
pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Deliberately vulnerable GCP infrastructure for hands-on cloud security training. Features OWASP Top 10 web vulnerabilities, IAM privilege escalation,…

a Damn Vulnerable Serverless Application

Python script to bypass Azure APIM signup when UI is disabled, this is different from the CVE-2025-66390 as it does not require you to setup anything…

Extensible API-first framework for automated Docker security monitoring against CIS benchmarks, with distributed client-server architecture for…

Java SDK for integrating with Amazon Web Services, providing secure API access to S3, DynamoDB, EC2, and more, with built-in authentication,…

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

Client for Cloudflare Tunnel enabling secure outbound-only connections to origins via Zero Trust architecture. Supports HTTP, WebSocket, SSH, and RDP…

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

OAuth 2.0 authentication service with JWT support, PKCE, and token management for API gatekeeping.

Jenkins plugin providing shared API for Docker credential management, registry authentication, daemon configuration, and image fingerprinting across…

Java client providing fluent DSL access to Kubernetes and OpenShift REST APIs for managing cloud-native infrastructure, pods, services, and…

Multi-tenant OAuth2 identity management server for Cloud Foundry, providing authentication, SSO, token issuance, and user account management with…

Java client library for the Kubernetes API, enabling programmatic management of clusters, pods, deployments, and other resources with support for…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Intentionally vulnerable AWS infrastructure for practicing cloud penetration testing, covering OWASP Top 10 web risks, IAM, S3, Lambda, EC2, and ECS…

Intentionally vulnerable Azure infrastructure for practicing cloud penetration testing, red teaming, and secure coding. Features OWASP Top 10 web…