
cved
A tool to manage vulnerable docker containers

A tool to manage vulnerable docker containers
KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

A tool to extract the IdP cert from vCenter backups and log in as Administrator

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Automated scanner that hunts for secrets (API keys, credentials) accidentally uploaded to public S3 buckets, using truffleHog3 for detection and…

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

Extensible Azure Security Tool - Documentation

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Audit program for AzureAD

A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches