
keyhog
Open-source secret scanner in Rust

Open-source secret scanner in Rust

A reverse proxy like nginx, built on pingora, simple and efficient.

A lightweight alternative to OpenClaw that runs in containers for security. Connects to WhatsApp, Telegram, Slack, Discord, Gmail and other messaging…

Enforce security and compliance on Kubernetes clusters via admission controls, resource mutation, background scans, and container image signature…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

A lightweight caching proxy for package registries.

A UNIX security auditing tool based on several security frameworks

An open source, cloud-native security to protect everything from build to runtime

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…

The globalping probe code that runs on your hardware and connects to the global community network of probes

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

Open-source cybersecurity knowledge base with 400+ notes, labs, and cheat sheets covering offense, defense, cryptography, cloud, and forensics.

Passive DNS server that detects exposed cloud storage buckets (AWS S3, GCP, Azure) by resolving DNS requests, tracing CNAME chains, and flagging…