Moein Fatehi's starred repositories

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

Retrieval-based-Voice-Conversion-WebUI

Easily train a good VC model with voice data <= 10 mins!

Language:PythonLicense:MITStargazers:22462Issues:166Issues:1573

cilium

eBPF-based Networking, Security, and Observability

Language:GoLicense:Apache-2.0Stargazers:19639Issues:312Issues:9717

kubescape

Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.

Language:GoLicense:Apache-2.0Stargazers:10057Issues:99Issues:477

engineering-management

A collection of inspiring resources related to engineering management and tech leadership

Language:ShellLicense:MITStargazers:7472Issues:256Issues:3

wstg

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Language:DockerfileLicense:CC-BY-SA-4.0Stargazers:7068Issues:331Issues:344

slither

Static Analyzer for Solidity and Vyper

Language:PythonLicense:AGPL-3.0Stargazers:5217Issues:67Issues:1192

ThreatMapper

Open Source Cloud Native Application Protection Platform (CNAPP)

Language:TypeScriptLicense:Apache-2.0Stargazers:4752Issues:56Issues:581

echidna

Ethereum smart contract fuzzer

Language:HaskellLicense:AGPL-3.0Stargazers:2691Issues:59Issues:575

Damn-Vulnerable-GraphQL-Application

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.

Language:JavaScriptLicense:MITStargazers:1482Issues:27Issues:32

publications

Publications from Trail of Bits

Language:PythonLicense:CC-BY-SA-4.0Stargazers:1397Issues:139Issues:11

solidity-security-blog

Comprehensive list of known attack vectors and common anti-patterns

panoramix

Ethereum decompiler

Language:PythonLicense:MITStargazers:795Issues:38Issues:39

Smart-Contract-Security-Audits

Certified Smart Contract Audits for Ethereum, Solana, Near, Cardano, Aptos, Sui, Binance Smart Chain, Fantom, EOS, Tezos by softstack (formerly Chainsulting)

Language:HTMLStargazers:760Issues:224Issues:0

verified-smart-contracts

Smart contracts which are formally verified

Language:SolidityLicense:NOASSERTIONStargazers:717Issues:50Issues:18

Awesome-Smart-Contract-Security

A curated list of Smart Contract Security materials and resources For Researchers

SCSVS

Smart Contract Security Verification Standard

securify2

Securify v2.0

Language:SolidityLicense:Apache-2.0Stargazers:581Issues:25Issues:37

smartbugs

SmartBugs: A Framework to Analyze Ethereum Smart Contracts

Language:PythonLicense:Apache-2.0Stargazers:555Issues:17Issues:96

balancer-v2-monorepo

Balancer V2 Monorepo

Language:TypeScriptLicense:GPL-3.0Stargazers:304Issues:34Issues:451

abci

DEPRECATED: Merged into https://github.com/tendermint/tendermint under `abci`

Language:GoLicense:NOASSERTIONStargazers:254Issues:40Issues:112

blockchains-security-toolkit

ongoing catalog with tools, resources, notes on blockchain security

public-audits

Collection of public security reviews

License:NOASSERTIONStargazers:134Issues:17Issues:0

awesome-chatgpt-plugins

An awesome & curated list of best plugins for ChatGPT

audits

Security Audits by Informal Systems

Language:TLALicense:Apache-2.0Stargazers:15Issues:32Issues:0

backup-finder

A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP OTG-CONFIG-004)

Language:JavaLicense:GPL-3.0Stargazers:10Issues:3Issues:0