Security Gems

#Total RankDaily RankNameSummary
1261231brakemanBrakeman detects security vulnerabilities in Ruby on Rails applications via static anal...
2358556rack-attackA rack middleware for throttling and blocking abusive requests
3370679bundler-auditbundler-audit provides patch-level verification for Bundled apps.
41,1261,444invisible_captchaUnobtrusive, flexible and complete spam protection for Rails applications using honeypo...
51,248671coseRuby implementation of RFC 8152 CBOR Object Signing and Encryption (COSE)
61,264717webauthnWebAuthn ruby server library ― Make your application a W3C Web Authentication conforman...
71,3431,781secure_headersAdd easily configured security headers to responses including content-security-poli...
81,7341,613cvss-suiteThis Ruby gem calculates the score based on the vector of the Common Vulnerability Scor...
93,3884,472strong_passwordEntropy-based password strength checking for Ruby and ActiveModel
104,3173,003hrr_rb_sshPure Ruby SSH 2.0 server and client implementation
115,1442,743zxcvbn100% native Ruby 100% compatible port of Dropbox's zxcvbn.js
129,5015,300contrast-agentThis gem instantiates a Rack middleware for rack-based web applications in order to pro...
1314,56651,869roninRonin is a free and Open Source Ruby toolkit for security research and development. Ron...
1415,7199,196api_guardJWT authentication solution for Rails APIs
1518,18827,377ronin-supportronin-support is a support library for ronin-rb. ronin-support provides many Core Exten...
1618,5108,755XSpearXSpear is XSS Scanner on ruby gems
1733,08751,869ronin-exploitsronin-exploits is a Ruby micro-framework for writing and running exploits. ronin-exploi...
1837,55890,294sudo_railsProtect any Rails action with password confirmation.
1943,49951,869aoandonAoandon (青行燈) is a minimalist network intrusion detection system (NIDS).
2045,64023,424wordlistWordlist is a Ruby library and CLI for reading, combining, mutating, and building wordl...
2145,77651,869rubylibcrackA binding to the *nix password strength checking library, libcrack/cracklib.
2264,39345,534tls-mapCLI & library for mapping TLS cipher algorithm names: IANA, OpenSSL, GnuTLS, NSS;get in...
2373,19130,538ronin-dbronin-db is a database library for managing and querying security data. ronin-db provid...
2479,74565,015grape-idempotencyAdd idempotency support to your Grape APIs for safely retrying requests without acciden...
2590,70526,649ronin-payloadsronin-payloads is a Ruby micro-framework for writing and running exploit payloads. roni...
2691,02936,089ronin-vulnsronin-vulns is a Ruby library for blind vulnerability testing. It currently supports te...
27177,24445,534ronin-nmapronin-nmap is a Ruby library and CLI for working with nmap. ronin-nmap can parse nmap X...
28177,53845,534ronin-reconronin-recon is a micro-framework and tool for performing reconnaissance. ronin-recon us...
29177,75765,015ronin-listener-httpronin-listener-http is a HTTP server for receiving exfiltrated data sent via HTTP reque...
30177,77265,015ronin-support-webronin-support-web is a web specific support library for ronin-rb. ronin-support-web pro...
31177,87965,015ronin-listenerronin-listener is a small CLI utility for receiving exfiltrated data over DNS or HTTP. ...
32177,95145,534ronin-masscanronin-masscan is a Ruby library and CLI for working with masscan. ronin-masscan can par...
33178,01965,015ronin-web-browserronin-web-browser is a Ruby library for automating the Chrome web browser. ronin-web-br...
34178,32065,015ronin-web-session_cookieronin-web-session_cookie is a library for parsing and deserializing various session coo...
35178,40365,015ronin-listener-dnsronin-listener-dns is a DNS server for receiving exfiltrated data sent via DNS queries....
36178,52965,015ronin-wordlistsronin-wordlists is a library and tool for managing wordlists. ronin-wordlists can insta...
37178,60165,015ronin-appronin-app is a small web application that is meant to be ran locally by the user. It pr...
38178,60765,015ronin-dns-proxyronin-dns-proxy is a configurable DNS proxy server library. It supports returning spoof...