
popeye
👀 A Kubernetes cluster resource sanitizer

👀 A Kubernetes cluster resource sanitizer

SSRF (Server Side Request Forgery) testing resources

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

PacBot (Policy as Code Bot)

Community-driven knowledge base for pentesting cloud environments and CI/CD pipelines: attack techniques, enumeration, privilege escalation, and…

Open-source cloud security platform that discovers attack paths, identifies misconfigurations, visualizes IAM access, and provides step-by-step…

Purple Team Exercise Framework

Getting a handle on container security

An egress firewall for untrusted workloads.

Give coding agents a disposable Linux VM, not your laptop

Kubernetes Security Training Platform - focusing on security mitigation

Automated System Hardening Framework

Tooling for assessing an Azure AD tenant state and configuration

Create your own vulnerable by design AWS penetration testing playground

OWASP IoT Security Verification Standard (ISVS)

AMIRA: Automated Malware Incident Response & Analysis

Like Envoy xDS, but for eBPF filters

Zero-code K8s sidecar for log sanitization. Detects secrets via Entropy Analysis, preserves JSON integrity, and redacts PII deterministically. 🛡️