
Hunting-Queries-Detection-Rules
The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

Salesforce object access auditor

Providing Azure pipelines to create an infrastructure and run Atomic tests.

Cloud pentesting framework deploying vulnerable-by-demand AWS resources with quest-based scenarios to teach practical penetration testing and…

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…


Suppress vulnerabilities applying Kubernetes context to scans

Salesforce Policy Deviation Checker

A curated list of resources, practice questions, and study materials to help you prepare for Application Security (AppSec) interviews

a CLI for ephemeral penetration testing

An S3 account ID enumeration and bucket discovery tool

Chronicle parser for CORELIGHT and related information.

SQL injection in PyAthena via DefaultParameterFormatter (CVE-2026-65321)

Proof of concept about the privilege escalation flaw identified in Google's Osconfig

[CVE-2021-21975] VMware vRealize Operations Manager API Server Side Request Forgery (SSRF)

Inspect all of your heroku apps to see if they are running a vulnerable version of Rails

OMIGod / CVE-2021-38647 POC and Demo environment

Step-by-step tutorial for detecting CVE-2024-3094 (XZ Backdoor) in container images using Trend Micro Vision One TMAS CLI, with automated scanning…