
poro
Scan publicly accessible assets on your AWS cloud environment

Scan publicly accessible assets on your AWS cloud environment

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…

One command grades your whole cloud account — misconfigurations, missing observability, and security posture.

Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

kubeaudit helps you audit your Kubernetes clusters against common security controls

Chef cookbook that will fail if bash vulnerability found per CVE-2014-6271

CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

Create your own vulnerable by design AWS penetration testing playground

Service that scans your Infrastructure as Code for common vulnerabilities

On-prem API gateway for AI coding agents with per-engineer cost attribution, hard budgets, egress governance (secrets/entity scanning), context-rot…

A command-line interface tool for managing Azure Privileged Identity Management (PIM) role activations directly from your terminal.

eBPF-powered Kubernetes monitoring and performance testing platform that automatically generates service maps, tracks real-time metrics, and runs…

Open-source cloud security platform that discovers attack paths, identifies misconfigurations, visualizes IAM access, and provides step-by-step…

SSH bastion/jump host/jumpserver

eBPF-powered Linux observability with AI incident detection. AGPL-3.0 licensed.

Like Envoy xDS, but for eBPF filters

OWASP Kubernetes security and compliance tool [WIP]

A command line security audit tool for Amazon Web Services