#security-tools (30 Repositories)
Ranked open-source repositories tagged with #security-tools, scored by pull request acceptance likelihood and maintainer engagement velocity.
86.5%
56.6h
30 repositories tagged #security-tools
Karib0u/rustinel
Open-source cross-platform endpoint detection engine for Windows, macOS, and Linux using ETW, ESF, eBPF, Sigma, YARA, IOCs, and ECS NDJSON alerts.
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
NodeSecure/js-x-ray
JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.
Security-Onion-Solutions/securityonion
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. It also includes other tools such as osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek.
antropos17/Aegis
OS-level monitor for AI agents: observes processes, file access, and network activity on the local machine and attributes each event to an agent instance.
Keeper-Security/Commander
Keeper Commander is a python-based CLI and SDK interface to the Keeper Security platform. Provides administrative controls, reporting, import/export and vault management.
Asymptote-Labs/agent-beacon
Agent Beacon is the world's first open-source telemetry layer for AI agents wherever they run: locally, in CI, in the browser, or in the cloud.
google/osv.dev
Open source vulnerability DB and triage service.
biandratti/huginn-net
Multi-protocol passive fingerprinting library: TCP/HTTP (p0f-style) + TLS (JA4-style) analysis in Rust
SecObserve/SecObserve
SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It supports a variety of open source vulnerability scanners and integrates easily into CI/CD pipelines.
yaklang/yaklang
A programming language exclusively designed for cybersecurity
zizmorcore/zizmor
Static analysis for GitHub Actions
sourcentis/mercator
Mapping the information system / Cartographie du système d'information
seqra/opentaint
The open source taint analysis engine for the AI era. A formal dataflow analysis tool you can customize and self-host, built so AI agents drive your application security analysis without burning tokens on every scan. AI-ready open source alternative to Semgrep Pro and CodeQL.
yowainwright/pastoralist
A CLI for automatically shepherding package.json overrides 👩🏽🌾
duggytuxy/syswarden
Active Defense and HIDS/HIPS/WAAP Out-of-Band Orchestration for Critical Linux Infrastructure
kpcyrd/rebuilderd
Independent verification of binary packages - Reproducible Builds
e-m-b-a/emba
EMBA - The firmware security analyzer
prowler-cloud/prowler
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
edoardottt/csprecon
Discover new target domains using Content Security Policy
google/syzkaller
syzkaller is an unsupervised coverage-guided kernel fuzzer
spr-networks/super
One wifi password per device. Ad Blocking & Privacy Blocklists. Policy Based Network Access
praetorian-inc/vespasian
API discovery tool that maps attack surfaces from captured traffic and generates specs for REST, GraphQL, SOAP, and WebSocket APIs
dotenvx/dotenvx
a secure dotenv–from the creator of `dotenv`
CERT-Polska/Artemis
A modular vulnerability scanner with automatic report generation capabilities.
Chocapikk/wpprobe
A fast WordPress plugin enumeration tool
authzed/spicedb
Open Source, Google Zanzibar-inspired database for scalably storing and querying fine-grained authorization data
The-Z-Labs/bof-launcher
[ BOF-LAUNCHER ] -> an API for loading, executing and in-memory masking BOFs on Windows and Linux for use in C/Zig/Go/Rust agents/implants. [ Z-BEAC0N ] -> a custom-written stage-1 (aka pre-C2) solution engineered with a small footprint, stealth and modularity in mind. [ DEVELOPED BOFS ] -> cross-platform (12), Linux-only (10), Win-only (2)
x64dbg/x64dbg
An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.
google/osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev