Open Source Cybersecurity Projects

Discover 47 open source Cybersecurity repositories from GitHub, each with an analysis of what it does, key features, use cases and alternatives. Cybersecurity projects here are most often combined with Security, Python and Security Tools. Last updated October 4, 2026.

47 repositories · updated October 4, 2026

Azure-Sentinel: Security Detections and Hunting Content

Azure-Sentinel: Security Detections and Hunting Content

Azure-Sentinel is a community repository of security content for Microsoft Sentinel and Microsoft 365 Defender. Security teams can use its detections, KQL queries, workbooks, and playbooks to onboard, monitor environments, and investigate threats.

CybersecuritySecurityPython
Added Feb 27, 2026 View details
awesome-threat-modelling: Find Threat Modeling Learning Resources

awesome-threat-modelling: Find Threat Modeling Learning Resources

A curated directory of threat modeling books, courses, videos, tutorials, examples, and tools. It helps developers and security practitioners find learning material and practical references for security reviews.

Awesome ListResourcesSecurity
Added Feb 26, 2026 View details
awesome-osint: Find Open-Source Intelligence Tools and Resources

awesome-osint: Find Open-Source Intelligence Tools and Resources

A curated directory of OSINT tools and resources for security researchers, threat hunters, and investigators. Browse categories spanning search, social networks, people research, geospatial intelligence, and threat intelligence.

Awesome ListSecurityCybersecurity
Added Feb 23, 2026 View details
openaev: Plan and Run Cyber Adversary Simulations

openaev: Plan and Run Cyber Adversary Simulations

OpenAEV helps security teams plan, schedule, and run adversary simulation campaigns and exercises. Use it to coordinate teams, monitor activity, and review security gaps in relation to current threats.

CybersecuritySecurityJava
Added Feb 22, 2026 View details
Damn-Vulnerable-RESTaurant-API-Game: Practice API Security

Damn-Vulnerable-RESTaurant-API-Game: Practice API Security

A deliberately insecure Python API for practicing vulnerability discovery, exploitation, and remediation. Developers, ethical hackers, and security engineers can run it locally with Docker as a controlled training environment.

PythonAPISecurity
Added Feb 1, 2026 View details
PayloadsAllTheThings: Find Web Security Payloads and Bypass Techniques

PayloadsAllTheThings: Find Web Security Payloads and Bypass Techniques

A community-maintained reference of payloads and bypass techniques for web application security testing. Use it to research vulnerability scenarios, support authorized penetration tests, and find ready-to-use Burp Intruder files.

SecurityCybersecuritySecurity Tools
Added Jan 28, 2026 View details
Darkus: Search Onion Websites Across Search Engines

Darkus: Search Onion Websites Across Search Engines

Darkus is a Python tool that sends a search term to deep- and dark-web search engines and returns matching links. It also offers a local database and an Ahmia blacklist check for research and educational use.

PythonCybersecurityCLI
Added Jan 23, 2026 View details
wake: Test and Analyze Solidity Smart Contracts

wake: Test and Analyze Solidity Smart Contracts

Wake is a Python-based framework for testing, fuzzing, and static analysis of Solidity smart contracts. It suits Solidity developers and security teams that want automated checks, custom detectors, and IDE support in one tool.

PythonTestingSecurity
Added Jan 21, 2026 View details
mitaka: Search and Scan OSINT Indicators from Your Browser

mitaka: Search and Scan OSINT Indicators from Your Browser

Mitaka is a browser extension for looking up and scanning OSINT indicators from selected text. It identifies and refangs common indicators, then routes them to relevant search and scan services.

TypeScriptSecurityCybersecurity
Added Jan 16, 2026 View details
CloakQuest3r: Check for Exposed Origin IP Addresses

CloakQuest3r: Check for Exposed Origin IP Addresses

CloakQuest3r is a Python security research tool that checks whether websites behind Cloudflare or similar proxies may expose their origin IP. It combines subdomain scanning with historical IP and SSL certificate analysis for authorized defensive assessments.

PythonSecurityCybersecurity
Added Jan 9, 2026 View details
agentic_security: Scan LLMs and Agent Workflows for Vulnerabilities

agentic_security: Scan LLMs and Agent Workflows for Vulnerabilities

Agentic Security is a Python toolkit for probing LLMs and agent workflows with jailbreaks, fuzzing, and multimodal inputs. It fits developers and security teams who want to run configurable scans against an API and use the results in CI.

PythonSecurityLLM
Added Jan 4, 2026 View details
Sirius: Discover Network Hosts and Scan for Vulnerabilities

Sirius: Discover Network Hosts and Scan for Vulnerabilities

Sirius is a self-hosted vulnerability scanner that discovers hosts and services, then identifies CVEs and presents results in a web dashboard. It suits teams that want a Docker-based scanning stack with remote agents and an API for security workflows.

SecurityCybersecurityDocker
Added Jan 3, 2026 View details

Related topics

OS
OSRepos

Analysis and discovery of open source repositories. Find interesting projects and follow their updates.

Monitor your website with YourWebsiteScore

OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of third-party repository code is at your own risk. Always review source code, dependencies, licenses, and security implications before running anything.

© 2025 OSRepos. Built with Nuxt 3 and lots of ❤️