
makes
A software supply chain framework powered by Nix.

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Cloud-native chaos engineering platform for Kubernetes with fault injection, workflow orchestration, and steady-state validation to surface system…

Portable, lightweight, self-contained virtual machine.

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

AWS Least Privilege for Distributed, High-Velocity Deployment

Multi-cloud vulnerable-by-design deployment tool using Terraform to provision intentionally insecure cloud infrastructure for security training and…

Official Elastic Skills

Automated scanner that hunts for secrets (API keys, credentials) accidentally uploaded to public S3 buckets, using truffleHog3 for detection and…

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

Kubernetes operator for injecting chaos experiments into cloud-native workloads, automating resilience testing and workload hardening through…

Scan publicly accessible assets on your AWS cloud environment

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

Systemd Hardening Helper - Mirror of https://github.com/desbma/shh

Salesforce object access auditor

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

Suppress vulnerabilities applying Kubernetes context to scans