Ruby Security

Open-source Ruby projects categorized as Security

Top 23 Ruby Security Projects

  1. Metasploit

    Metasploit Framework

    Project mention: GSoC 2026 Predictions: 30 NEW AI/ML/Security Organizations You Should Start Contributing to NOW! | dev.to | 2026-02-06

    Framework: https://github.com/rapid7/metasploit-framework ⭐ 34k+

  2. SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
  3. wpscan

    WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

    Project mention: WPScan: WordPress Security Scanner | news.ycombinator.com | 2025-12-24
  4. Brakeman

    A static analysis security vulnerability scanner for Ruby on Rails applications

    Project mention: How to integrate Brakeman Security Scanner with GitHub Code Scanning | dev.to | 2025-12-22

    The Rails security scanner Brakeman supports the SARIF format, but I couldn't find any documentation about how to join all the pieces together and see Brakeman results in GitHub Code Scanning. This blog post is my answer to the question of how you do it.

  5. WhatWeb

    Next generation web scanner

  6. Rack::Attack

    Rack middleware for blocking & throttling

    Project mention: Rails Built-in Rate Limiting: A Deep Dive | dev.to | 2025-08-03

    Ruby on Rails 7.2 introduces a powerful, built-in rate limiting mechanism directly into Action Controller. This eliminates the need for third-party gems like rack-attack for many common use cases, offering a first-party, integrated solution for protecting your application from abuse.

  7. WebHackersWeapons

    ⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting

  8. SecureHeaders

    Manages application of security headers with many safe defaults

  9. inspec

    InSpec: Auditing and Testing Framework

  10. PasswordPusher

    🔐 Securely share sensitive information with automatic expiration & deletion after a set number of views or duration. Track who, what and when with full audit logs.

    Project mention: Password Pusher: Share secrets securely with self-deleting links and audit logs | news.ycombinator.com | 2025-08-07
  11. bundler-audit

    Patch-level verification for Bundler

  12. OAuth2

    🔐 oauth2 - A Ruby wrapper for the OAuth 2.0, & 2.1 Authorization Frameworks, including OpenID Connect (OIDC) (by ruby-oauth)

    Project mention: 💎REL: oauth2 v2.0.18 | dev.to | 2026-03-31

    oauth2 v2.0.18 was released... almost five months ago. And I never got around to posting about it. Being unemployed is a LOT of work...

  13. authentication-zero

    An authentication system generator for Rails applications.

  14. cocoapods-keys

    A key value store for storing per-developer environment and application keys

  15. rails-security-checklist

    :key: Community-driven Rails Security Checklist (see our GitHub Issues for the newest checks that aren't yet in the README)

  16. best-practices-badge

    🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)

  17. username-anarchy

    Username tools for penetration testing

  18. cfn_nag

    Linting tool for CloudFormation templates

  19. invisible_captcha

    🍯 Unobtrusive and flexible spam protection for Rails apps

  20. MobileHackersWeapons

    Mobile Hacker's Weapons / A collection of cool tools used by Mobile hackers. Happy hacking , Happy bug-hunting

  21. RbNaCl

    Ruby FFI binding to the Networking and Cryptography (NaCl) library (a.k.a. libsodium)

  22. Hashids

    A small Ruby gem to generate YouTube-like hashes from one or many numbers. Use hashids when you do not want to expose your database ids to the user.

  23. haiti

    :key: Hash type identifier (CLI & lib)

  24. linux-baseline

    DevSec Linux Baseline - InSpec Profile

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Ruby Security discussion

Log in or Post with

Ruby Security related posts

  • Ronin – A Security Toolkit

    1 project | news.ycombinator.com | 14 Mar 2026
  • WPScan: WordPress Security Scanner

    1 project | news.ycombinator.com | 24 Dec 2025
  • How to integrate Brakeman Security Scanner with GitHub Code Scanning

    4 projects | dev.to | 22 Dec 2025
  • 安卓深度链接安全研究基于Metasploit的QR码攻击模块开发实践

    1 project | dev.to | 31 Oct 2025
  • Password Pusher: Share secrets securely with self-deleting links and audit logs

    2 projects | news.ycombinator.com | 7 Aug 2025
  • Rails Built-in Rate Limiting: A Deep Dive

    3 projects | dev.to | 3 Aug 2025
  • Built-in Rate Limiting in Rails 8

    1 project | dev.to | 28 May 2025
  • A note from our sponsor - SaaSHub
    www.saashub.com | 13 Jun 2026
    SaaSHub helps you find the best software and product alternatives Learn more →

Index

What are some of the best open-source Security projects in Ruby? This list will help you:

# Project Stars
1 Metasploit 38,332
2 wpscan 9,622
3 Brakeman 7,246
4 WhatWeb 6,634
5 Rack::Attack 5,742
6 WebHackersWeapons 4,626
7 SecureHeaders 3,226
8 inspec 3,072
9 PasswordPusher 3,043
10 bundler-audit 2,755
11 OAuth2 2,181
12 authentication-zero 1,872
13 cocoapods-keys 1,550
14 rails-security-checklist 1,365
15 best-practices-badge 1,340
16 username-anarchy 1,339
17 cfn_nag 1,307
18 invisible_captcha 1,242
19 MobileHackersWeapons 1,239
20 RbNaCl 985
21 Hashids 985
22 haiti 983
23 linux-baseline 874

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com

Did you know that Ruby is
the 13th most popular programming language
based on number of references?