
authkeysync
🔐 Lightweight CLI utility designed to synchronize SSH public keys from remote URLs into local authorized_keys files

🔐 Lightweight CLI utility designed to synchronize SSH public keys from remote URLs into local authorized_keys files

Chef cookbook that will fail if bash vulnerability found per CVE-2014-6271

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

Client for Cloudflare Tunnel enabling secure outbound-only connections to origins via Zero Trust architecture. Supports HTTP, WebSocket, SSH, and RDP…

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

Terraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational…

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

🛡️ 🔒 This project's goal is to be simple to create and destroy your own VPN service using WireGuard.

Review Access - kubectl plugin to show an access matrix for k8s server resources

My cheatsheet notes to pentest AWS infrastructure

A tool to extract the IdP cert from vCenter backups and log in as Administrator

Automated scanner that hunts for secrets (API keys, credentials) accidentally uploaded to public S3 buckets, using truffleHog3 for detection and…