softhsm | | Cryptographic store accessible through a PKCS#11 interface |
softhsm2 | | Cryptographic store accessible through a PKCS#11 interface |
sops | | Simple and flexible tool for managing secrets |
spid-compliant-certificates (V) | | Generate X509 certificates according to Avviso SPID 29 v3 |
spiped | | Tool for creating symmetrically encrypted and authenticated pipes |
sqlmap | | Automatic SQL injection and database takeover tool |
srm | | Secure replacement for rm(1) |
ssdeep | | Program computing context triggered piecewise hashes (CTPH) |
ssh-askpass | | X11-based passphrase dialog for OpenSSH |
ssh-audit | | Tool for SSH server & client configuration auditing |
sshfp | | Print ssh host key fingerprint resource records |
sshguard | | Protect networked hosts from brute force attacks |
sshpass | | Non-interactive ssh password auth |
ssldump | | SSLv3/TLS network protocol analyzer |
sslproxy | | Small SSL proxy |
sslsplit | | Transparent and scalable SSL/TLS interception |
ssss | | Shamir's Secret Sharing Scheme |
starttls | | Simple wrapper program for STARTTLS on emacsen |
steghide | | Hides data (steganography) in audio or graphics files |
stegtunnel | | Provides a covert channel in the IPID and sequence number |
stunnel | | Universal SSL tunnel |
subfinder | | Fast passive subdomain enumeration tool |
sudo | | Allow others to run commands as root |
tcl-tls | | TLS (aka SSL) Channel for the Tcl language |
tcp_wrappers | | Monitor and filter incoming requests for network services |
tct | | Programs to aid post-mortem after a break-in |
terrapin-scanner | | Scan SSH servers and clients for Terrapin vulnerability |
tkpasman | | Username and password manager that uses the Tk toolkit |
tlswrapper | | UCSPI/inetd-style TLS encryption wrapper |
tlsx | | TLS grabber focused on TLS based data collection |
tripwire | | File and directory integrity checker |
trufflehog | | Find credentials all over the place |
TweetNaCl | | World's first auditable high-security cryptographic library |
uacme | | Lightweight C ACMEv2 client which uses external authenticators |
validns | | Validns, a high performance DNS/DNSSEC zone validator |
vault | | Tool for managing secrets |
vaultwarden | | Bitwarden compatible backend server |
volatility3 | | Advanced memory forensics framework |
wfuzz | | Web application fuzzer |
whisker (V) | | URL scanner used to search for known vulnerable CGIs on websites |
wolfssl | | Embedded SSL C-Library |
xca | | Certificate and key management |
xhash | | Faster hashing with Goroutines |
xml-security-c | | XML Digital Signature specification implementation |
xmlsec1 | | XML signature and encryption library |
yafic | | File integrity checker |
yara | | Pattern matching swiss knife for malware researchers |
ykclient | | Libraries for online validation of Yubikey OTPs |
ykman | | Yubico YubiKey manager command-line tool |
ykpers | | Yubico's YubiKey re-programming toolkit |
yubikey-manager-qt | | Cross-platform GUI for configuring any YubiKey over all USB interfaces |
zebedee | | Simple tunneling program for TCP or UDP with encryption |
zkt | | DNSSEC Zone Key Tool |
zoneminder | | Video camera security and surveillance solution |
zxcvbn-c | | Password strength estimator |