
Aurea
Aurea is an open-source, AI-powered platform that secures infrastructure-as-code (IaC) across Terraform, Kubernetes, Docker, and Ansible. It…

Aurea is an open-source, AI-powered platform that secures infrastructure-as-code (IaC) across Terraform, Kubernetes, Docker, and Ansible. It…
WorldFirst (Public) Docker API Exploit - My security researches involving Docker and Openshift

OWASP Kubernetes security and compliance tool [WIP]

Security risk analysis for Kubernetes resources

Attack Surface Management since before Attack Surface Management was a thing

Service that scans your Infrastructure as Code for common vulnerabilities

An open source real-time network topology and protocols analyzer

Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Find exposed data in Azure with this public blob scanner

simply nodes and graphs

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

Mounts AWS resources as a local filesystem for infrastructure exploration, security auditing, and configuration analysis using standard Unix tools…

Scans public cloud object-storage endpoints across Yandex, VK, Selectel, Sber, Alibaba, Tencent, Huawei, and Baidu to find listable buckets and…

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.