
agent-vault
A HTTP credential proxy and vault for AI agents like Claude Code, OpenClaw, Hermes, custom agents + harnesses, and more.

A HTTP credential proxy and vault for AI agents like Claude Code, OpenClaw, Hermes, custom agents + harnesses, and more.

Authentication, authorization, traceability and auditability for SSH accesses.

HardeningKitty - Checks and hardens your Windows configuration

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

Certificate authority issuing short-lived code-signing certificates tied to OpenID Connect identities, enabling verifiable software supply chain…

Exploits cPanel/WHM CVE-2026-41940 authentication bypass via CRLF session injection for unauthenticated root-level WHM access, then lists accounts,…

CyberArk Conjur automatically secures secrets used by privileged users and machine identities

Review Access - kubectl plugin to show an access matrix for k8s server resources

😎 Awesome list of all things related to Microsoft Entra

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

A tool to scan Kubernetes cluster for risky permissions

In-depth ldap enumeration utility

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

SecurityExplained is a new series after the previous learning challenge series #Learn365. The aim of #SecurityExplained series is to create…

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.