#1Tools for auditing configurations, permissions, and services in cloud platforms (IaaS, PaaS).
Kitploit recommended

Cyber Panel - The hosting control panel for OpenLiteSpeed
eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…

CVE-2025-55752:Tomcat 8.5 已 EOL,终版 8.5.100。Apache 逐条声明「8.5 也受影响」的 2025 CVE 有 14 条,其中 10 条在 NVD 按 8.5.100 查不到。离线单 jar,读 conf/ 判断你到底中了哪几条。

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Read-only IOC scanner and mitigation toolkit for cPanel & WHM EmailTrack SQL injection (CVE-2026-67401). Performs version fingerprinting, file…

Deploy self-hosted AI coding agents (OpenClaw, Claude Code, Codex) into your AWS account with CloudFormation, IAM profiles, and sandbox isolation for…

Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

Write tests against structured configuration data using the Open Policy Agent Rego query language

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

Microsoft Sentinel SIEM Log Source Analyzer

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

Policy-driven, layered isolation and containment

A Chaos Engineering Platform for Kubernetes.

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

Recovery notes for proxmox advisory ID: PSA-2026-00043-1 (CVE-2023-54391)

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.

Secure and fast microVMs for serverless computing.

This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL