
opa
Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24…

Capability-based WASM runtime for executing untrusted AI-generated code with enforced CPU, memory, time, I/O, and filesystem limits. Provides…

Repository for CoSAI Workstream 4, Secure Design Patterns for Agentic Systems

Scans public cloud object-storage endpoints across Yandex, VK, Selectel, Sber, Alibaba, Tencent, Huawei, and Baidu to find listable buckets and…

The source files and tools needed to build the OWASP Cornucopia decks in various languages

Userspace WireGuard® Implementation in Rust

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so…

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.

OSINT intelligence on any IP, domain, or ASN

Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!

Unified dashboard to monitor, govern, and audit AI agents in real-time. Enforce budgets, detect policy violations, and export compliance reports for…

AWS Testing and Reporting Management Tool

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

CVE-2016-4468

Suite of programs meant to aid in bug hunting and security assessments