







Burp Suite is an integrated platform for performing security testing of web applications. Its various tools work seamlessly together to support the entire testing process, from initial mapping and analysis of an application's attack surface, through to finding and exploiting...

Fail2ban scans log files (e.g. /var/log/apache/error_log) and bans IPs that show the malicious signs -- too many password failures, seeking for exploits, etc. Generally Fail2Ban is then used to update firewall rules to reject the IP addresses for a specified amount of time...

OpenPGP is the most widely used email encryption standard. It is defined by the OpenPGP Working Group of the Internet Engineering Task Force (IETF) as a Proposed Standard in RFC 4880. OpenPGP was originally derived from the .
Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of protecting workloads across on-premises, virtualized, containerized, and cloud-based environments.



DNSCrypt is a protocol that authenticates communications between a DNS client and a DNS resolver. It prevents DNS spoofing. It uses cryptographic signatures to verify that responses originate from the chosen DNS resolver and haven't been tampered with.
BrowserLeaks.com is a website that checks how much private information your web browser is leaking about you. This includes your IP address, unique fonts, screen resolution, operating system, battery status, etc. Advice is given on how to fix this.

Automates HTTPS setup using Let's Encrypt certificates and supports multiple servers. Open source tool by EFF, prioritizing internet security.

OpenSSL is a framework which implements the secure socket layer. It ships with a program/library which gives you access to all those functions.

reCAPTCHA is a free service that protects your site from spam and abuse, using risk analysis techniques to tell humans and bots apart.


OnlyKey is an open source alternative to YubiKey. OnlyKey natively supports: a hardware password manager, multiple two-factor methods (FIDO2, TOTP, and Yubico® OTP), passwordless SSH login, and OpenPGP.




The Open Vulnerability Assessment System (OpenVAS) is a framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution.





Simple DNSCrypt is a simple management tool to configure DNSCrypt Proxy on windows based systems.




Collects and analyses mobile radio data to make you aware of your mobile network security and to warn you about threats like fake base stations (IMSI catchers), user tracking, and SS7 attacks.




Hard_Configurator offers a GUI to manage software restriction policies on Windows systems. While the tasks can all be achieved through Regedit this app greatly simplifies the configuration process.







Rudder is a solution for automating your IT infrastructure to ensure security, reliability and compliance of your systems, whatever the OS. Gain instant visibility of IT compliance and benefit from continuous remediation to ensure an environment well configured and secured.




MINIX is a POSIX-compliant Unix-like operating system based on a tiny microkernel running in kernel mode with the rest of the operating system running as a number of isolated, protected, processes in user mode.

Tracecat is the AI-native, open source automation platform for security teams. Build automation workflows and close cases fast. Deploy your first AI-assisted workflow in 15 minutes.

Stethoscope is a personalized security recommendation tool made by Netflix for employees.


