
OneDrive-UDC2
OneDrive as a covert C2 transport for Cobalt Strike

OneDrive as a covert C2 transport for Cobalt Strike

Automatically generated Sysmon parser for Azure Sentinel

Collection of tools to use with Azure Applications

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

[EXPERIMENTAL] Kubernetes Operator for Image Assurance

Securekit is a protocol-agnostic security kernel that enforces zero-trust, sandboxed execution for AI tool use. It sits between any LLM or agent…


This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

Shell script and Ansible playbook to detect and remediate CVE-2024-3094 in xz-utils by checking package versions, upgrading or downgrading to a…

Module written in Ruby with the objective of exploiting vulnerabilities CVE-2023-2728 and CVE-2024-3177, both related to the secret mount policy in a…

A HTTP credential proxy and vault for AI agents like Claude Code, OpenClaw, Hermes, custom agents + harnesses, and more.

Client-side Linux virtual machine running in the browser via WebAssembly, with Tailscale networking, Dockerfile-based custom images, and CTF…

Unified dashboard to monitor, govern, and audit AI agents in real-time. Enforce budgets, detect policy violations, and export compliance reports for…

CLI and MCP server that checks package versions for known vulnerabilities across 14+ ecosystems including npm, PyPI, crates.io, Go modules, and…

A tool that implements the Golden SAML attack

Scan for misconfigured S3 buckets across S3-compatible APIs!

a CLI for ephemeral penetration testing

Multi-threaded DNS-based enumeration tool for discovering AWS S3 buckets using pre-compiled wordlists and custom DNS resolvers, with optional Docker…