function: security
4909 products, primary matches first, then adoption-weighted; health v2 shown.
| Product | Health v2 | Stars | Maturity |
|---|---|---|---|
| HiddenRamblings/TagMo TagMo is an Android application for managing NTAG215, Power Tag, N2 Elite, and Bluetooth NFC tags used with Nintendo amiibo figures on 3DS,… | 86 | 3209 | active |
| D3Ext/WEF WEF is a Wi-Fi Exploitation Framework written in Bash that automates a wide range of wireless attacks against WPA/WPA2/WPA3, WPS, and WEP n… | 52 | 3209 | active |
| tahowallet/extension Taho is a community-owned Web3 cryptocurrency wallet implemented as a browser extension, positioned as an open-source alternative to MetaMa… | 83 | 3204 | active |
| AChep/keyguard-app Keyguard is a multiplatform password manager client for the Bitwarden platform and KeePass (KDBX) files, built with Kotlin and Jetpack Comp… | 91 | 3203 | active |
| jaykali/maskphish MaskPhish is a simple Bash script that masks phishing URLs under normal-looking URLs (e.g., google.com or facebook.com) as a proof of conce… | 42 | 3191 | active |
| vmware/photon Photon OS is an open-source, security-hardened minimal Linux distribution purpose-built as a container host for cloud-native applications, … | 67 | 3178 | active |
| LaurieWired/Malimite Malimite is a Java-based decompiler for iOS and macOS binaries, built on Ghidra, that analyzes IPA files and Application Bundles with direc… | 38 | 3174 | active |
| obfuscar/obfuscar Obfuscar is an open source MIT-licensed obfuscation tool for .NET assemblies that renames metadata to minimal names, making decompiled code… | 93 | 3172 | active |
| crytic/echidna Echidna is a Haskell-based fuzzer for Ethereum smart contracts that performs property-based testing by generating sequences of contract cal… | 89 | 3170 | active |
| pingc0y/URLFinder URLFinder is a fast, easy-to-use Go CLI tool that extracts JS files, URLs, and sensitive information from web pages, including hidden unaut… | 80 | 3170 | active |
| pglombardo/PasswordPusher Password Pusher is an open-source Ruby web application for securely sharing passwords, text, files, and URLs via encrypted, self-deleting l… | 95 | 3169 | active |
| sa7mon/S3Scanner A multi-threaded CLI tool written in Go that scans for misconfigured (open) S3 buckets across AWS and other S3-compatible providers like GC… | 77 | 3165 | active |
| the-tcpdump-group/libpcap libpcap is a system-independent C/C++ library providing a portable API for user-level network packet capture, with BPF-based filtering and … | 76 | 3163 | stable |
| crossutility/Quantumult-X Quantumult X is a network proxy and traffic manipulation tool for iOS, rebuilt from scratch with support for TUN-based traffic, HTTPS MitM … | 72 | 3163 | active |
| NASA-SW-VnV/ikos IKOS is a static analyzer for C and C++ programs based on the theory of Abstract Interpretation, built on LLVM. It provides reusable abstra… | 64 | 3160 | active |
| google-agentic-commerce/AP2 Agent Payments Protocol (AP2) is an open protocol and Python SDK for secure, interoperable payments initiated by AI agents, addressing auth… | 63 | 3160 | active |
| QiuChenly/CoreInject CoreInject (successor to InjectLib) is a macOS application injection and binary-patching tool by QiuChenly, distributed alongside a communi… | 84 | 3157 | active |
| BinDiff BinDiff is an open-source comparison tool for binary files that finds differences and similarities in disassembled code using graph-theoret… | 62 | 3155 | active |
| Devolutions/IronRDP IronRDP is a modular Rust implementation of the Microsoft Remote Desktop Protocol (RDP), providing PDU codecs, connection/session state mac… | 97 | 3137 | active |
| easychen/CookieCloud CookieCloud is a browser extension plus self-hosted server that syncs browser cookies and localStorage across devices with end-to-end encry… | 84 | 3133 | active |
| qltysh/qlty Qlty CLI is a multi-language code quality tool written in Rust that unifies linting, auto-formatting, maintainability analysis, and securit… | 95 | 3130 | active |
| Mic92/sops-nix sops-nix is a NixOS module that provides atomic, declarative secret provisioning based on Mozilla's sops. It decrypts sops-encrypted files … | 67 | 3130 | active |
| PartialVolume/shredos.x86_64 ShredOS is a small bootable Linux distribution for securely erasing disks using nwipe on x86 PCs, servers, and Intel-based Macs. It boots d… | 90 | 3128 | active |
| pallets/itsdangerous ItsDangerous is a Python library for cryptographically signing data so it can be safely passed to untrusted environments (like cookies or U… | 34 | 3127 | stable |
| mozilla/multi-account-containers A Firefox browser extension by Mozilla that separates browsing into color-coded containers with isolated cookie storage, letting users run … | 87 | 3124 | active |
| namazso/SecureUxTheme SecureUxTheme is a Windows utility that removes signature verification of visual styles (themes) in memory, enabling third-party custom the… | 36 | 3115 | active |
| 21y4d/nmapAutomator nmapAutomator is a POSIX-compatible shell script that automates nmap-based network reconnaissance and enumeration, running scans in the bac… | 32 | 3109 | active |
| hardentools/hardentools Hardentools is a Windows utility that reduces the attack surface by disabling risky features in Windows 10/11, Microsoft Office, LibreOffic… | 40 | 3105 | active |
| zegl/kube-score kube-score is a static code analysis tool for Kubernetes object definitions that scores manifests and Helm charts against reliability and s… | 60 | 3102 | active |
| oasislinux/oasis Oasis is a small, fully statically-linked Linux system built around musl, with reproducible builds driven by Lua-generated samurai manifest… | 62 | 3101 | active |
| AMD-OSX/AMD_Vanilla A collection of binary kernel patches that enable near-native AMD CPU support on macOS via the OpenCore bootloader. It supports AMD 15h, 16… | 57 | 3098 | active |
| biggerstar/wedecode Wedecode is a fully automated tool that decompiles WeChat mini-program and mini-game wxapkg packages back into readable source code (JS, WX… | 60 | 3091 | active |
| ulisesbocchio/jasypt-spring-boot A Spring Boot integration of the Jasypt library that enables transparent encryption and decryption of property sources in Spring Boot appli… | 68 | 3088 | active |
| jhaals/yopass Yopass is a self-hostable web application for securely sharing secrets, passwords, and files via one-time, auto-expiring links. Secrets are… | 99 | 3087 | active |
| cel-expr/cel-go cel-go is a Go implementation of the Common Expression Language (CEL), a fast, portable, non-Turing complete expression language with gradu… | 99 | 3085 | stable |
| inspec/inspec Chef InSpec is an open-source testing framework for infrastructure that expresses compliance, security, and policy requirements as human- a… | 92 | 3085 | active |
| OpenSC/OpenSC OpenSC is a set of open-source libraries and command-line tools for working with smart cards, focused on cards that perform cryptographic o… | 80 | 3078 | active |
| krille-chan/fluffychat FluffyChat is an open-source, nonprofit Matrix instant messaging client written in Flutter with a cute, easy-to-use Material You design. It… | 95 | 3077 | active |
| Virtual-Browser/VirtualBrowser VirtualBrowser is a free, open-source anti-fingerprint browser built on Chromium that lets users create and manage multiple isolated browse… | 93 | 3077 | active |
| cloudflare/security-audit-skill A coding-agent skill from Cloudflare that turns an LLM coding agent into a security auditor via a six-phase pipeline (recon, hunting, valid… | 54 | 3077 | active |
| m0bilesecurity/RMS-Runtime-Mobile-Security Runtime Mobile Security (RMS) is a NodeJS-powered web interface built on FRIDA for manipulating Android and iOS apps at runtime. It lets us… | 83 | 3075 | active |
| ThePorgs/Exegol Exegol is a container-based, community-driven hacking environment for offensive security professionals, managed through a Python CLI wrappe… | 97 | 3072 | active |
| korcankaraokcu/PINCE PINCE is a GDB front-end and reverse engineering tool for Linux, focused on game hacking but usable for general reverse engineering. It pro… | 98 | 3069 | active |
| bpc-clone/bpc_firefox_support Support and issue-tracking repository for Bypass Paywalls Clean, a Firefox browser extension that bypasses news site paywalls. Development … | 34 | 3068 | active |
| darkoperator/dnsrecon DNSRecon is a Python-based DNS enumeration tool for security assessments and network troubleshooting. It supports zone transfer checks, gen… | 91 | 3061 | active |
| davesc63/GeoPort GeoPort is a cross-platform desktop application that simulates GPS location on iOS devices running iOS 17 and 18, letting users spoof their… | 61 | 3056 | active |
| claration/Impactor Impactor is an open-source, cross-platform GUI application for signing and sideloading IPA apps onto iOS, iPadOS, and tvOS devices using an… | 80 | 3053 | active |
| aliasvault/aliasvault AliasVault is a privacy-first, end-to-end encrypted password manager with a built-in email alias server, letting users create unique identi… | 86 | 3051 | active |
| OdysseusYuan/LKY_OfficeTools A one-click Windows tool that automates downloading, installing, and activating the latest version of Microsoft Office, including optional … | 23 | 12567 | maintenance |
| open-quantum-safe/liboqs liboqs is an open source C library providing implementations of quantum-resistant (post-quantum) key encapsulation mechanisms and digital s… | 88 | 3044 | active |
| chromium/badssl.com badssl.com is a hosted collection of test subdomains, each deliberately configured with a broken or unusual TLS/SSL setup (expired certific… | 70 | 3043 | active |
| Qianlitp/crawlergo crawlergo is a Go-based browser crawler that uses headless Chrome to discover URLs for web vulnerability scanners. It renders pages, fills … | 27 | 3034 | active |
| 6Kmfi6HP/EDtunnel EDtunnel is a proxy tool deployed on Cloudflare Workers and Pages that supports VLESS and Trojan protocols with configurable proxy IPs, SOC… | 58 | 3029 | active |
| cilame/v_jstools v_jstools is a Chrome extension (Manifest V3) for debugging and reverse-engineering JavaScript on web pages. It provides API hooking, code … | 58 | 3015 | active |
| Kevin-Robertson/Inveigh Inveigh is a cross-platform .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers, with a primary C# version and a legacy Power… | 53 | 3014 | active |
| evgenyneu/keychain-swift A Swift library providing simple helper functions for securely storing and retrieving text, boolean, and Data values in the Apple Keychain.… | 32 | 3012 | stable |
| f-droid/fdroidclient The official Android client for F-Droid, the free and open-source software repository system. It lets users browse, install, and update FOS… | 67 | 3011 | active |
| thinkst/opencanary OpenCanary is a modular, multi-protocol network honeypot daemon written in Python, designed to detect attackers after they breach internal … | 86 | 3003 | active |
| RavenSystem/esp-homekit-devices HAA (Home Accessory Architect) is firmware that adds native Apple HomeKit support and custom configurations to ESP32 and ESP8266 based devi… | 96 | 3002 | active |
| mgeeky/Penetration-Testing-Tools A curated collection of 170+ penetration testing tools, scripts, and cheatsheets developed by the author over years of red teaming and IT s… | 32 | 3001 | active |
| aws-actions/configure-aws-credentials A GitHub Action that configures AWS credential environment variables for use in subsequent workflow steps. It supports OIDC federation for … | 97 | 2996 | active |
| opengrep/opengrep Opengrep is an open-source static application security testing (SAST) engine forked from Semgrep under LGPL-2.1, supporting pattern-based c… | 84 | 2995 | active |
| adryfish/fingerprint-chromium A fingerprint browser built on Ungoogled Chromium that lets users spoof or control browser fingerprint characteristics to avoid detection. … | 76 | 2991 | active |
| kyujin-cho/pixel-volte-patch Pixel IMS is a rootless Android application that enables VoLTE (IMS) on Google Tensor-based Pixel phones by overriding carrier configuratio… | 68 | 2991 | active |
| tegal1337/CiLocks CiLocks is a menu-driven Linux CLI toolkit for Android and iOS security testing, bundling lockscreen brute-force/bypass, ADB data extractio… | 23 | 2991 | active |
| Manisso/fsociety Fsociety is a Python-based penetration testing framework that bundles a menu of hacking tools covering information gathering, password atta… | 74 | 12275 | maintenance |
| baidu/openrasp OpenRASP is Baidu's open-source Runtime Application Self-Protection (RASP) solution that embeds a protection engine directly into the appli… | 43 | 2987 | stable |
| appleboy/gin-jwt A JWT authentication middleware for the Gin web framework in Go, built on golang-jwt/jwt. It provides login handling, token refresh, and ro… | 91 | 2973 | active |
| bethgelab/foolbox Foolbox is a Python library for generating adversarial examples that fool deep neural networks, with state-of-the-art gradient-based and de… | 48 | 2972 | active |
| makoto56/penetration-suite-toolkit A preconfigured Windows 11 penetration testing toolkit distributed as a VM image, bundling a large curated collection of security tools wit… | 34 | 2970 | active |
| frknkrc44/HMA-OSS HMA-OSS is a Zygisk module that hides your app list, settings, and package installers from other apps on rooted Android devices. It is a Ko… | 83 | 2968 | active |
| xiv3r/Burpsuite-Professional A shell-based installer that deploys Burp Suite Professional (a commercial web security testing toolkit) on Linux and NixOS, bundled with a… | 66 | 2968 | active |
| bytenode/bytenode Bytenode is a minimalist bytecode compiler that compiles JavaScript into V8 bytecode (.jsc files) to protect source code. It works with Nod… | 72 | 2966 | active |
| TheOfficialFloW/PPPwn PPPwn is a proof-of-concept kernel remote code execution exploit for PlayStation 4 consoles up to firmware 11.00, exploiting CVE-2006-4304 … | 24 | 2960 | active |
| strongswan/strongswan strongSwan is an open-source, modular IPsec-based VPN solution implementing the IKEv2 (and IKEv1) key exchange protocols for securing IP tr… | 87 | 2954 | stable |
| thewhiteh4t/FinalRecon FinalRecon is an all-in-one automatic web reconnaissance tool written in Python that provides a fast overview of a web target. It bundles h… | 70 | 2953 | active |
| eteran/edb-debugger edb is a cross-platform AArch32/x86/x86-64 debugger inspired by OllyDbg, built with Qt and Capstone. It provides a graphical interface for … | 66 | 2952 | active |
| corbindavenport/just-the-browser A collection of configuration files and installation scripts that disable AI features, telemetry, sponsored content, and other annoyances i… | 81 | 2951 | active |
| microsoft/AttackSurfaceAnalyzer Attack Surface Analyzer is a Microsoft open-source security tool that scans an operating system's security configuration before and after s… | 82 | 2950 | active |
| RfidResearchGroup/ChameleonUltra ChameleonUltra is the open-source firmware for an RFID/NFC card emulation device based on the NRF52840, capable of reading, writing, decryp… | 84 | 2949 | active |
| pquerna/otp A Go library implementing Time-based (TOTP, RFC 6238) and HMAC-based (HOTP, RFC 4228) one-time password algorithms for adding two-factor au… | 39 | 2944 | stable |
| microsoft/restler-fuzzer RESTler is the first stateful REST API fuzzing tool, automatically testing cloud services through their REST APIs to find security and reli… | 71 | 2939 | active |
| netwrix/pingcastle PingCastle is a C# tool that assesses the security posture of Active Directory and Entra ID environments, producing risk scores, health che… | 98 | 2937 | active |
| scottyab/rootbeer RootBeer is an Android library that detects whether a device has been rooted using multiple Java and native checks such as scanning for su … | 67 | 2937 | active |
| Metabolix/HackBGRT HackBGRT is a UEFI application that changes the Windows boot logo by overwriting the Boot Graphics Resource Table (BGRT) during boot. It sh… | 70 | 2931 | active |
| padloc/padloc Padloc is an open-source, end-to-end encrypted password manager for individuals and teams, built as a monorepo with a Node.js backend serve… | 29 | 2923 | active |
| wolfSSL/wolfssl wolfSSL is a lightweight, portable SSL/TLS library written in ANSI C, supporting TLS 1.3 and DTLS 1.3, powered by the wolfCrypt cryptograph… | 92 | 2919 | stable |
| calebstewart/pwncat pwncat is a post-exploitation platform and handler for reverse and bind shells, written in Python. It wraps raw shell communication with an… | 10 | 2917 | active |
| SnaffCon/Snaffler Snaffler is a C# command-line tool for pentesters and red teamers that enumerates Windows/AD environments to find sensitive files (mostly c… | 76 | 2915 | active |
| Roave/SecurityAdvisories A Composer package that acts as an exclusion list of known security vulnerabilities, preventing installation of dependency versions with do… | 77 | 2914 | active |
| palahsu/DDoS-Ripper DDoS-Ripper (DRipper) is a Python command-line tool that floods a target IP with traffic to simulate a distributed denial-of-service attack… | 72 | 2914 | active |
| onetimesecret/onetimesecret A self-hostable web service for sharing sensitive information like passwords via single-use, self-destructing links. Written in Ruby with R… | 95 | 2912 | active |
| firecracker-microvm/firecracker-containerd firecracker-containerd is a set of components that lets containerd manage containers running inside Firecracker microVMs, combining fast co… | 76 | 2910 | active |
| NexAlloy/NexAlloy NexAlloy is an LSPosed (Xposed) module for rooted Android devices that applies ReVanced/Morphe-style patches to apps like YouTube, YouTube … | 88 | 2903 | active |
| FiloSottile/yubikey-agent yubikey-agent is a seamless ssh-agent that stores SSH keys on YubiKey hardware via the PIV smartcard interface. It runs in the background, … | 32 | 2903 | stable |
| rs/cors rs/cors is a Go library providing a configurable net/http handler that implements the Cross Origin Resource Sharing (CORS) W3C specificatio… | 70 | 2898 | stable |
| LukeZGD/Legacy-iOS-Kit An all-in-one shell-based tool for restoring, downgrading, jailbreaking, and saving SHSH blobs on legacy iOS devices vulnerable to bootrom … | 67 | 2895 | active |
| pyllyukko/user.js A hardened user.js configuration template for Mozilla Firefox that enforces security and privacy settings. It limits tracking, fingerprinti… | 66 | 2891 | active |
| jayofelony/pwnagotchi Pwnagotchi is a Raspberry Pi-based Wi-Fi penetration-testing gadget that leverages Bettercap to passively sniff or actively attack nearby W… | 93 | 2886 | active |
| pwndoc/pwndoc PwnDoc is a self-hosted web application for writing penetration test findings and generating customizable Docx reports. It supports multi-u… | 98 | 2882 | active |