SaaSHub helps you find the best software and product alternatives Learn more →
Top 23 Rust security-tool Projects
-
-
Stream
Stream - Scalable APIs for Chat, Feeds, Moderation, & Video. Stream helps developers build engaging apps that scale to millions with performant and flexible Chat, Feeds, Moderation, and Video APIs and SDKs powered by a global edge network and enterprise-grade infrastructure.
-
- Project mention: Show HN: Zizmor, static analysis for GitHub Actions | news.ycombinator.com | 2025-06-26
-
noseyparker
Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.
-
matano
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
Project mention: Matano: Open-source security data lake for cybersecurity analytics | news.ycombinator.com | 2025-04-03 -
moonwalk
Cover your tracks during Linux Exploitation by leaving zero traces on system logs and filesystem timestamps. (by mufeedvh)
-
pdfrip
A multi-threaded PDF password cracking utility equipped with commonly encountered password format builders and dictionary attacks.
-
InfluxDB
InfluxDB – Built for High-Performance Time Series Workloads. InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.
-
cherrybomb
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.
-
DataSurgeon
Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text
-
-
-
-
-
-
-
-
fim
FIM is an Open Source Host-based file integrity monitoring tool that performs file system analysis, file integrity checking, real time alerting and provides Audit daemon data.
-
-
- Project mention: Show HN: Domain Typosquatting Monitoring Tool (Open Beta) | news.ycombinator.com | 2025-03-03
Hey HN! About a year ago, we launched (https://news.ycombinator.com/item?id=32984110) Have I Been Squatted, a tool to detect domain typosquatting leveraging our own open-source twistrs (https://github.com/haveibeensquatted/twistrs) library. While it was still in its early days, it managed to survive the initial traffic surge. Since then, we’ve grown a small community, iterated a lot, and built out new features.
We've been working hard on extending the tool to monitor domains for typosquatting over time and we’re now opening up access to our new Domain Monitoring tool for free for a couple of days to anyone interested to give it a spin—just sign-up, no strings (or credit cards) attached. We’d love for you to try it out and share constructive feedback.
We’ve expanded on our tool quite a bit since its initial launch—there are now screenshots, website classification, geolocation, DNS analysis, and more. Anomaly detection is also in the works, but still in the research phase. We plan to share more about that in a dedicated engineering post soon.
Would love to hear your thoughts!
-
lotus
:zap: Fast Web Security Scanner written in Rust based on Lua Scripts :waning_gibbous_moon: :crab: (by CyAxe)
-
qos
QuorumOS is a computation layer for running applications inside Trusted Execution Environments (TEEs) (by tkhq)
Project mention: QuorumOS: A minimal, deterministic OS for verifiable execution in TEEs | news.ycombinator.com | 2025-01-31 -
secutils
Secutils.dev is an open-source, versatile, yet simple security toolbox for engineers and researchers (by secutils-dev)
Project mention: Show HN: SecUtils – A fast filterable CVE viewer, now with CVSS and CWE support | news.ycombinator.com | 2025-07-13Hey! The name of your project caught my eye, as I'm behind https://secutils.dev, so I had to check it out and say hi to a fellow dev in the security tools space :)
Looks like the home page is empty right now, which might be a bit confusing for visitors. I wonder if it'd make sense to set https://secutils.com/vm/vulnerabilities as the default page until there's something else useful enough to show on the home page.
> So far I'm using it to monitor vulnerabilities for a few key products
I'm curious how you actually monitor them - do you just visit the page periodically, or is there some automatic tracking capability I missed?
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
Rust security-tools discussion
Rust security-tools related posts
-
Show HN: CloakProbe – A privacy-first IP and client debug service
-
Show HN: SecUtils – A fast filterable CVE viewer, now with CVSS and CWE support
-
Show HN: Zizmor, static analysis for GitHub Actions
-
Zizmor: Static analysis tool for GitHub Actions
-
Show HN: Domain Typosquatting Monitoring Tool (Open Beta)
-
Zizmor – static analysis for GitHub Actions
-
Zizmor: Static Analysis for GitHub Actions
- A note from our sponsor - SaaSHub www.saashub.com | 22 Dec 2025
Index
What are some of the best open-source security-tool projects in Rust? This list will help you:
| # | Project | Stars |
|---|---|---|
| 1 | RustScan | 18,715 |
| 2 | black-hat-rust | 4,214 |
| 3 | zizmor | 3,479 |
| 4 | noseyparker | 2,199 |
| 5 | matano | 1,640 |
| 6 | moonwalk | 1,466 |
| 7 | pdfrip | 1,279 |
| 8 | cherrybomb | 1,220 |
| 9 | DataSurgeon | 873 |
| 10 | cargo-auditable | 788 |
| 11 | ppfuzz | 645 |
| 12 | novops | 458 |
| 13 | rebuilderd | 413 |
| 14 | shellclear | 225 |
| 15 | pyscan | 206 |
| 16 | birdcage | 200 |
| 17 | fim | 173 |
| 18 | Pgen | 145 |
| 19 | kepler | 136 |
| 20 | twistrs | 130 |
| 21 | lotus | 90 |
| 22 | qos | 87 |
| 23 | secutils | 77 |