Skip to main content
buildradar
Sign in
Topic · security

security

Tracked open-source repos tagged security, sorted by stars.

1,255 repos
  • burp-ai-agent@six2dez

    Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

    1,477+0Star change over the last 7 days
  • Awesome Vulnerable Applications

    1,477+0Star change over the last 7 days
  • otpauth@hectorm

    One Time Password (HOTP/TOTP) library for Node.js, Deno, Bun and browsers.

    1,473+0Star change over the last 7 days
  • lunasec@lunasec-io

    LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

    1,469+0Star change over the last 7 days
  • infra@infrahq

    Infra provides authentication and access management to servers and Kubernetes clusters.

    1,467+0Star change over the last 7 days
  • ssh-mitm@ssh-mitm

    SSH-MITM - ssh audits made simple

    1,464+0Star change over the last 7 days
  • FACT_core@fkie-cad

    Firmware Analysis and Comparison Tool

    1,463+0Star change over the last 7 days
  • username-anarchy@urbanadventurer

    Username tools for penetration testing

    1,462+0Star change over the last 7 days
  • wrongsecrets@OWASP

    Vulnerable app with examples showing how to not use secrets

    1,459+0Star change over the last 7 days
  • OpenIntuneBaseline@SkipToTheEndpoint

    Community-driven baseline to accelerate Intune adoption and learning.

    1,457+0Star change over the last 7 days
  • qtap@qpoint-io

    Qtap: An eBPF agent that captures pre-encrypted network traffic, providing rich context about egress connections and their originating processes.

    1,456+0Star change over the last 7 days
  • git-hound@tillson

    Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

    1,454+0Star change over the last 7 days
  • Seth@SySS-Research

    Perform a MitM attack and extract clear text credentials from RDP connections

    1,454+0Star change over the last 7 days
  • magisk-frida@ViRb3

    🔐 Run frida-server on boot with Magisk, always up-to-date

    1,453+0Star change over the last 7 days
  • PaperKnife@potatameister

    Privacy-first PDF utility (Zero-Server Architecture). Merge, split, compress, and edit PDFs 100% locally on your device. No uploads, no servers, no tracking.

    1,444+0Star change over the last 7 days
  • uac@tclahr

    UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It automates the collection of artifacts from a wide range of Unix-like systems, including AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris.

    1,441+0Star change over the last 7 days
  • FiercePhish@Raikia

    FiercePhish is a full-fledged phishing framework to manage all phishing engagements. It allows you to track separate phishing campaigns, schedule sending of emails, and much more.

    1,437+0Star change over the last 7 days
  • oss-fuzz-gen@google

    LLM powered fuzzing via OSS-Fuzz.

    1,434+0Star change over the last 7 days
  • dockovpn@dockovpn

    🔐 Out of the box stateless openvpn-server docker image which starts in less than 2 seconds

    1,428+0Star change over the last 7 days
  • my-fingerprint@omegaee

    保护你的浏览器指纹 | Protect Your Browser Fingerprints | Chrome, Edge, Firefox | 扩展 / Extension

    1,422+0Star change over the last 7 days
  • 📗 How to write cross-platform Node.js code

    1,421+0Star change over the last 7 days
  • A free book about developing secure and robust systems software.

    1,413+0Star change over the last 7 days
  • noir@owasp-noir

    Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

    1,412+0Star change over the last 7 days
  • trivy-action@aquasecurity

    Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

    1,408+0Star change over the last 7 days
  • pdfrip@mufeedvh

    A multi-threaded PDF password cracking utility equipped with commonly encountered password format builders and dictionary attacks.

    1,408+0Star change over the last 7 days
  • mintotp@susam

    Minimal TOTP generator in 20 lines of Python

    1,399+0Star change over the last 7 days
  • Windows-Optimize-Harden-Debloat@simeononsecurity

    Enhance the security and privacy of your Windows 10 and Windows 11 deployments with our fully optimized, hardened, and debloated script. Adhere to industry best practices and Department of Defense STIG/SRG requirements for optimal performance and security.

    1,388+0Star change over the last 7 days
  • eufy_security@fuatakgun

    Home Assistant integration to manage Eufy Security devices as cameras, home base stations, doorbells, motion and contact sensors.

    1,387+0Star change over the last 7 days
  • cloudformation-guard@aws-cloudformation

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    1,386+0Star change over the last 7 days
  • TREVORspray@blacklanternsecurity

    TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!

    1,383+0Star change over the last 7 days
← Back to topics