Open-source repositories gaining traction right now.
37 repositories

Xray, Penetrates Everything. Also the best v2ray-core. Where the magic happens. An open platform for various uses.

Easily and securely send things from one computer to another 🐊 📦

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Star hashicorp / vault A tool for secrets management, encryption as a service, and privileged access management

Star tailscale / tailscale The easiest, most secure way to use WireGuard and 2FA.

Sponsor Star netbirdio / netbird Connect your devices into a secure WireGuard®-based overlay network with SSO, MFA and granular access controls.

Fully autonomous AI Agents system capable of performing complex penetration testing tasks

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Star fleetdm / fleet Open device management

CyberStrikeAI is an AI-native security testing platform built in Go. It integrates 100+ security tools, an intelligent orchestration engine, role-based testing with predefined security roles, a skills system with specialized testing skills, and comprehensive lifecycle management capabilities.

Star XTLS / RealiTLScanner A TLS server scanner for Reality

have a plan for the worst-case scenario

Security harness for AI agents — egress proxy with DLP scanning, SSRF protection, MCP response scanning, and workspace integrity monitoring

Matchlock secures AI agent workloads with a Linux-based sandbox.

🌟 Open Source AI Agent Security Infrastructure — intercepts and blocks dangerous agent behaviors before they happen. Just one command! Join us to build safer Human-AI Symbiosis!

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native fingerprintx/naabu pipeline integration.

LLM security testing framework for detecting prompt injection, jailbreaks, and adversarial attacks — 190+ probes, 28 providers, single Go binary

boostsecurityio/bagel

A privacy-focused voice communication server and client, inspired by TeamSpeak, built entirely in Go.

Open-source firewall for AI agents. Policy engine that controls what OpenClaw, Claude Code, Cursor, Codex, and any AI tool can do on your machine.


SecureE2E - Secret line for Secret chats with a VPS

Search for github leaks by combining gitleaks and git-hound capabilities with rate control and exhaustive search.

eBPF endpoint observer for Linux: exec, file & network events as JSONL for your SIEM

Access control, policy enforcement, and audit logging for SSH agent sockets


一个简易的 dll 注入生成器

自动化Web备份文件扫描、监控系统。集成备份文件扫描、任务调度等功能,可以帮助安全研究人员自动化地发现和监控目标域名的备份文件。

QuestExploit 是一款基于 Go 语言开发的自动化安全测试工具。它针对 QuestDB 数据库的身份验证机制进行深度探测,能够自动验证多种绕过手段,并演示在成功绕过身份验证后,攻击者可能执行的恶意操作(如数据窃取、表删除、任意文件写入等)。 本项目是 QuestDB 身份验证绕过漏洞利用工具 的详细文档。该工具专门用于演示和测试 QuestDB 在特定配置下存在的安全风险,帮助安全研究人员理解身份验证绕过机制及其潜在后果。


🛡️ Lightweight, efficient HTTP/HTTPS prober intended for bug hunters and pentesters

SELA (Secure Encrypted Ledger Access). The air-gapped crypto vault project




mirror of https://gitlab.torproject.org/tpo/anti-censorship/pluggable-transports/snowflake.git

Go SDK for SanctumAI — credential management for AI agents
Paste a github.com URL. Submissions are reviewed before they are tracked.