
bucketbuster
Scans public cloud object-storage endpoints across Yandex, VK, Selectel, Sber, Alibaba, Tencent, Huawei, and Baidu to find listable buckets and…

Scans public cloud object-storage endpoints across Yandex, VK, Selectel, Sber, Alibaba, Tencent, Huawei, and Baidu to find listable buckets and…

Capability-based WASM runtime for executing untrusted AI-generated code with enforced CPU, memory, time, I/O, and filesystem limits. Provides…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

The source files and tools needed to build the OWASP Cornucopia decks in various languages

AWS Testing and Reporting Management Tool

CVE-2016-4468

OSINT intelligence on any IP, domain, or ASN

Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!

Userspace WireGuard® Implementation in Rust

Unified dashboard to monitor, govern, and audit AI agents in real-time. Enforce budgets, detect policy violations, and export compliance reports for…

Repository for CoSAI Workstream 4, Secure Design Patterns for Agentic Systems

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so…

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24…

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.

Suite of programs meant to aid in bug hunting and security assessments