Open highlighted repo slot
Put your repository first
Promote a GitHub repo at the top of Awesome repository list views for 7 days.
Awesome List
A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.
GitHub stars and default-branch commits for sbilly/awesome-security.
Open highlighted repo slot
Promote a GitHub repo at the top of Awesome repository list views for 7 days.
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Simple and flexible tool for managing secrets
In-depth attack surface mapping and asset discovery
CrowdSec - the open-source and participative security solution offering crowdsourced protection against malicious IPs and access to the most advanced real-world CTI.
A vault for securely storing and accessing AWS credentials in development environments
Tfsec is now part of Trivy
Safely store secrets in Git/Mercurial/Subversion
Open device management
:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
CLI for managing secrets
Adversary tradecraft detection, protection, and hunting
:star: :star: Distributed tcpdump for cloud native environments :star: :star:
Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com
Database security suite. Database proxy with field-level encryption, search through encrypted data, SQL injections prevention, intrusion detection, honeypots. Supports client-side and proxy-side ("transparent") encryption. SQL, NoSQL.
Go server for two-man rule style file encryption and decryption.
Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to implement software inside your DevOps pipeline. Support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C#, and Javascript (Node.js).
The open-source policy-as-code software that provides analysis for Multi-Cloud and SaaS environments, you can get insight with natural language (powered by OpenAI).
Fast HTTP enumerator
A Vault CLI
Substation is a toolkit for routing, normalizing, and enriching security event and audit logs.
Discover internet-wide misconfigurations while drinking coffee
Incident Response - Fast suspicious file finder
preflight helps you verify scripts and executables to mitigate chain of supply attacks such as the recent Codecov hack.