
rustnet
Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF,…

AWSGoat : A Damn Vulnerable AWS Infrastructure

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Policy engine and EDR for AI agent fleets and developer workstations. Monitors tool calls, file access, network flows, and process execution with…

High speed/Low cost CommonCrawl RegExp in Node.js

An AWS IAM policy statement parser and query tool.

Open-source secret scanner in Rust

Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage…

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Collects, processes, and visualizes forensic data from cloud and on-premise machine clusters for incident response and digital investigations.

Proof of concept about the privilege escalation flaw identified in Google's Osconfig

Apache Log4j Zero Day Vulnerability aka Log4Shell aka CVE-2021-44228

A tutorial on how to detect the CVE 2024-3094