Fast, free and open-source spam filtering system.
COtheractive
151 projects32 categoriesshowing 61–120, page 2 of 3
Sourced fromsbilly/awesome-security
Fast, free and open-source spam filtering system.
COtheractive
Full-featured C2 framework which silently persists on webserver via evil PHP oneliner. Built for stealth persistence, with many privilege-escalation & post-exploitation features.
PythonGNU General Public License v3.0slowing
Fuzzing engine and fuzz testing framework.
PythonGNU General Public License v2.0active
docker-compose -d up - cicd-goat
PythonApache License 2.0slowing
A curated list of cryptography papers, articles, tutorials and howtos.
Otherslowing
A curated list of awesome Linux Containers frameworks, libraries and software.
Apache License 2.0slowing
Store secrets using AWS KMS and DynamoDB
PythonApache License 2.0dormant
finds publicly known security vulnerabilities in a website's frontend JavaScript libraries.
JavaScriptApache License 2.0active
Fast Incident Response, a cybersecurity incident management platform.
JavaScriptGNU General Public License v3.0active
The Rekall Framework is a completely open collection of tools, implemented in Python under the Apache and GNU General Public License, for the extraction and analysis of digital artifacts computer systems.
PythonGNU General Public License v2.0dormantarchived
High-level multi-platform cryptographic framework for protecting sensitive data: secure messaging with forward secrecy and secure data storage (AES256GCM), suits for building end-to-end encrypted applications.
CApache License 2.0steady
Hardened allocator designed for modern systems. It has integration into Android's Bionic libc and can be used externally with musl and glibc as a dynamic library for use on other Linux-based platforms. It will gain more portability / integration over time.
CMIT Licenseactive
High-performance remote packet capture and collection tool, distributed tcpdump for cloud native environments.
GoApache License 2.0slowingarchived
Stores secrets in AWS DynamoDB, encrypted at rest and integrates with IAM
PythonApache License 2.0slowingarchived
Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets.
GoApache License 2.0dormantarchived
tcpflow is a program that captures data transmitted as part of TCP connections (flows), and stores the data in a way that is convenient for protocol analysis and debugging. Each TCP flow is stored in its own file. Thus, the typical TCP flow will be stored in two files, one for each direction. tcpflow can also process stored 'tcpdump' packet flows.
C++GNU General Public License v3.0steady
A tool to collect DNS records passively to aid Incident handling, Network Security Monitoring (NSM) and general digital forensics. PassiveDNS sniffs traffic from an interface or reads a pcap-file and outputs the DNS-server answers to a log file. PassiveDNS can cache/aggregate duplicate DNS answers in-memory, limiting the amount of data in the logfile without loosing the essens in the DNS answer.
Cslowing
Kippo is a medium interaction SSH honeypot designed to log brute force attacks and, most importantly, the entire shell interaction performed by the attacker.
Pythonslowing
Open source serverless security lake platform on AWS that lets you ingest, store, and analyze petabytes of security data into an Apache Iceberg data lake and run realtime Python detections as code.
RustApache License 2.0slowing
open-appsec is an open source machine-learning security engine that preemptively and automatically prevents threats against Web Application & APIs.
C++Apache License 2.0active
Database security suite: proxy for data protection with transparent "on the fly" data encryption, data masking and tokenization, SQL firewall (SQL injections prevention), intrusion detection system.
GoApache License 2.0steady
Database for PII with automatic encryption/tokenization, sandboxed components for handling data, and centralized authorization controls.
TypeScriptOtherslowing
Flutter Reverse Engineering Framework
PythonGNU General Public License v3.0dormantarchived
Server for two-man rule style file encryption and decryption.
GoOthersteadyarchived
A curated list of awesome newsletters to keep up to date on security news via e-mail.
GNU General Public License v2.0active
A automated Red Team Infrastructure deployement using Docker.
PythonMIT Licensedormant
A collection of fascinating and bizarre Censys Search Queries.
PythonCreative Commons Zero v1.0 Universalactive
A modular vulnerability scanner with automatic report generation capabilities.
PythonBSD 3-Clause "New" or "Revised" Licenseactive
IntelMQ is a solution for CERTs for collecting and processing security feeds, pastebins, tweets using a message queue protocol. It's a community driven initiative called IHAP (Incident Handling Automation Project) which was conceptually designed by European CERTs during several InfoSec events. Its main goal is to give to incident responders an easy way to collect & process threat intelligence thus improving the incident handling processes of CERTs. ENSIA Homepage.
PythonGNU Affero General Public License v3.0steady
Enterprise-grade web vulnerability scanner with 60+ attack modules, built in Rust for penetration testing and security assessments.
RustOtheractive
Pompem is an open source tool, which is designed to automate the search for exploits in major databases. Developed in Python, has a system of advanced search, thus facilitating the work of pentesters and ethical hackers. In its current version, performs searches in databases: Exploit-db, 1337day, Packetstorm Security...
PythonGNU General Public License v3.0dormant
A curated Cyber "Security Orchestration, Automation and Response (SOAR)" resources list.
slowing
A tool for translating Dalvik bytecode to equivalent Java bytecode.
PythonApache License 2.0dormant
It is a handy utility to help avoid running dangerous commands with an extra approval step. You will immediately get a small prompt challenge that will double verify your action when risky patterns are detected.
RustApache License 2.0steady
Multiplatform command-line password manager
PythonMIT Licenseslowing
A collection of OSX and iOS security resources
Apache License 2.0active
A curated list of awesome resources about Electron.js (in)security
slowing
Node.js file-upload malware scanner with MIME sniffing, ZIP-bomb protection and optional YARA rules.
JavaScriptISC Licenseactive
A curated list of Bluetooth security resources.
steady
OpenSOC integrates a variety of open source big data technologies in order to offer a centralized tool for security monitoring and analysis.
Apache License 2.0dormant
A open source Static Application Security Testing tool (SAST) written in GoLang for Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C# and Javascript (Node.js).
GoMIT Licensedormant
An open-source policy-as-code software that provides analytics for multi-cloud and SaaS.
GoMozilla Public License 2.0slowing
PFQ is a functional networking framework designed for the Linux operating system that allows efficient packets capture/transmission (10G and beyond), in-kernel functional processing and packets steering across sockets/end-points.
CGNU General Public License v2.0dormant
Very flexible and fast interactive HTTP enumeration/fuzzing.
GoMIT Licenseactive
ir-rescue is a Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.
BatchfileOtherdormant
PowerShell-based Windows artifact collection for threat hunting and incident response.
PowerShellGNU General Public License v3.0slowing
A Linux packet crafting tool.
CGNU General Public License v2.0dormant
HoneyPy is a low to medium interaction honeypot. It is intended to be easy to: deploy, extend functionality with plugins, and apply custom configurations.
PythonGNU General Public License v2.0slowingarchived
Open source API for security and compliance audit logging.
TypeScriptApache License 2.0active
Keyscope is an extensible key and secret validation for checking active secrets against multiple SaaS vendors built in Rust
RustApache License 2.0slowing
Substation is a cloud native data pipeline and transformation toolkit written in Go.
GoMIT Licensesteady
HonSSH is a high-interaction Honey Pot solution. HonSSH will sit between an attacker and a honey pot, creating two separate SSH connections between them.
PythonBSD 3-Clause "New" or "Revised" Licensedormantarchived
A curated list of ARM exploitation resources.
slowing
Apache Spot is open source software for leveraging insights from flow and packet analysis.
PythonApache License 2.0dormantarchived
ACSTIS helps you to scan certain web applications for AngularJS Client-Side Template Injection (sometimes referred to as CSTI, sandbox escape or sandbox bypass). It supports scanning a single request but also crawling the entire web application for the AngularJS CSTI vulnerability.
PythonMIT Licensedormant
A curated list of WebSocket security resources.
Apache License 2.0dormant
IronBee is an open source project to build a universal web application security sensor. IronBee as a framework for developing a system for securing web applications - a framework for building a web application firewall (WAF).
XSLTApache License 2.0dormant
A daily updated summary of the most frequent types of security incidents currently being reported from different sources.
PythonMIT Licenseactive
Fast customisable cross-platform suspicious file finder. Supports md5/sha1/sha256 hashs, litteral/wildcard strings, regular expressions and YARA rules. Can easily be packed to be deployed on any windows / linux host.
GoOthersteady
CIF is a cyber threat intelligence management system. CIF allows you to combine known malicious threat information from many sources and use that information for identification (incident response), detection (IDS) and mitigation (null route).
PerlGNU Lesser General Public License v3.0dormantarchived