warp-tech/warpgate
Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software
About the project
Warpgate is a self-hosted bastion/PAM for SSH, HTTPS, Kubernetes, MySQL, PostgreSQL, RDP and VNC that needs no client software, records sessions and supports 2FA/SSO.
Useful for
- Set up a DMZ bastion that forwards SSH and HTTPS to internal hosts with per-user access rules.
- Replay recorded RDP or SSH sessions from the admin UI during an incident review.
- Enforce TOTP or OpenID Connect login and brute-force blocking for database and Kubernetes access.
README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.
Why it’s trending
- 7 stars so far today, about 19 expected by the end of the day. The usual pace is 9 per day, so that's 2.2× as much.
- Over the last two days the pace is 4.5× that of the previous week and a half.
- GitHub Trending Rust today: #16, +39 stars.
Stars per day
Bars are daily stars, the line is the usual pace. Red marks spike days.
Numbers
- Total stars
- 7,930
- Stars in a day
- 19
- Forks
- 379
- Issues and pull requests
- 2,549
- Watchers
- 43
- Language
- Rust
- License
- Apache-2.0
- Latest release
- v0.29.0 · September 18, 2026
- Created
- February 5, 2022
- Last push
- September 18, 2026
Star trust
Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.
These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.
Spotted in
- September 19, 2026GitHub Trending Rust today: #16, +39 stars
Similar projects
-
9.3
cloudflare/security-audit-skill
A coding-agent skill that turns the agent into a security auditor, running a multi-phase code audit with independently verified, machine-readable findings.
-
7.1
arvindear/wp2shell-PoC
Proof-of-concept for the wp2shell vulnerability chain in WordPress Core (CVE-2026-63030 and CVE-2026-60137) that gives an unauthenticated attacker RCE. A tool for testing and exploitation in controlled environments and…
-
5.1
yynxxxxx/gpt_sub_analysis
A guide to analyzing the ChatGPT iOS subscription flow: it describes intercepting the buyProduct request via Reqable and SSL Kill Switch 3 and rewriting the offerName and salableAdamId fields to obtain the Pro 20x…
-
3.8
BennyThink/NFCX
Cross-platform GUI desktop app for NFC card work: reader discovery, MIFARE Classic reads, dumps, key management, and key recovery. For cards you own or are authorized to test.
-
3.7
NationalSecurityAgency/ghidra
A software reverse engineering framework from the NSA: disassembly, decompilation, graphing and scripting for analyzing compiled code on Windows, macOS and Linux.
-
3.5
bl4ckarch/go-responder
A Go port of Responder: poisons LLMNR, NBT-NS and mDNS, runs rogue servers (SMB, HTTP, LDAP, etc.) and captures NTLM hashes and cleartext credentials.