全部标签
目录标签

#security-tools

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

137 条记录
标签为“security-tools”按健康指数排序
npm
87优秀健康指数
dotenvx/dotenvx
a secure dotenv–from the creator of `dotenv`
JavaScript★ 5,712↓ 44.2M/月2026年8月28日
BSD-3-Clause2026年8月28日 · 指标 2.10.0
Go
87优秀健康指数
goshs-labs/goshs
Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP callbacks · TLS · Auth · Share links. A powerful python3 -m http.server replacement.
Go · JavaScript★ 9532026年8月13日
MIT2026年8月13日 · 指标 2.10.0
Go
87优秀健康指数
kontext-security/kontext
Secure agents in seconds with permissions enforced at runtime.
Go★ 2112026年9月4日
MIT2026年9月4日 · 指标 2.10.0
Go
87优秀健康指数
praetorian-inc/brutus
Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative with native nerva/naabu pipeline integration.
Go★ 3042026年8月7日
Apache-2.02026年8月7日 · 指标 2.10.0
PyPI
86优秀健康指数
Keeper-Security/Commander
Keeper Commander is a python-based CLI and SDK interface to the Keeper Security platform. Provides administrative controls, reporting, import/export and vault management.
Python★ 2452026年7月17日
MIT2026年7月17日 · 指标 2.10.0
crates.io
86优秀健康指数
biandratti/huginn-net
Multi-protocol passive fingerprinting library: TCP/HTTP (p0f-style) + TLS (JA4-style) analysis in Rust
Rust★ 199↓ 7,674/月2026年7月26日
Apache-2.02026年7月26日 · 指标 2.10.0
86优秀健康指数
duggytuxy/syswarden
SysWarden is a host-local security orchestrator combining authoritative nftables policy, HIDS/HIPS telemetry, bounded threat intelligence, out-of-band WAAP log analysis, authenticated high availability and a native terminal dashboard.
Go · Python★ 3292026年9月5日
GPL-3.02026年9月5日 · 指标 2.10.0
PyPI · crates.io · npm
86优秀健康指数
nyudenkov/pysentry
🐍 Scan your Python dependencies for known security vulnerabilities with Rust-powered scanner
Rust★ 247↓ 95K/月2026年8月20日
MIT2026年8月20日 · 指标 2.10.0
crates.io
86优秀健康指数
rust-secure-code/cargo-auditable
Make production Rust binaries auditable
Rust★ 849↓ 3M/月2026年9月5日
Apache-2.02026年9月5日 · 指标 2.10.0
Go · Maven · npm
86优秀健康指数
utmstack/UTMStack
Enterprise-ready SIEM, SOAR and Compliance powered by real-time correlation and threat intelligence.
TypeScript · Java · HTML★ 5802026年7月30日
AGPL-3.02026年7月30日 · 指标 2.10.0
npm
86优秀健康指数
yowainwright/codependence
Stop wrestling with code dependencies. Use Codependence! 🤼‍♀️
TypeScript★ 20↓ 26.7K/月2026年8月1日
MIT2026年8月1日 · 指标 2.10.0
npm
84优秀健康指数
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
TypeScript★ 46.4K↓ 3,414/月2026年8月5日
AGPL-3.02026年8月5日 · 指标 2.10.0
Go · PyPI
84优秀健康指数
adithyan-ak/AgentHound
Offensive security framework for AI agent infrastructure - recon, credential looting, model exfiltration, poisoning, and attack-path analysis across MCP, A2A, gateways, and AI services. BloodHound for the agentic stack.
Go · TypeScript★ 2702026年8月22日
Apache-2.02026年8月22日 · 指标 2.10.0
Go
84优秀健康指数
authzed/spicedb-operator
Kubernetes controller for managing instances of SpiceDB
Go★ 1042026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
npm
84优秀健康指数
motdotla/dotenv
Loads environment variables from .env for nodejs projects.
JavaScript★ 20.5K↓ 624M/月2026年8月4日
BSD-2-Clause2026年8月4日 · 指标 2.10.0
npm · PyPI
84优秀健康指数
openshield-org/openshield
Open source CSPM for Azure - scan for misconfigurations and quantum-unsafe cryptography, map findings to CIS/NIST/ISO27001/SOC2, and fix them with one command
Python · JavaScript★ 552026年8月4日
MIT2026年8月4日 · 指标 2.10.0
PyPI · npm
84优秀健康指数
owasp-dep-scan/dep-scan
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
Python★ 1,281↓ 10.9K/月2026年8月24日
MIT2026年8月24日 · 指标 2.10.0
npm
83优秀健康指数
michelonsouza/encrypt-storage
EncryptStorage provide a little more security in frontend
TypeScript★ 286↓ 312.1K/月2026年8月28日
MIT2026年8月28日 · 指标 2.10.0
NuGet
83优秀健康指数
microsoft/ApplicationInspector
A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
C#★ 4,3952026年8月28日
MIT2026年8月28日 · 指标 2.10.0
Go · npm
83优秀健康指数
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 7682026年7月17日
MIT2026年7月17日 · 指标 2.10.0
RubyGems
81优秀健康指数
0dayInc/pwn
PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.
Ruby★ 782026年9月5日
MIT2026年9月5日 · 指标 2.10.0
Go · PyPI
81优秀健康指数
GreenmaskIO/greenmask
Database anonymization and test data management
Go★ 1,7502026年8月26日
Apache-2.02026年8月26日 · 指标 2.10.0
crates.io
81优秀健康指数
Karib0u/rustinel
Open-source cross-platform endpoint detection engine for Windows, macOS, and Linux using ETW, ESF, eBPF, Sigma, YARA, IOCs, and ECS NDJSON alerts.
Rust★ 4452026年8月4日
Apache-2.02026年8月4日 · 指标 2.10.0
PyPI
81优秀健康指数
pglombardo/pwpush-cli
Password Pusher CLI
Python★ 282026年8月5日
MIT2026年8月5日 · 指标 2.10.0
npm
80优秀健康指数
lirantal/anti-trojan-source
Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code
JavaScript★ 83↓ 129.4K/月2026年7月18日
Apache-2.02026年7月18日 · 指标 2.10.0
PyPI
80优秀健康指数
zizmorcore/zizmor-pre-commit
A pre-commit hook for zizmor.
Python★ 602026年7月22日
自定义许可证2026年7月22日 · 指标 2.10.0
npm
78良好健康指数
Null-Square/Null-CLi
Open-source AI pentest and compliance-readiness CLI by NullSquare.
TypeScript · JavaScript★ 81↓ 147/月2026年8月4日
自定义许可证2026年8月4日 · 指标 2.10.0
PyPI
78良好健康指数
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1,928/月2026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
Go · npm
78良好健康指数
opt-nc/geol
Efficiently show and monitor end-of-life dates for a number of products in your terminal and CI using endoflife.date API
HTML · Go★ 122026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
77良好健康指数
Asymptote-Labs/agent-beacon
Agent Beacon is the world's first open-source telemetry layer for AI agents wherever they run: locally, in CI, or in the cloud.
Go★ 2932026年7月15日
MIT2026年7月15日 · 指标 2.10.0