
protocol-fuzzer-ce
This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Checklist of the most important security countermeasures when designing, testing, and releasing your API

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

The easiest, and most secure way to access and protect all of your infrastructure.

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so…

Open Source Vulnerability Management Platform

Scalable fuzzing infrastructure with coverage-guided engines (libFuzzer, AFL, Honggfuzz), automated crash deduplication, bug filing, and regression…

OPNsense GUI, API and systems backend

Kubernetes policy engine with OPA-based admission control, mutation, and audit for enforcing security and compliance configurations.

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Authorization engine for context-aware access control with YAML policies, RBAC/ABAC support, check/plan APIs, and GitOps-friendly deployment.

Open-source sandboxed agent harness for teams. Giving every employee a secured personal agent.

Collaborative Passwords Manager

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.