
cis-vsphere
A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.

A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.

An AWS IAM policy statement parser and query tool.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

A tool to enumerate S3 buckets manually or via certstream

:owl::mag_right: A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

DSC resources to simplify administration of certificates on a Windows Server.


Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

Identify IP addresses owned by public cloud providers

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

An Ansible Playbook to mitigate the risk of RCE (CVE-2024-6387) until platforms update OpenSSH to a non-vulnerable version.

Open-source IoT Platform - Device management, data collection, processing and visualization.

Deliberately vulnerable Terraform infrastructure for learning cloud security misconfigurations and validating IaC scanner detection across AWS and…

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.

Automates migration of AWS workloads from IMDSv1 to IMDSv2 to mitigate SSRF attacks. Detects IMDSv1 usage across EC2, ECS, EKS, Lightsail, and more,…

Scripts to build Kali cloud images (fork of https://salsa.debian.org/cloud-team/debian-cloud-images)