
vapi
Self-hostable API lab with OWASP API Top 10 vulnerability exercises. Includes Docker deployment, Postman collections, and walkthroughs for hands-on…

Self-hostable API lab with OWASP API Top 10 vulnerability exercises. Includes Docker deployment, Postman collections, and walkthroughs for hands-on…

a Damn Vulnerable Serverless Application

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Python script to bypass Azure APIM signup when UI is disabled, this is different from the CVE-2025-66390 as it does not require you to setup anything…

Curated library of AI agent skills for Elasticsearch, Kibana, Observability, and Security. Teaches agents correct API usage, cloud management, alert…

End to End testing of Web, API, Cloud, Events and Security

Vulnerability Assessment Scanner with Report Generation

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!