
cnappgoat
CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

Scan publicly accessible assets on your AWS cloud environment

S3 Account Search

CVE-2026-42897 - Exchange Health Checker blind spot: outbound IIS URL Rewrite rules silently ignored, making EOMT mitigations invisible in diagnostic…

Read-only IOC scanner and mitigation toolkit for cPanel & WHM EmailTrack SQL injection (CVE-2026-67401). Performs version fingerprinting, file…

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

OpenSSL Heartbleed (CVE-2014-0160) vulnerability scanner.

Cisco SD-WAN Exposure & Potential Vulnerability Scanner (Passive Fingerprinting) 2026

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

An open source, self-hosted implementation of the Tailscale control server

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

Boundary enables identity-based access management for dynamic infrastructure.

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

Review Access - kubectl plugin to show an access matrix for k8s server resources