
gobuster
Directory/File, DNS and VHost busting tool written in Go

Directory/File, DNS and VHost busting tool written in Go

A command line security audit tool for Amazon Web Services

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (LSM-BPF,…

Free universal database tool and SQL client

A tool for secrets management, encryption as a service, and privileged access management

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

A tool to scan Kubernetes cluster for risky permissions

ProjectDiscovery's Open Source Tool Manager

Automated Bitwarden vault backup tool with AES-256 encryption, Argon2 key derivation, multi-cloud upload support, and real-time notifications via…

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.

A terminal based tool for managing secrets with both tui and cli support

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

MCP is being adopted rapidly. Security guidance is lagging behind. This checklist gives security engineers, platform teams, and technical leaders a…

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

AES-256 file and directory encryption tool with automatic upload to Anonfiles cloud storage, requiring a download ID for decryption and retrieval.

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

A command-line interface tool for managing Azure Privileged Identity Management (PIM) role activations directly from your terminal.