
Tools for managing user identities, authentication, authorization, and access controls within systems and networks.



A small lambda script that will disable access keys older than a given amount of days.

Fix without disabling Print Spooler

Multiple exploits for Monitorr

a reliable C based exploit and writeup for CVE-2021-3560.

Change the algorithm RS256(asymmetric) to HS256(symmetric) - POC (CVE-2016-10555)

Discource POC

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS

Bypass bludit mitigation login form and upload malicious to call a rev shell


shiro-cve-2020-17523 漏洞的两种绕过姿势分析 以及配套的漏洞环境

SSH bastion/jump host/jumpserver

Macally WIFISD2

CVE-2016-4468

Weblogic 身份认证绕过漏洞批量检测脚本

[CVE-2020-14882] Oracle WebLogic Server Authentication Bypass