Paolo del Mundo's starred repositories

whisper

Robust Speech Recognition via Large-Scale Weak Supervision

Language:PythonLicense:MITStargazers:64698Issues:537Issues:0

DeepFaceLive

Real-time face swap for PC streaming or video calls

Language:PythonLicense:GPL-3.0Stargazers:24803Issues:346Issues:144

security-guide-for-developers

Security Guide for Developers (实用性开发人员安全须知)

my-arsenal-of-aws-security-tools

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

Language:ShellLicense:Apache-2.0Stargazers:8815Issues:392Issues:33

roadmap

GitHub public roadmap

keyhacks

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

bounty-targets-data

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

License:MITStargazers:3046Issues:234Issues:0

github-dorks

Find leaked secrets via github search

Language:PythonLicense:Apache-2.0Stargazers:2705Issues:92Issues:22

hercules

Gaining advanced insights from Git repository history.

Language:GoLicense:NOASSERTIONStargazers:2144Issues:20Issues:136

APISecurityBestPractices

Resources to help you keep secrets (API keys, database credentials, certificates, ...) out of source code and remediate the issue in case of a leaked API key. Made available by GitGuardian.

awesome-threat-modelling

A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.

Language:DockerfileLicense:CC0-1.0Stargazers:1308Issues:65Issues:5

wrongsecrets

Vulnerable app with examples showing how to not use secrets

Language:JavaLicense:AGPL-3.0Stargazers:1183Issues:17Issues:235

JSFScan.sh

Automation for javascript recon in bug bounty.

OWASP-VWAD

The OWASP Vulnerable Web Applications Directory project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.

NuKeeper

Automagically update nuget packages in .NET projects

Language:C#License:Apache-2.0Stargazers:540Issues:15Issues:247

python-libnmap

libnmap is a python library to run nmap scans, parse and diff scan results. It supports python 2.7 up to 3.8. It's wonderful.

Language:PythonLicense:NOASSERTIONStargazers:488Issues:63Issues:71

plaid-postman

Postman collection for the Plaid API

bad-asn-list

An open source list of ASNs known to belong to cloud, managed hosting, and colo facilities.

e-commerce-microservices-sample

A fictitious cloud-native e-commerce application using microservices architecture powered by polyglot languages & databases, deployable to Kubernetes & AWS

shepherd

A utility for applying code changes across many repositories.

Language:TypeScriptLicense:Apache-2.0Stargazers:222Issues:29Issues:81

alfred-outlook

Alfred outlook mail/contact search

Language:PythonLicense:MITStargazers:74Issues:5Issues:17

pst-digger

Program to analyze mails stored into a Microsoft Outlook PST file and find one based on search keywords.

Language:JavaLicense:GPL-3.0Stargazers:56Issues:5Issues:1

slacksecrets

Scans Slack for API tokens, credentials, passwords, and more using YARA rules

Language:PythonLicense:GPL-3.0Stargazers:37Issues:1Issues:3

awesome-cloud-osint

This repository will host resources for collecting information about cloud providers - SaaS, IaaS, PaaS, DaaS etc.

snyk-scm-refresh

Keeps Snyk projects in sync with their associated Github repos

Language:PythonLicense:Apache-2.0Stargazers:24Issues:6Issues:42

aws-macie-pii-confidential-regexes

AWS Macie personally identifiable information and confidential data regex list compiled out of AWS Macie.

Stargazers:16Issues:0Issues:0

IAM-Flaws

AWS IAM Security Toolkit: CIS Benchmarks | Enumeration | Privilege Escalation

Language:ShellStargazers:14Issues:1Issues:0

openshift-probable-vulnerabilities

This repository contains all the code, models, scripts and reports for flagging probable vulnerabilities for the gokube-openshift eco-system

Language:Jupyter NotebookLicense:GPL-3.0Stargazers:5Issues:5Issues:1
Language:TypeScriptLicense:Apache-2.0Stargazers:2Issues:0Issues:0

ant-design-blazor

🌈A set of enterprise-class UI components based on Ant Design and Blazor WebAssembly.

Language:C#License:MITStargazers:1Issues:0Issues:0