

Install patch for CVE-2017-0145 AKA WannaCry.

CVE-2021-44228 log4j mitigation using aws wafv2 with ansible

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

CVE-2020-8554: Man in the middle using LoadBalancer or ExternalIPs

Mitigates CVE-2016-5195 aka DirtyCOW

OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

Automatic security alert response framework by AWS Serverless Application Model

a Damn Vulnerable Serverless Application

honeyλ - a simple, serverless application designed to create and monitor fake HTTP endpoints (i.e. URL honeytokens) automatically, on top of AWS…

Hands-on lab demonstrating Kubernetes container hardening by comparing default vs. security-enhanced deployments of a vulnerable note-taking…

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Open source Dropbox-like file sharing with full client encryption !

A transparent PII redaction proxy for LLM API traffic. Sits between an application and an LLM provider (currently Anthropic), pseudonymizing…

An at-rest encrypted filesharing application with multiple clients who seek to share privately, without tracking.

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

This Repository Includes Kubernetes manifest files for configuration of Honeypot system and Falco IDS in K8s environment. There are also Demo…

An open source threat modeling tool from OWASP