
zttp
Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Kubernetes driver extension of the Chaos Toolkit probes and actions API

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Audit program for AzureAD

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS

GCPGoat : A Damn Vulnerable GCP Infrastructure

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

AzureGoat : A Damn Vulnerable Azure Infrastructure

DSC resources to simplify administration of certificates on a Windows Server.

End-to-end vulnerability management lifecycle on Azure Windows Server 2025. Features OS patching and network-level compensating controls (NSG) to…

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

Fleet-scale CVE-2026-31431 audit and remediation orchestrator for Linux hosts via SSH, with strict host-key verification and multi-format reporting.

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Automatically deploying Mythic C2 in Azure using Terraform