GitHub repo leaderboard by stars, growth rate and activity.
SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
🛡️ Open-source and cloud-native Web Application Firewall (WAF)
Awesome Node.js Security resources
LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/
Making Favicon.ico based Recon Great again !
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.
A Huge Learning Resources with Labs For Offensive Security Players
Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.
| # | Repo | Language | Stars | 30-day trend | Last updated |
|---|---|---|---|---|---|
| 1 | SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits. | Go | 22,559 | last pushed 17 hours ago | |
| 2 | Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis. | JavaScript | 21,745 | last pushed 2 days ago | |
| 3 | 🛡️ Open-source and cloud-native Web Application Firewall (WAF) | Python | 10,932 | last pushed 2 hours ago | |
| 4 | A list of web application security | — | 7,262 | last pushed 7 days ago | |
| 5 | Awesome Node.js Security resources | — | 3,038 | last pushed 4 weeks ago | |
| 6 | LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/ | TypeScript | 1,469 | last pushed 2 years ago | |
| 7 | Making Favicon.ico based Recon Great again ! | Python | 1,305 | last pushed 3 years ago | |
| 8 | Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests. | Rust | 1,236 | last pushed 2 years ago | |
| 9 | A Huge Learning Resources with Labs For Offensive Security Players | — | 1,166 | last pushed 9 months ago | |
| 10 | Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust. | Rust | 1,086 | last pushed 4 weeks ago |
All · 11,658