To add to the list: Submit a pull request To remove from the list: Open an issue List items should be sorted alphabetically. Each item should be limited to one link The link should be the name of the package or project Direct installation commands should follow on the next line, indented by 2 spaces and enclosed in `` Descriptions should be clear, concise, and non-promotional Descriptions should follow the link, on the same line Run npm install and then npm test to verify everything is correct according to guidelines Quality standard: To stay on the list, package repositories should adhere to these quality standards: Generally useful to the community, Functional, Stable Reporting issues: Please open an issue if you find anything that could be improved or have suggestions for making the list a more valuable resource. Thanks!
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Intentionally vulnerable Kubernetes cluster environment for learning and practicing Kubernetes security.
Comprehensive reference guide for bug bounty hunters with detailed information on various vulnerabilities, platforms, tools, and best practices.
ENISA Training Resources offers online training material for cybersecurity specialists, covering technical areas such as artefact handling and analysis.
A cybersecurity challenge where you play the role of an incident response consultant investigating an intrusion at Precision Widgets of North Dakota.
A curated list documenting open-source projects that incorporate political protests in their software, ranging from messages to conditional malware.
Connect and learn from experts and peers in the Microsoft Community Hub.
A condensed field guide for cyber security incident responders, covering incident response processes, attacker tactics, and practical techniques for handling incidents.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.