awesome-repositories.com
Blog
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to twitter/secureheaders

Open-source alternatives to Secureheaders

30 open-source projects similar to twitter/secureheaders, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Secureheaders alternative.

  • sobolevn/awesome-cryptographyAvatar de sobolevn

    sobolevn/awesome-cryptography

    6,746Ver en GitHub↗
    awesomeawesome-listcrypto
    Ver en GitHub↗6,746
  • paretosecurity/pareto-macAvatar de ParetoSecurity

    ParetoSecurity/pareto-mac

    445Ver en GitHub↗

    Automatically audit your Mac for basic security hygiene.

    Swiftendpoint-securitymacossecurity
    Ver en GitHub↗445
  • nationalsecurityagency/ghidraAvatar de NationalSecurityAgency

    NationalSecurityAgency/ghidra

    69,740Ver en GitHub↗

    Ghidra is a software reverse engineering suite designed to analyze compiled binaries and reconstruct program logic without access to original source code. It provides an interactive environment for disassembly and decompilation, utilizing a platform-independent intermediate representation to maintain consistency across diverse hardware architectures. The framework supports automated binary analysis through programmatic routines, enabling the investigation of complex code patterns and security indicators. The platform distinguishes itself through a modular architecture that allows for extensiv

    Javadisassemblerreverse-engineeringsoftware-analysis
    Ver en GitHub↗69,740
  • shieldfy/api-security-checklistAvatar de shieldfy

    shieldfy/API-Security-Checklist

    23,258Ver en GitHub↗

    This project is a comprehensive API security audit checklist and vulnerability audit framework. It provides a structured guide of security countermeasures for designing, testing, and deploying secure APIs across various protocols. The framework includes specialized guides for securing OAuth 2.0 authorization flows, implementing zero trust networking for service-to-service communication, and protecting GraphQL endpoints from resource exhaustion and information leakage. It also provides standards for integrating static analysis, dynamic scanning, and secret detection into CI/CD delivery pipelin

    apijwtoauth2
    Ver en GitHub↗23,258

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Find more with AI search
  • sqlmapproject/sqlmapAvatar de sqlmapproject

    sqlmapproject/sqlmap

    37,676Ver en GitHub↗

    This project is an automated security testing suite designed to detect and exploit database vulnerabilities. It functions as a command-line utility that streamlines the identification, verification, and exploitation of web application flaws by automating the injection of malicious payloads into input parameters. The tool provides a comprehensive framework for database enumeration, allowing users to extract schema information, user data, and system configurations from identified injection points. What distinguishes this tool is its sophisticated engine for dynamic payload adaptation and heuris

    Pythondatabasedetectionexploitation
    Ver en GitHub↗37,676
  • rubysec/bundler-auditAvatar de rubysec

    rubysec/bundler-audit

    2,755Ver en GitHub↗

    Patch-level verification for Bundler

    Ruby
    Ver en GitHub↗2,755
  • hacker0x01/hacker101Avatar de Hacker0x01

    Hacker0x01/hacker101

    14,449Ver en GitHub↗

    Hacker101 is a cybersecurity education platform and web security training portal. It serves as a structured collection of lessons and resources designed to teach students about vulnerability research and penetration testing through guided modules. The platform operates as a static site generator and markdown-based content manager. It uses plain text files with structured metadata to define the hierarchy and properties of educational lessons, transforming this content into pre-rendered HTML files for delivery. The curriculum covers a broad domain of security education, including specialized c

    SCSSclickjackingcsrfeducation
    Ver en GitHub↗14,449
  • jacobdjwilson/awesome-annual-security-reportsAvatar de jacobdjwilson

    jacobdjwilson/awesome-annual-security-reports

    1,123Ver en GitHub↗

    A curated list of annual cyber security reports

    awesomeawesome-listcyber-security
    Ver en GitHub↗1,123
  • qazbnm456/awesome-web-securityAvatar de qazbnm456

    qazbnm456/awesome-web-security

    13,097Ver en GitHub↗

    This project serves as a comprehensive cybersecurity training platform and resource repository focused on web application security. It functions as a centralized hub for security practitioners, providing both a curated collection of technical documentation and research, and a system for deploying isolated, containerized environments to practice security analysis and exploitation techniques. The platform distinguishes itself by integrating automated data aggregation with hands-on, container-based orchestration. It maintains a current knowledge base of industry research and digital threats whil

    awesomeawesome-listlist
    Ver en GitHub↗13,097
  • sherlock-project/sherlockAvatar de sherlock-project

    sherlock-project/sherlock

    85,076Ver en GitHub↗

    Sherlock is a command-line automation tool designed to orchestrate software build, execution, and deployment workflows. It functions as an ephemeral runtime orchestrator that executes applications directly from source code, bypassing the need for persistent system-wide installations or manual dependency management. By providing a unified, containerized development environment, it ensures that application dependencies and infrastructure configurations remain consistent across diverse host operating systems. The project distinguishes itself through its ability to synthesize container images dec

    Pythonclicticybersecurity
    Ver en GitHub↗85,076
  • sullo/niktoAvatar de sullo

    sullo/nikto

    10,104Ver en GitHub↗

    Nikto is an open-source HTTP security auditing tool and web server vulnerability scanner. It functions as a reconnaissance engine designed to identify insecure server options, outdated software, and common vulnerabilities by analyzing HTTP responses. The project differentiates itself through capabilities for intrusion detection evasion and web server fingerprinting. It uses request-level encoding and timing spacers to bypass security filters and employs signature-based identification to determine specific server software versions and misconfigurations. The scanner covers broad capability are

    Perl
    Ver en GitHub↗10,104
  • urbanadventurer/whatwebAvatar de urbanadventurer

    urbanadventurer/WhatWeb

    6,424Ver en GitHub↗

    WhatWeb is a web application fingerprinting tool that identifies the technology stack powering a website by scanning HTTP responses and page content. It matches responses against a library of over 1800 signatures to detect CMS platforms, JavaScript libraries, web servers, embedded devices, and third-party addons, while also extracting technical metadata such as software versions, user accounts, and module names. The tool operates through a plugin-based detection framework that supports both passive and aggressive scanning modes. Passive plugins analyze existing HTTP headers and page content w

    Rubyapplication-securityappsechacking
    Ver en GitHub↗6,424
  • sorkila/lockpawAvatar de sorkila

    sorkila/lockpaw

    127Ver en GitHub↗

    Cover your Mac screen with a hotkey while AI agents keep running. Dog/cat mascot, native Settings, Touch ID unlock.

    Swiftai-agentsclaude-codedeveloper-tools
    Ver en GitHub↗127
  • satta/awesome-suricataAvatar de satta

    satta/awesome-suricata

    235Ver en GitHub↗

    A curated list of awesome things related to Suricata

    awesomeawesome-listids
    Ver en GitHub↗235
  • aws-samples/aws-serverless-security-workshopAvatar de aws-samples

    aws-samples/aws-serverless-security-workshop

    543Ver en GitHub↗

    In this workshop, you will learn techniques to secure a serverless application built with AWS Lambda, Amazon API Gateway and RDS Aurora. We will cover AWS services and features you can leverage to improve the security of a serverless applications in 5 domains:

    JavaScript
    Ver en GitHub↗543
  • bountyyfi/lonkeroAvatar de bountyyfi

    bountyyfi/lonkero

    929Ver en GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    Ver en GitHub↗929
  • halo/linkliarAvatar de halo

    halo/LinkLiar

    1,478Ver en GitHub↗

    :link: Link-Layer MAC spoofing GUI for macOS

    Swiftdaemonethernetgui
    Ver en GitHub↗1,478
  • isecpartners/scout2Avatar de iSECPartners

    iSECPartners/Scout2

    1,717Ver en GitHub↗

    Security auditing tool for AWS environments

    Python
    Ver en GitHub↗1,717
  • owasp-amass/amassAvatar de owasp-amass

    owasp-amass/amass

    14,155Ver en GitHub↗

    Amass is an attack surface management tool designed to identify, map, and inventory an organization's internet-facing digital assets. It functions as a security asset discovery engine that systematically expands an organization's known infrastructure footprint through recursive domain name resolution and the collection of intelligence from diverse public data sources. The platform distinguishes itself by utilizing a graph-based modeling approach to organize discovered resources. By maintaining a persistent graph database, it tracks the relationships between infrastructure components and norma

    Goattack-surfacesdnsenumeration
    Ver en GitHub↗14,155
  • aflplusplus/libaflAvatar de AFLplusplus

    AFLplusplus/LibAFL

    2,586Ver en GitHub↗

    Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...

    Rustaflafl-fuzzaflplusplus
    Ver en GitHub↗2,586
  • aflplusplus/aflplusplusAvatar de AFLplusplus

    AFLplusplus/AFLplusplus

    6,605Ver en GitHub↗

    AFL++ is a coverage-guided fuzzing framework that discovers crashes and hangs in software by mutating inputs while tracking which code paths are exercised. It functions as both a fuzzing engine and a campaign manager, supporting targets with or without source code through compile-time instrumentation, dynamic binary instrumentation, and emulation. The framework includes tools for crash triage and analysis, test case minimization, and campaign deployment across local or distributed environments. The framework distinguishes itself through its breadth of instrumentation backends, allowing users

    C
    Ver en GitHub↗6,605
  • 2dust/v2raynAvatar de 2dust

    2dust/v2rayN

    109,164Ver en GitHub↗

    v2rayN is a cross-platform graphical management suite designed to centralize the configuration and execution of multiple network proxy protocols. It functions as a unified control plane that abstracts heterogeneous proxy backends, allowing users to manage diverse network routing engines through a single interface. The platform distinguishes itself by providing a consistent management experience across Windows, Linux, and macOS, while orchestrating the lifecycle of independent proxy processes as child services. It supports specific configuration ecosystems, enabling users to organize and switc

    C#proxyshadowsockssocks5
    Ver en GitHub↗109,164
  • aparajita/capacitor-biometric-authAvatar de aparajita

    aparajita/capacitor-biometric-auth

    224Ver en GitHub↗

    This plugin for Capacitor 8 provides access to native biometry and device credentials on iOS and Android. It supports every type of biometry and every configuration option on both platforms. In addition, biometry and device credentials are simulated on the web so you can test your logic without…

    JavaScript
    Ver en GitHub↗224
  • adroll/hologramAvatar de AdRoll

    AdRoll/hologram

    808Ver en GitHub↗

    Easy, painless AWS credentials on developer laptops.

    Go
    Ver en GitHub↗808
  • anthropics/skillsAvatar de anthropics

    anthropics/skills

    151,506Ver en GitHub↗

    This project provides a standardized framework for extending the functional range of artificial intelligence agents through a registry of modular, declarative instructions. It enables agentic workflow automation by allowing developers to define task-specific behaviors and operational constraints that guide how agents interact with external tools and execute multi-step processes. The system distinguishes itself through a directory-based discovery model and a plugin-registry architecture that facilitates the distribution of specialized workflows. By utilizing a schema-driven specification that

    Pythonagent-skills
    Ver en GitHub↗151,506
  • aparajita/capacitor-secure-storageA

    aparajita/capacitor-secure-storage

    0Ver en GitHub↗

    This plugin for Capacitor 8 provides secure key/value storage on iOS and Android. It was originally designed to be a companion to @aparajita/capacitor-biometric-auth in order to securely store login credentials, but can be used to store any JSON data types.

    Ver en GitHub↗0
  • apsdehal/awesome-ctfAvatar de apsdehal

    apsdehal/awesome-ctf

    11,614Ver en GitHub↗

    This project is a comprehensive directory of software utilities, frameworks, and educational resources designed for cybersecurity competitions and offensive security research. It serves as a centralized index for tools used in cryptography, forensics, reverse engineering, and web exploitation, while providing structured materials for training and skill development. The repository distinguishes itself through a community-driven maintenance model that aggregates and organizes technical resources into a searchable, hierarchical structure. It facilitates knowledge transfer by cataloging expert pr

    JavaScriptawesomectfpenetration
    Ver en GitHub↗11,614
  • aquasecurity/trivyAvatar de aquasecurity

    aquasecurity/trivy

    36,462Ver en GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Ver en GitHub↗36,462
  • archerysec/archerysecAvatar de archerysec

    archerysec/archerysec

    2,461Ver en GitHub↗

    ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

    JavaScript
    Ver en GitHub↗2,461
  • anorov/cloudflare-scrapeAvatar de Anorov

    Anorov/cloudflare-scrape

    3,526Ver en GitHub↗

    cloudflare-scrape

    Python
    Ver en GitHub↗3,526