
minisign
A dead simple tool to sign files and verify digital signatures.

A dead simple tool to sign files and verify digital signatures.

Software sandbox for storage of sensitive information in memory.

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

Curated macOS security and privacy guide with practical instructions for threat modeling, disk encryption, firewall configuration, secure…

Vendor-neutral OWASP project mapping quantum-era security risks with a Top 10 risk list, mitigation guidance, and threat models for post-quantum…

A Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).

Bro plugin to check if certificates are affected by CVE-2017-15361

Python implementation of the CaRT library for (un)inerting files.

secure vault for your files

Hardware-level security protocol for mitigating cache-based side-channel attacks.

Chaincode for blockchain Hyperledger Fabric provides accurate time to other chaincodes. Thus solving the security problem associated with transaction…

Continuously fetches and cryptographically verifies key transparency log updates, maintains a condensed prefix and log tree view, and returns signed…

The hmac-bcrypt password hashing function

A session-unique RISC-V ISA — every boot speaks a different dialect. Old binaries become invalid. Malware cannot persist.

Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming

Obfuscates JavaScript and Node.js code with variable renaming, string encryption, control flow flattening, and anti-debugging to protect source code…

Curated study notes and interview preparation guide for security engineering roles, covering networking, web security, cryptography, malware…