
headscale
An open source, self-hosted implementation of the Tailscale control server

An open source, self-hosted implementation of the Tailscale control server

Client for Cloudflare Tunnel enabling secure outbound-only connections to origins via Zero Trust architecture. Supports HTTP, WebSocket, SSH, and RDP…

Cyber Panel - The hosting control panel for OpenLiteSpeed

Leitwacht control plane — runtime security for GitLab Runner CI/CD: policy authoring, multi-tenancy, audit, GitLab integration

CVE-2021-33104 - Improper access control in the Intel(R) OFU software

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

On-prem API gateway for AI coding agents with per-engineer cost attribution, hard budgets, egress governance (secrets/entity scanning), context-rot…

Docker projects to retain beacon source IPs using C2 relaying infra

Kernel-runtime defense framework for AF_ALG vulnerabilities, featuring eBPF socket tracing, Ansible hardening, and a crypto auditor for drift…

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

Boundary enables identity-based access management for dynamic infrastructure.

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

Review Access - kubectl plugin to show an access matrix for k8s server resources