Python Security

Open-source Python projects categorized as Security

Top 23 Python Security Projects

  1. PayloadsAllTheThings

    A list of useful payloads and bypass for Web Application Security and Pentest/CTF

    Project mention: PayloadsAllTheThings: Essential Payloads and Bypass for Web Security and CTFs | news.ycombinator.com | 2024-08-11
  2. Nutrient

    Nutrient – The #1 PDF SDK Library, trusted by 10K+ developers. Other PDF SDKs promise a lot - then break. Laggy scrolling, poor mobile UX, tons of bugs, and lack of support cost you endless frustrations. Nutrient’s SDK handles billion-page workloads - so you don’t have to debug PDFs. Used by ~1 billion end users in more than 150 different countries.

    Nutrient logo
  3. mitmproxy

    An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

    Project mention: I turned GitHub Copilot into OpenAI API compatible provider | dev.to | 2025-02-06

    Enter mitmproxy - this beautiful Python program can act as a proxy and logs all network requests. It even comes with a devtool like web UI. Just what I needed.

  4. quivr

    Opiniated RAG for integrating GenAI in your apps 🧠 Focus on your product rather than the RAG. Easy integration in existing products with customisation! Any LLM: GPT4, Groq, Llama. Any Vectorstore: PGVector, Faiss. Any Files. Anyway you want.

    Project mention: Ask HN: Local RAG with private knowledge base | news.ycombinator.com | 2024-10-29
  5. SQLMap

    Automatic SQL injection and database takeover tool

    Project mention: Top Github repositories for 10+ programming languages | dev.to | 2024-07-16

    SQL MAP, learning SQL

  6. CheatSheetSeries

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Project mention: Using AI Offline: Insights into Local Models | dev.to | 2025-01-29

    Just for fun, I cloned the OWASP repo https://github.com/OWASP/CheatSheetSeries.git and am waiting for the indexing process to finish. I then asked the model (on the left side) and included all files from the cloned project (on the right side). As you can see below, the right side contains more useful information

  7. hosts

    🔒 Consolidating and extending hosts files from several well-curated sources. Optionally pick extensions for porn, social media, and other categories.

    Project mention: Show HN: A blocklist to remove spam and bad websites from search results | news.ycombinator.com | 2025-01-14

    You could get a step closer to that and integrate it into your DNS: https://github.com/StevenBlack/hosts

    The upside is that it would go beyond your browser to anything on your machine that makes a DNS request.

    > Another great function (not for this plugin) should be the option to "bundle" all search results from the same domain. Stuff them under one collapsible entry.

    That would be really cool. Just zip it up if you don't want to see that domain for that specific search.

  8. macOS-Security-and-Privacy-Guide

    Guide to securing and improving privacy on macOS

  9. CodeRabbit

    CodeRabbit: AI Code Reviews for Developers. Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR.

    CodeRabbit logo
  10. DB-GPT

    AI Native Data App Development framework with AWEL(Agentic Workflow Expression Language) and Agents

  11. wifiphisher

    The Rogue Access Point Framework

  12. Fail2Ban

    Daemon to ban hosts that cause multiple authentication errors

    Project mention: One-Click Setup for SSH Login, Password Policy, IP Ban Configuration, and Custom Admin User Creation | dev.to | 2025-02-06

    IP Ban: Fail2ban

  13. dirsearch

    Web path scanner

  14. routersploit

    Exploitation Framework for Embedded Devices

  15. urh

    Universal Radio Hacker: Investigate Wireless Protocols Like A Boss

    Project mention: Goodwatch – A Ham Radio Wristwatch | news.ycombinator.com | 2024-07-03

    You don't need a license to explore and have fun.

    Cheap, firmware hackable HTs are hawt, in particular the Quansheng UV-K5,K6.

    Tons of SDR receivers out there to explore, and many extremely exiting transceiver projects out there also. Just so much:

    https://github.com/jopohl/urh

    http://websdr.org/

    http://kiwisdr.com/public/

    https://meshtastic.org/docs/hardware/devices/

  16. opensnitch

    OpenSnitch is a GNU/Linux interactive application firewall inspired by Little Snitch.

    Project mention: Sniffnet – monitor your Internet traffic | news.ycombinator.com | 2025-02-02

    There is OpenSnitch [0] on Linux, but it us a bit clumsy to setup. I tried it once and didn't get far, but have it again on my todo list. Not aware of something similar on Linux.

    On Android there is NetGuard [1] which is awesome (not affiliated, just a happy customer).

    [0] https://github.com/evilsocket/opensnitch

    [1] https://netguard.me/

  17. prowler

    Prowler is an Open Cloud Security tool for AWS, Azure, GCP and Kubernetes. It helps for continuos monitoring, security assessments and audits, incident response, compliance, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more.

    Project mention: Top 11 DevOps Security Tools | dev.to | 2024-08-30

    11. Prowler

  18. scapy

    Scapy: the Python-based interactive packet manipulation program & library.

  19. mvt

    MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

  20. Mailpile

    A free & open modern, fast email client with user-friendly encryption and privacy features

  21. sigma

    Main Sigma Rule Repository

  22. trape

    People tracker on the Internet: OSINT analysis and research tool by Jose Pino

  23. frappe

    Low code web framework for real world applications, in Python and Javascript

    Project mention: 10 Must-Bookmark Open Source Projects for Developers | dev.to | 2025-01-15

    📂 GitHub Repository 🌐 Website

  24. objection

    📱 objection - runtime mobile exploration

    Project mention: Mobile Security Tools part 3: Objection | dev.to | 2024-11-01

    Objection is a runtime mobile exploration toolkit, powered by Frida. I wrote a blog post that explains what Frida is and how it can be setup on Android. You can find it from here.

  25. BunkerWeb

    🛡️ Open-source and next-generation Web Application Firewall (WAF)

    Project mention: Show HN: BunkerWeb – The Open-Source Web Application Firewall (WAF) | news.ycombinator.com | 2024-12-06
  26. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Python Security discussion

Log in or Post with

Python Security related posts

  • BleachBit is a free and open-source disk space cleaner

    1 project | news.ycombinator.com | 15 Feb 2025
  • 10 Must-Have AI Tools to Supercharge Your Software Development

    3 projects | dev.to | 14 Feb 2025
  • Invariant: A security and bug scanner for agent traces

    1 project | news.ycombinator.com | 7 Feb 2025
  • I turned GitHub Copilot into OpenAI API compatible provider

    3 projects | dev.to | 6 Feb 2025
  • Sniffnet – monitor your Internet traffic

    8 projects | news.ycombinator.com | 2 Feb 2025
  • When Postgres index meets Bcrypt

    3 projects | dev.to | 31 Jan 2025
  • How I automated my fitness goals

    3 projects | dev.to | 26 Jan 2025
  • A note from our sponsor - Nutrient
    www.nutrient.io | 16 Feb 2025
    Other PDF SDKs promise a lot - then break. Laggy scrolling, poor mobile UX, tons of bugs, and lack of support cost you endless frustrations. Nutrient’s SDK handles billion-page workloads - so you don’t have to debug PDFs. Used by ~1 billion end users in more than 150 different countries. Learn more →

Index

What are some of the best open-source Security projects in Python? This list will help you:

# Project Stars
1 PayloadsAllTheThings 63,195
2 mitmproxy 37,871
3 quivr 37,264
4 SQLMap 33,296
5 CheatSheetSeries 28,810
6 hosts 27,461
7 macOS-Security-and-Privacy-Guide 21,497
8 DB-GPT 14,553
9 wifiphisher 13,375
10 Fail2Ban 13,179
11 dirsearch 12,528
12 routersploit 12,345
13 urh 11,253
14 opensnitch 11,248
15 prowler 11,220
16 scapy 11,061
17 mvt 10,711
18 Mailpile 8,821
19 sigma 8,693
20 trape 8,203
21 frappe 7,939
22 objection 7,805
23 BunkerWeb 7,543

Sponsored
Nutrient – The #1 PDF SDK Library, trusted by 10K+ developers
Other PDF SDKs promise a lot - then break. Laggy scrolling, poor mobile UX, tons of bugs, and lack of support cost you endless frustrations. Nutrient’s SDK handles billion-page workloads - so you don’t have to debug PDFs. Used by ~1 billion end users in more than 150 different countries.
www.nutrient.io

Did you know that Python is
the 2nd most popular programming language
based on number of references?