Top Security Projects
Top security tools gaining traction on GitHub. Vulnerability scanners, pentesting tools, and security frameworks.
Someone built a vuln scanner that doesn't choke on massive repos.
This replaces your compliance Excel grind with instant AI builders and reviewers.
This replaces manual Solidity audits with instant exploits and fixes.
Scale SecOps with self-hosted AI that fuses alerts and nails triage.
It does what security bulletins don't: runnable Next.js exploits.
This swaps clunky vuln scanners for AI-powered audits in your IDE.
Replace manual security audits with Claude's instant compliance powerhouse.
Someone built slash commands that breeze through security audits and compliance.
Crushes security audits and compliance like enterprise suites, but agent-powered.
Drop bastion hosts—this Rust proxy delivers audited SSH access without server changes.
Your AI sweats security triage so you sip coffee in peace.
This replaces haphazard auth builds with TDD security mastery.
Claude audits code like a jaded pentester spotting flaws you snoozed on.
Makes manual screenshot assembly for security reports a thing of the past.
This replaces your bug bounty chaos with one structured hunting playbook.
Prevent K8s breaches by mapping RBAC paths to cluster-admin and root.
Your AI-generated Python patches its own security flaws.
Lists of independent cybersecurity blogs covering threat intelligence, purple team, red team, threat hunting, and detection engineering. Most are pers
Website specification — HTML, accessibility, security, SEO, agent-readiness. Platform-agnostic, sourced, MIT.
Someone built Android tamper detection into a tidy JSON report.
Swap agent logs for pixel characters roaming a camera-filled virtual office.
Semia, security audit for AI agent skills.
Arm64 linux KVM introspection hypervisor via stage 2 translation traps & vcpu exit tracing
This swaps manual SQL for secure LLM agents that query data naturally.
Command your full server stack—deploy, secure, monitor—with total ease.
Replace your wallet's opaque pass handling with auditable open-source security.
Get AI to profile targets and deliver structured intel reports from your terminal.
A developer CLI tool that manages .env files, detects secret leaks, syncs env drift across teammates, and validates environment parity between local/s
Deploy agentic AI securely with battle-tested evaluation standards.
Someone built runtime security for AI agents that keeps them from going rogue.
Someone built a leaderboard ranking LLMs on prompt attack resilience.
Give your SAST agent a lie detector for vuln reports.
Does OData queries on EF Core, minus the bloat and risks.
Profile L2 guests in nested KVM to crush VMExit mysteries fast.
It audits Supabase like a pentester, but spits out SQL fixes instantly.
A security-focused modern package manager frontend for Arch Linux with unified AUR/repository search, package analysis, and update management.
SSkills (Slop Skills) is a public collection of specialist skills for security agents and human reviewers. Each skill packages structured domain knowl
MINERVA - Minimal Inference Engine for Robust, Verifiable, and Authenticated ML. Encrypted, integrity-verified neural network inference for MCUs down
Your mood light moonlights as a stealth network sentinel.
Read-only supply-chain scanning for Hermes Agent, powered by Perplexity's Bumblebee. Daily scans, Telegram alerts, JARVIS narration.
A Freescout Docker image with a focus on simplicity, maintainability and fast security updates.
Empower your team to manage databases securely across regions and workflows.
Ace pentests faster with a terminal AI agent that strategizes and searches.
This replaces your entire MCP security process with one CLI.
MCP-style tool-use security playground with permission policies.
Master LLM security essentials to shield your AI from hidden threats.
Give your AI coding tools ready‑made security audit blueprints and ship fewer vulnerabilities.
Comprehensive Codex skills pack for engineering, AI agents, docs, and defensive security, with multilingual triggers, validation checklists, and a rou
MCP prompt-injection scanning proxy — runtime security for MCP tool responses
Compartment is a self-hosted application deployment system for teams that want to ship and share internal, private, or public web apps without buildin
Want daily updates on trending Security repos?
Subscribe to Weekly Digest