
ElectricEye
ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

A security auditor for Tailscale configurations. Scans your tailnet for misconfigurations, overly permissive access controls, and security best…

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Give coding agents a disposable Linux VM, not your laptop

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

Create your own vulnerable by design AWS penetration testing playground

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

AI-powered offensive security testing using autonomous agents, directly in your terminal.

Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North…

Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.

Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services

The globalping probe code that runs on your hardware and connects to the global community network of probes

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…