676+1Star change over the last 7 days
  • TokenUniverse@diversenok

    An advanced tool for working with access tokens and Windows security policy.

    670+0Star change over the last 7 days
  • Impost3r@ph4ntonn

    👻Impost3r -- A linux password thief

    666+2Star change over the last 7 days
  • galah@0x4D31

    Galah: An LLM-powered web honeypot.

    664+1Star change over the last 7 days
  • Reveil@Lessica

    Bringing back the most advanced system and security analysis tool.

    663+1Star change over the last 7 days
  • aws-sso-cli@synfinatic

    A powerful tool for using AWS Identity Center for the CLI and web console.

    661+0Star change over the last 7 days
  • Flask-Unsign@Paradoxis

    Command line tool to fetch, decode, brute-force and craft session cookies of a Flask application by guessing secret keys.

    660+0Star change over the last 7 days
  • xingrin@yyhuni

    Open-source attack surface management and authorized security automation platform for asset discovery, service probing, scan orchestration, and security result management.

    658+2Star change over the last 7 days
  • api-firewall@wallarm

    Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.

    654+1Star change over the last 7 days
  • reversingBits@mohitmishra786

    A comprehensive collection of cheatsheets for reverse engineering, binary analysis, and assembly programming tools. This repository serves as a one-stop reference for security researchers, reverse engineers, and low-level programmers.

    650+4Star change over the last 7 days
  • gitleaks-action@gitleaks

    Protect your secrets using Gitleaks-Action

    644+3Star change over the last 7 days
  • ansible-role-hardening@konstruktoid

    Ansible role to apply a security baseline. Systemd edition.

    642+3Star change over the last 7 days
  • rita@activecm

    Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

    639+5Star change over the last 7 days
  • GTFONow@Frissi0n

    Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries using GTFOBins.

    638-1Star change over the last 7 days
  • PatrowlManager@Patrowl

    PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform

    638+0Star change over the last 7 days
  • yaklang@yaklang

    A programming language exclusively designed for cybersecurity

    634+2Star change over the last 7 days
  • Godot-Secure@KnifeXRage

    Godot Secure is a Simple Python Script That modify the Godot Source Code Automatically, to integrate Camellia-256 / AES-256 encryption with a unique security token system. This solution creates a cryptographically unique engine build that prevents generic decryption tools from accessing your game assets.

    631+11Star change over the last 7 days
  • bomber@devops-kung-fu

    Scans Software Bill of Materials (SBOMs) for security vulnerabilities

    624+0Star change over the last 7 days
  • :books:Translate the distinct technical blogs. Please star or watch. Welcome to join me.

    621+0Star change over the last 7 days
  • eraser@eraser-dev

    🧹 Cleaning up images from Kubernetes nodes

    619+0Star change over the last 7 days
  • AutorizePro@WuliRuler

    🧿 AutorizePro是一款强大越权检测 Burp 插件,通过增加 AI 辅助分析 && 进一步优化检测逻辑,大幅降低误报率,提升越权漏洞检出效率。 [ AutorizePro is a authorization enforcement detection extension for burp suite. By adding Ai-assisted analysis, it significantly reduces the false positive rate and improves the efficiency of vulnerability detection.

    614+3Star change over the last 7 days
  • EDRHunt@FourCoreLabs

    Scan installed EDRs and AVs on Windows

    611+0Star change over the last 7 days
  • faction@factionsecurity

    Pen Test Report Generation and Assessment Collaboration

    604+1Star change over the last 7 days
  • rekono@pablosnt

    Offensive security platform that automates attack surface discovery and vulnerability management

    603+3Star change over the last 7 days
  • WiFi-password-stealer@AleksaMCode

    Simple Windows and Linux keystroke injection tool that exfiltrates stored WiFi data (SSID and password).

    600+0Star change over the last 7 days
← Back to topics