
opennhp
A lightweight, cryptography-powered, open-source toolkit built to enforce Zero Trust security for infrastructure, applications, and data in the…
Tools for blue team, defensive security, and threat protection.

A lightweight, cryptography-powered, open-source toolkit built to enforce Zero Trust security for infrastructure, applications, and data in the…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

GitHub mirror of the Linux Kernel's audit repository

Open source solutions for SOC2, GDPR, and ISO27001

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…


Linux namespaces and seccomp-bpf sandbox

Rail-OT-Protector (ROP) — free, open-source cybersecurity scanning tool for rail and transit OT/SCADA networks. PowerShell + Bash scanners for…

Browser-based risk analysis editor for building risk matrices, risk registers, and action plans. Supports EBIOS RM, ISO 27005, and CNIL DPIA with…

A tool for checking the security hardening options of the Linux kernel

Non-destructive detector for CVE-2026-64638 (XSS2Shell) — WordPress pre-auth XSS reflection primitive

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Real-time network diagnostics in your terminal. One command, zero config, instant visibility.

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

Lightweight web-attack monitor. One Go binary + SQLite. Not OSSEC, not a WAF.