
grove
A Software as a Service (SaaS) log collection framework.

A Software as a Service (SaaS) log collection framework.

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

ioc2rpz is a place where threat intelligence meets DNS.


Security proxy for AI agents. Scans every message for prompt injection, PII, and secrets. Defense-in-depth: Go proxy + iptables firewall + eBPF…

Windows API hooking tool that dynamically spoofs and conceals process arguments via Detours library and PEB manipulation, enabling stealthy process…

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.

Keep private data, internal infrastructure and secrets out of cloud coding agents without breaking your workflow.

Real-time guardrails for Claude Code tool calls.

Passive Laravel middleware that detects and logs SQL injection, XSS, RCE, bot scanners, and 175+ attack patterns. Features a built-in dashboard,…

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Fix-Like Artifacts With Embedded Defects

Automates static API security auditing of OpenAPI contracts in CI/CD, running 300+ checks for authentication, authorization, and data constraints,…

A transparent PII redaction proxy for LLM API traffic. Sits between an application and an LLM provider (currently Anthropic), pseudonymizing…

Corelight Sensor API command-line client

DNSnitch is a local, privacy-first DNS server that puts you in complete control of your network traffic. Unlike passive blocklists, DNSnitch operates…

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…