
vcsa-hardening-tool
Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

Leitwacht control plane — runtime security for GitLab Runner CI/CD: policy authoring, multi-tenancy, audit, GitLab integration

Terraform module to manage AWS Security Groups. Currently, the ingress and egress rules support IPv4, IPv6, and Security Group ID inputs.

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Secure and fast microVMs for serverless computing.

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

A Chaos Engineering Platform for Kubernetes.

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

Boundary enables identity-based access management for dynamic infrastructure.

Wiki to collect Red Team infrastructure hardening resources

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Validation of best practices in your Kubernetes clusters