Top #secops Tools & Software
Explore 27 hand-picked tools and software tagged with secops — ranked by popularity and community signals.
trivy
githubFind vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
gitleaks
githubFind secrets with Gitleaks 🔑
trufflehog
githubFind, verify, and analyze leaked credentials
bytebase
githubWorld's most advanced database DevSecOps solution for Developer, Security, DBA and Platform Engineering teams. The GitHub/GitLab for database DevSecOps.
prowler
githubProwler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
netmaker
githubNetmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
bunkerweb
github🛡️ Open-source and next-generation Web Application Firewall (WAF)
firezone
githubEnterprise-ready zero-trust access platform built on WireGuard®.
steampipe
githubZero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.
tfsec
githubTfsec is now part of Trivy
Security-101
github8 Lessons, Kick-start Your Cybersecurity Learning.
faraday
githubOpen Source Vulnerability Management Platform
Anthropic-Cybersecurity-Skills
github754 structured cybersecurity skills for AI agents · Mapped to 5 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND & NIST AI RMF · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 26 security domains · Apache 2.0
DeepAudit
githubDeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
kubernetes-goat
githubKubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
terrascan
githubDetect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
dalfox
github🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
django-DefectDojo
githubOpen-Source Unified Vulnerability Management, DevSecOps & ASPM
dependency-track
githubDependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
SecretScanner
github:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:
ContainerSSH
githubContainerSSH: Launch containers on demand
openrasp
github🔥Open source RASP solution
bearer
githubCode security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
kics
githubFind security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.