awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to bishopfox/gitgot

Open-source alternatives to GitGot

30 open-source projects similar to bishopfox/gitgot, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best GitGot alternative.

  • yelp/detect-secretsAvatar von Yelp

    Yelp/detect-secrets

    4,429Auf GitHub ansehen↗

    detect-secrets is a modular secret scanning tool that identifies hard-coded credentials and sensitive information in source code. It combines multiple detection strategies—regular expression pattern matching, Shannon entropy calculation, and a machine learning classifier—to find potential secrets, and uses a baseline-driven delta analysis to distinguish newly introduced secrets from pre-existing ones, reducing noise from legacy credentials. The tool integrates directly into development workflows through a git pre-commit hook that blocks commits introducing unbaselined secrets, and can be inco

    Python
    Auf GitHub ansehen↗4,429
  • acheron-vaf/acheronA

    Acheron-VAF/Acheron

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • barrracud4/image-upload-exploitsB

    barrracud4/image-upload-exploits

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • ambionics/phpggcAvatar von ambionics

    ambionics/phpggc

    3,832Auf GitHub ansehen↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    Auf GitHub ansehen↗3,832

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Find more with AI search
americanexpress/earlybirdAvatar von americanexpress

americanexpress/earlybird

770Auf GitHub ansehen↗

EarlyBird is a sensitive data detection tool capable of scanning source code repositories for clear text password violations, PII, outdated cryptography methods, key files and more.

Go
Auf GitHub ansehen↗770
  • anchore/grypeAvatar von anchore

    anchore/grype

    12,423Auf GitHub ansehen↗

    Grype is a command-line security scanner designed to identify known vulnerabilities within container images, filesystems, and software manifests. It functions as a software composition analysis tool that detects security flaws in application components and open-source libraries to support supply chain security. The tool distinguishes itself by reconstructing the final state of container images through layered filesystem inspection and normalizing diverse package formats into a unified dependency graph. It maintains a local cache of security advisories synchronized from multiple upstream sourc

    Gocontainer-imagecontainerscyclonedx
    Auf GitHub ansehen↗12,423
  • anshumanbh/git-all-secretsAvatar von anshumanbh

    anshumanbh/git-all-secrets

    1,141Auf GitHub ansehen↗

    A tool to capture all the git secrets by leveraging multiple open source git searching tools

    Go
    Auf GitHub ansehen↗1,141
  • adamtlangley/gitscraperA

    adamtlangley/gitscraper

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • appsecco/spaces-finderAvatar von appsecco

    appsecco/spaces-finder

    157Auf GitHub ansehen↗

    Non-Standard Python Libraries:

    Python
    Auf GitHub ansehen↗157
  • aquasecurity/kube-hunterAvatar von aquasecurity

    aquasecurity/kube-hunter

    5,064Auf GitHub ansehen↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    Auf GitHub ansehen↗5,064
  • aquasecurity/trivyAvatar von aquasecurity

    aquasecurity/trivy

    36,462Auf GitHub ansehen↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Auf GitHub ansehen↗36,462
  • arpsyndicate/kenzerA

    ARPSyndicate/kenzer

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • auth0/repo-supervisorAvatar von auth0

    auth0/repo-supervisor

    653Auf GitHub ansehen↗

    Scan your code for security misconfiguration, search for passwords and secrets. :mag:

    JavaScript
    Auf GitHub ansehen↗653
  • awslabs/git-secretsAvatar von awslabs

    awslabs/git-secrets

    13,177Auf GitHub ansehen↗

    Git-secrets is a security utility designed to prevent the accidental exposure of sensitive credentials by integrating automated scanning directly into the version control commit lifecycle. It functions as a commit scanner that evaluates staged files and commit messages against defined security policies before changes are finalized in a repository. The tool utilizes regular expression pattern matching to identify potential secrets and supports the registration of custom patterns to address specific organizational security requirements. To manage operational friction, it includes mechanisms for

    Shell
    Auf GitHub ansehen↗13,177
  • aboul3la/sublist3rAvatar von aboul3la

    aboul3la/Sublist3r

    10,957Auf GitHub ansehen↗

    Sublist3r is a subdomain enumeration tool and passive reconnaissance framework designed to discover subdomains by querying search engines and public intelligence sources. It functions as a security tool for identifying the digital footprint of a target domain. The project provides both passive enumeration through multi-source API aggregation and active discovery via a DNS brute force tool. It includes a TCP port scanner to identify active services and open ports on discovered subdomains, facilitating attack surface mapping. The tool can be used as a standalone utility or as a Python security

    Python
    Auf GitHub ansehen↗10,957
  • bishopfox/dufflebagAvatar von bishopfox

    bishopfox/dufflebag

    306Auf GitHub ansehen↗

    Search exposed EBS volumes for secrets

    Go
    Auf GitHub ansehen↗306
  • bishopfox/h2csmugglerAvatar von BishopFox

    BishopFox/h2csmuggler

    780Auf GitHub ansehen↗
    Pythonbugbountyinfosecsecurity-research
    Auf GitHub ansehen↗780
  • brannondorsey/dns-rebind-toolkitAvatar von brannondorsey

    brannondorsey/dns-rebind-toolkit

    501Auf GitHub ansehen↗

    A front-end JavaScript toolkit for creating DNS rebinding attacks.

    JavaScript
    Auf GitHub ansehen↗501
  • bridgecrewio/checkovAvatar von bridgecrewio

    bridgecrewio/checkov

    8,798Auf GitHub ansehen↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Python
    Auf GitHub ansehen↗8,798
  • brompwnie/botbB

    brompwnie/botb

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • channyein1337/jsleakAvatar von channyein1337

    channyein1337/jsleak

    589Auf GitHub ansehen↗

    jsleak is a tool to find secret , paths or links in the source code during the recon.

    Go
    Auf GitHub ansehen↗589
  • checkmarx/kicsAvatar von checkmarx

    checkmarx/kics

    2,649Auf GitHub ansehen↗

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent
    Auf GitHub ansehen↗2,649
  • chvancooten/bugbountyscannerAvatar von chvancooten

    chvancooten/BugBountyScanner

    921Auf GitHub ansehen↗
    Shellbug-bounty-reconnaissancebugbountydocker-image
    Auf GitHub ansehen↗921
  • cve-search/git-vuln-finderAvatar von cve-search

    cve-search/git-vuln-finder

    428Auf GitHub ansehen↗

    Finding potential software vulnerabilities from git commit messages

    Python
    Auf GitHub ansehen↗428
  • danmar/cppcheckAvatar von danmar

    danmar/cppcheck

    6,512Auf GitHub ansehen↗
    C++cc-plus-pluscpp
    Auf GitHub ansehen↗6,512
  • deepfence/secretscannerAvatar von deepfence

    deepfence/SecretScanner

    3,270Auf GitHub ansehen↗

    SecretScanner is a security tool designed to search filesystems and container images for unprotected passwords, API keys, and other sensitive data. It functions as a static secret detector and container image scanner that identifies hardcoded credentials by matching content against a database of known secret types. The tool inspects container image layers to find secrets hidden within the filesystem hierarchy and parses local directories and host-mounted paths. It provides the ability to export scan findings in machine-readable JSON format for automated analysis and processing. The scanning

    Gocontainersdevsecopsdocker
    Auf GitHub ansehen↗3,270
  • deepfence/threatmapperAvatar von deepfence

    deepfence/ThreatMapper

    5,282Auf GitHub ansehen↗

    ThreatMapper is a cloud native application protection platform and infrastructure security scanner. It functions as a vulnerability management system and cloud workload telemetry collector designed to monitor workloads and detect security risks across cloud and container environments. The platform distinguishes itself through a network traffic visualizer that uses machine learning to classify communication patterns and a graph-based attack mapping system to identify high-risk paths between vulnerabilities and network dependencies. Its broader capabilities cover cloud infrastructure complianc

    TypeScriptcloud-nativecloudsecuritycnapp
    Auf GitHub ansehen↗5,282
  • defectdojo/django-defectdojoAvatar von DefectDojo

    DefectDojo/django-DefectDojo

    4,528Auf GitHub ansehen↗

    DefectDojo is a vulnerability management system and application security orchestration tool. It serves as a centralized platform for importing, deduplicating, and tracking security findings from multiple scanners and tools to manage an organization's overall security posture. The system distinguishes itself by aggregating findings from various security tools into a single report and normalizing that data to prioritize remediation. It provides specific workflows for vulnerability triage and deduplication to reduce noise and redundant manual work across the software development lifecycle. The

    HTMLanalyticsappsecautomation
    Auf GitHub ansehen↗4,528
  • delvelabs/tachyonD

    delvelabs/tachyon

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • 0xteles/jsleak0

    0xTeles/jsleak

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0