resource: security
1184 resources, primary matches first, then adoption-weighted; health v2 shown.
| Resource | Health v2 | Stars | Maturity |
|---|---|---|---|
| Cloud-Architekt/AzureAD-Attack-Defense A community-maintained playbook documenting common attack scenarios against Microsoft Entra ID (Azure AD) with corresponding detection and … | 73 | 2554 | active |
| mesquidar/ForensicsTools A curated awesome-list of free and open-source digital forensics (DFIR) analysis tools and resources. It organizes links across categories … | 73 | 2549 | active |
| Crypto-Cat/CTF A collection of CTF challenge files, write-ups, and exploit scripts (mostly pwn/binary exploitation) accompanying CryptoCat's video walkthr… | 62 | 2544 | active |
| rawfilejson/awesome-osint-arsenal A curated awesome-list of 753+ open-source OSINT and security tools across 50 categories, paired with shell installer scripts for one-comma… | 56 | 2538 | active |
| iddoeldor/frida-snippets A curated collection of hand-crafted Frida script snippets for dynamic instrumentation and runtime hooking. It covers native, Android, iOS,… | 32 | 2533 | active |
| lxhao61/integrated-examples A collection of optimized, ready-to-use server configuration examples combining Nginx or Caddy with V2Ray/Xray, Hysteria, NaiveProxy, and r… | 85 | 2522 | active |
| Leonxlnx/agentic-ai-prompt-research A research repository documenting reconstructed system prompt patterns, agent coordination, and security classification mechanisms behind a… | 48 | 2519 | active |
| cujanovic/SSRF-Testing A collection of SSRF (Server Side Request Forgery) testing resources including URL bypass payloads and a public test server that generates … | 32 | 2505 | active |
| coffeehb/Some-PoC-oR-ExP A curated collection of proof-of-concept (PoC) scripts and exploits for various software vulnerabilities, written and gathered in Python. I… | 45 | 2502 | active |
| gtworek/Priv2Admin A reference guide mapping Windows OS privileges to exploitation paths for privilege escalation and other security impacts. It catalogs each… | 32 | 2500 | active |
| ankane/the-ultimate-guide-to-ruby-timeouts A tested reference guide showing how to configure timeouts for popular Ruby gems, standard library modules, and databases. It explains time… | 73 | 2498 | active |
| kadenzipfel/smart-contract-vulnerabilities A curated collection of smart contract vulnerabilities with explanations and prevention methods, organized by category such as access contr… | 62 | 2491 | active |
| 4ndersonLin/awesome-cloud-security A curated list of cloud security resources covering standards, tools, courses, certifications, and reading materials for AWS, Azure, and GC… | 65 | 2483 | active |
| crytic/building-secure-contracts A Trail of Bits maintained collection of guidelines, best practices, and training material for developing secure smart contracts. It covers… | 57 | 2481 | active |
| onhexgroup/Conferences A curated archive of conference presentation slides from major cybersecurity conferences such as Black Hat, OffensiveCon, REcon, and Hexaco… | 90 | 2446 | active |
| github/advisory-database A free, open-source database of security vulnerabilities, including CVEs and GitHub-originated security advisories, stored as individual fi… | 77 | 2441 | active |
| OWASP/masvs The OWASP Mobile Application Security Verification Standard (MASVS) is the industry standard defining baseline security and privacy require… | 49 | 2437 | active |
| fkie-cad/awesome-embedded-and-iot-security A curated awesome-list of resources for embedded and IoT security, including software and hardware tools, books, research papers, case stud… | 32 | 2430 | active |
| bittentech/Bug-Bounty-Beginner-Roadmap A curated roadmap repository guiding beginners into bug bounty hunting, collecting links to courses, videos, and tutorials on computer fund… | 32 | 2429 | active |
| xinggsf/Adblock-Plus-Rule A collection of Chinese-language ad-blocking filter rules for uBlock Origin and AdGuard, including general and video ad filter lists. The r… | 65 | 2396 | active |
| jgamblin/Mirai-Source-Code A mirror of the leaked Mirai botnet source code (bot, CnC server, loader) published for cybersecurity research, malware analysis, and indic… | 53 | 9457 | maintenance |
| bst04/CyberSources A curated list (awesome-list style) of cybersecurity tools, resources, and educational materials covering OSINT, pentesting, cryptography, … | 66 | 2395 | active |
| terjanq/Tiny-XSS-Payloads A curated collection of minimal cross-site scripting (XSS) payloads organized by injection context, with an interactive demo site. It serve… | 32 | 2386 | active |
| swisskyrepo/InternalAllTheThings A collection of cheatsheets covering Active Directory and internal network penetration testing techniques, payloads, and bypasses. It is ma… | 75 | 2385 | active |
| berzerk0/Probable-Wordlists A collection of password wordlists sorted by probability of use, derived from real-world data breaches. It is a data resource (not code) in… | 23 | 9334 | maintenance |
| stamparm/ipsum IPsum is a daily-updated threat intelligence feed aggregating 30+ public lists of suspicious and malicious IP addresses, with each IP annot… | 77 | 2357 | active |
| kkrypt0nn/wordlists A curated collection of wordlists for security tasks such as password brute-forcing, username enumeration, and directory scanning, sorted b… | 77 | 2352 | active |
| elementalsouls/Claude-OSINT A collection of eight drop-in SKILL.md files for the Claude skills system that prime Claude with expert offensive OSINT and external recon … | 59 | 2342 | active |
| OWASP/API-Security The OWASP API Security Top 10 project, which publishes and maintains a ranked list of the most critical API security risks along with a doc… | 77 | 2337 | active |
| OpenZeppelin/ethernaut Ethernaut is a Web3/Solidity-based wargame played in the Ethereum Virtual Machine, where each level is a smart contract that must be hacked… | 77 | 2330 | active |
| a13xp0p0v/linux-kernel-defence-map A graphical map (written in DOT/GraphViz) showing relationships between Linux kernel vulnerability classes, exploitation techniques, bug de… | 70 | 2316 | active |
| Y4tacker/JavaSec A personal study repository documenting the author's Java security learning journey, from fundamentals like reflection and dynamic proxies … | 66 | 2300 | active |
| fuzzdb-project/fuzzdb FuzzDB is a comprehensive open-source dictionary of attack payloads, predictable resource locations, and regex patterns for black-box appli… | 32 | 8980 | maintenance |
| ZJ595/AndroidReverse A Chinese-language tutorial series ('安卓逆向这档事') on Android reverse engineering, covering APK structure, smali, dynamic debugging, Xposed hoo… | 48 | 2272 | active |
| cncf/tag-security The CNCF Security Technical Advisory Group (TAG Security), a community that produces knowledge, whitepapers, threat-modeling guidance, and … | 10 | 2263 | active |
| DropsOfZut/awesome-security-weixin-official-accounts A curated awesome-list of cybersecurity-focused WeChat official accounts, organized into 16 categories with over 3,500 accounts. It include… | 77 | 2262 | active |
| kdeldycke/awesome-iam A curated awesome-list of Identity and Access Management (IAM) resources covering authentication, authorization, protocols, and security fo… | 76 | 2262 | active |
| cjx82630/cjxlist CJX's Annoyance List is a maintained Adblock filter list that supplements EasyList China+EasyList and EasyPrivacy, filtering self-promotion… | 64 | 2253 | active |
| runetfreedom/russia-v2ray-rules-dat A dataset of automatically updated V2Ray/Xray routing rules (geoip.dat and geosite.dat) based on lists of domains and IP addresses blocked … | 85 | 2250 | active |
| SecWiki/windows-kernel-exploits A curated collection of Windows kernel privilege escalation exploits and proof-of-concept code, organized by CVE and security bulletin with… | 32 | 8719 | maintenance |
| bitnami/minideb Minideb is a minimalist Debian-based container base image maintained by Bitnami, optimized for small size while retaining glibc compatibili… | 77 | 2216 | active |
| mattnotmax/cyberchef-recipes A curated collection of CyberChef recipes, useful regular expressions, and links for data transformation and DFIR work. It serves as a refe… | 32 | 2215 | active |
| badmojr/1Hosts 1Hosts is a set of maintained DNS filter/blocklists that block ads, trackers, and malware domains. It ships in multiple formats (hosts, dom… | 88 | 2209 | active |
| Mr-Un1k0d3r/EDRs A collection of proof-of-concept C tools and reference data for understanding EDR/AV hooking on Windows, including syscall patching utiliti… | 66 | 2202 | active |
| immunefi-team/Web3-Security-Library A curated, collaborative library of resources for learning web3 and blockchain security, maintained by Immunefi. It aggregates guides, bloc… | 38 | 2193 | active |
| dreddsa5dies/goHackTools A collection of small Go example programs implementing classic hacker and pentester tools such as port scanners, password bruteforcers, DNS… | 74 | 2187 | active |
| Jieyab89/OSINT-Cheat-sheet A curated cheat sheet repository listing OSINT (open-source intelligence) tools, datasets, wikis, articles, and tutorials for reconnaissanc… | 77 | 2182 | active |
| iknowjason/Awesome-CloudSec-Labs A curated list of free cloud native security learning labs, including CTFs, self-hosted workshops, guided vulnerability labs, and research … | 49 | 2182 | active |
| biggerduck/RedTeamNotes A collection of practical red team notes documenting small, specific problems and solutions encountered during real-world offensive securit… | 65 | 2180 | active |
| eeeeeeeeee-code/POC A curated backup of the wy876 vulnerability database collecting proof-of-concept exploits (POC/EXP) for a wide range of software, mostly Ch… | 61 | 2180 | active |
| TheKingOfDuck/fuzzDicts A curated collection of Chinese-community-maintained wordlists for web penetration testing, covering parameters, XSS payloads, usernames, p… | 32 | 8422 | maintenance |
| OWASP/DevGuide The OWASP Developer Guide is an open, community-maintained documentation project introducing application security concepts and practices fo… | 89 | 2169 | active |
| hahwul/DevSecOps A curated roadmap and collection of tools, guides, and resources for adopting DevSecOps practices across the software development lifecycle… | 75 | 2159 | active |
| aws/aws-eks-best-practices A community-contributed best practices guide for Amazon EKS covering day 2 operations such as security, reliability, autoscaling, networkin… | 76 | 2157 | active |
| center-for-threat-informed-defense/adversary_emulation_library An open library of adversary emulation plans from MITRE's Center for Threat-Informed Defense, mapping real-world adversary TTPs to MITRE AT… | 33 | 2156 | active |
| FriendsOfPHP/security-advisories A community-maintained database of known security vulnerabilities in PHP Composer packages, stored as YAML files keyed by CVE or date. It c… | 77 | 2139 | active |
| BlueSkyXN/AdGuardHomeRules A large aggregated collection of AdGuard Home DNS ad-blocking and filtering rules, with blacklist and whitelist lists maintained via automa… | 49 | 2134 | active |
| mitre/cti MITRE's official repository of ATT&CK and CAPEC cyber threat intelligence datasets expressed in STIX 2.0 JSON. It provides machine-readable… | 93 | 2132 | active |
| awslabs/aws-well-architected-labs A collection of hands-on labs and accompanying code from AWS Labs for learning, measuring, and building with the AWS Well-Architected Frame… | 60 | 2131 | active |
| greshake/llm-security A research repository demonstrating indirect prompt injection attacks against application-integrated LLMs like Bing Chat, GPT-4, and LangCh… | 45 | 2130 | active |
| walidshaari/Certified-Kubernetes-Security-Specialist A curated collection of links and study resources for preparing for the CNCF/Linux Foundation Certified Kubernetes Security Specialist (CKS… | 65 | 2121 | active |
| 0xmaximus/Galaxy-Bugbounty-Checklist A curated collection of checklists, tips, and tutorials for bug bounty hunting and penetration testing. It organizes attack techniques (e.g… | 52 | 2115 | active |
| notthehiddenwiki/NTHW A large community-maintained wiki of over 5,000 curated cybersecurity links, including tools, publications, and recordings. It also hosts r… | 70 | 2112 | active |
| teamssix/awesome-cloud-security A curated awesome-list of cloud security resources (articles, tools, wikis, blogs, labs) spun off from the T Wiki cloud security knowledge … | 32 | 2109 | active |
| hasherezade/malware_training_vol1 Training materials for Windows malware analysis (volume 1), covering compilation, PE format, processes, shellcode, hooking, persistence, an… | 32 | 2099 | active |
| koutto/pi-pwnbox-rogueap A set of shell scripts and documentation for building a headless WiFi hacking PwnBox / Rogue Access Point on a Raspberry Pi with Alfa USB a… | 71 | 2098 | active |
| gquere/pwn_jenkins A collection of notes, scripts, and references for attacking and pentesting Jenkins CI/CD servers, covering known CVEs like arbitrary file … | 32 | 2096 | active |
| milabs/awesome-linux-rootkits A curated awesome-list of Linux rootkits, covering both user-mode (LD_PRELOAD) and kernel-mode (LKM) rootkits with a feature comparison tab… | 62 | 2094 | active |
| pFarb/awesome-crypto-papers A curated list of cryptography papers, articles, tutorials, and howtos aimed at non-cryptographers, especially engineers using crypto in se… | 32 | 2093 | active |
| Friz-zy/awesome-linux-containers A curated awesome-list of Linux container frameworks, libraries, runtimes, sandboxing tools, and related resources. It organizes links acro… | 32 | 2091 | active |
| six2dez/pentest-book A GitBook-hosted pentesting wiki containing commands, scripts, techniques, and cheatsheets used by the author during penetration tests. It … | 75 | 2087 | active |
| sushiwushi/bug-bounty-dorks A curated list of Google Dorks for finding companies with responsible disclosure or bug bounty programs that are not listed on platforms li… | 57 | 2087 | active |
| StellarSand/privacy-settings A curated guide documenting recommended privacy settings for major software, browsers, operating systems, and online services like Google, … | 75 | 2084 | active |
| aditya-shri/VPN A deployment template for running a personal VPN server based on Shadowsocks with the v2ray-plugin, deployable via Docker, Heroku, or Railw… | 51 | 2075 | active |
| shramos/Awesome-Cybersecurity-Datasets A curated awesome-list of cybersecurity datasets covering network traffic, malware, phishing, honeypots, and more. It serves as a reference… | 32 | 2072 | active |
| CryptoAILab/Awesome-LM-SSP A curated awesome-list reading list of papers, surveys, toolkits, benchmarks, and competitions on the safety, security, and privacy of larg… | 65 | 2066 | active |
| nikivdev/privacy-respecting A curated list of privacy-respecting services and software, organized by category (search engines, social networks, messengers, VPNs, email… | 73 | 2053 | active |
| 6mile/DevSecOps-Playbook A step-by-step playbook for implementing DevSecOps practices in organizations of any size, organized into five lifecycle domains with 60 ac… | 23 | 2051 | active |
| microsoft/AI-Red-Teaming-Playground-Labs A set of hands-on AI red teaming playground labs from Microsoft, built on a modified Chat Copilot, used to teach adversarial attacks on AI … | 49 | 2049 | active |
| offensive-security/exploitdb The legacy GitHub repository of the Exploit Database, an archive of public exploits, shellcode, and the Google Hacking Database (GHDB). Thi… | 10 | 7858 | maintenance |
| m14r41/PentestingEverything A structured penetration testing knowledge base covering 23 security domains (web, mobile, API, cloud, network, Active Directory, SAST, Dev… | 83 | 2044 | active |
| MrWQ/vulnerability-paper A curated collection of security and penetration testing articles organized into categories like vulnerability research, bypass/AV evasion,… | 57 | 2038 | active |
| ali-bouali/spring-boot-3-jwt-security A sample Java project demonstrating JWT-based authentication and role-based authorization with Spring Boot 3 and Spring Security 6. It incl… | 31 | 2036 | stable |
| phith0n/JavaThings A collection of study notes and demo code accompanying the 'Java Security Ramblings' (Java安全漫谈) essay series by phith0n. It covers Java sec… | 39 | 2028 | active |
| ITI/ICS-Security-Tools A curated community resource (awesome-list style) collecting tools, tips, guides, scripts, protocol references, and pcap samples for indust… | 39 | 2023 | active |
| saeidshirazi/awesome-android-security A curated list of Android security materials and resources for pentesters and bug hunters, covering blogs, papers, books, trainings, tools,… | 73 | 2014 | active |
| RogueMaster/awesome-flipperzero-withModules A curated awesome-list of resources, modules, databases, and dumps for the Flipper Zero multi-tool device, maintained as an improved fork o… | 76 | 2008 | active |
| magnologan/awesome-k8s-security A curated awesome-list of Kubernetes security resources including articles, books, tools, talks, certifications, CVEs, and trainings. It se… | 75 | 2008 | active |
| hslatman/awesome-industrial-control-system-security A curated awesome-list of resources, tools, and references for Industrial Control System (ICS) and SCADA security. It catalogs tools for IC… | 53 | 2004 | active |
| rdragos/awesome-mpc A curated awesome-style list of multiparty computation (MPC) resources, including books, courses, tutorials, and open-source software such … | 75 | 1993 | active |
| WuFengXue/android-reverse A curated awesome-list of Android reverse engineering tools, covering unpacking (脱壳), native library analysis, decompilers, GUI tools, and … | 40 | 1983 | active |
| ConsenSysDiligence/smart-contract-best-practices A community-maintained documentation guide to Ethereum smart contract security best practices, covering known attacks, secure development p… | 38 | 7570 | maintenance |
| eset/malware-ioc A repository of Indicators of Compromise (IOCs) published by ESET researchers from their malware investigations. It includes YARA rules and… | 72 | 1979 | active |
| tsale/EDR-Telemetry An open, vendor-neutral research project that compares the endpoint telemetry exposed by EDR products and agents like Sysmon across Windows… | 81 | 1978 | active |
| SunWeb3Sec/DeFiVulnLabs A collection of 48 Solidity smart contract vulnerability labs with Foundry-based proof-of-concept tests, originally built as internal Web3 … | 40 | 1969 | active |
| Siguza/ios-resources A curated collection of resources for iOS hacking and reverse engineering, covering ARM64 assembly, Mach-O internals, sandbox, IPC, and rel… | 43 | 1966 | active |
| guardrailsio/awesome-golang-security A curated awesome-list of Golang security resources, including tools, libraries, static analysis utilities, and educational material. It is… | 32 | 1964 | active |
| FalsePhilosopher/badusb A community-maintained library of BadUSB payloads for the Flipper Zero, organized into categories like exfiltration, phishing, remote_acces… | 96 | 1963 | active |
| cobaltdisco/Google-Chinese-Results-Blocklist A curated blocklist of spam and low-quality Chinese-language sites for filtering Google and Baidu search results. It provides subscription … | 64 | 7472 | maintenance |
| Azure/Enterprise-Scale Azure Landing Zones (Enterprise-Scale) is a reference implementation providing prescriptive guidance and ARM/PowerShell tooling for deployi… | 98 | 1955 | active |