
AzureAD-Attack-Defense
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

A tool to scan Kubernetes cluster for risky permissions

CyberArk Conjur automatically secures secrets used by privileged users and machine identities

Review Access - kubectl plugin to show an access matrix for k8s server resources

😎 Awesome list of all things related to Microsoft Entra

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

Low-memory graphdb with Bolt+tls support, at-rest encryption & vectors designed for local replica graph use cases.

Python-based framework for generating Golden SAML tokens, Kerberos tickets, and Azure Access Tokens to exploit federated identity systems and…

The next generation encrypted file sharing project

A terminal based tool for managing secrets with both tui and cli support

A modern git based age-encrypted secrets manager for teams.

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

CVE-2026-43813: CloudAttestation enforceEnvironment bypass

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

A command-line interface tool for managing Azure Privileged Identity Management (PIM) role activations directly from your terminal.