
divd-2021-00038--log4j-scanner
Scan systems and docker images for potential log4j vulnerabilities. Able to patch (remove JndiLookup.class) from layered archives. Will detect…

Scan systems and docker images for potential log4j vulnerabilities. Able to patch (remove JndiLookup.class) from layered archives. Will detect…

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Network and domain security auditor scanning Windows Active Directory, Linux systems, and network infrastructure with AI-powered hardening guides…

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

Tiuku is a tool for scanning various kinds of systems and environments for security related information and displaying the results in a browser-based…

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Cross-platform framework for enumerating O365 accounts, password spraying, exfiltrating emails/Teams/OneDrive data, and backdooring EntraID accounts…

Serverless AITM Simulation Framework for Entra ID and M365

Web-Scale NoSQL Idempotent Cloud-Native Big-Data Serverless Plaintext Credential Search

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

AES-256 file and directory encryption tool with automatic upload to Anonfiles cloud storage, requiring a download ID for decryption and retrieval.


Summary of Cyber Security interview questions I have been through, hope this helps

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

Proof on Concept Exploit for CVE-2021-38647 (OMIGOD)

PHP poc, exploit for CVE-2025-9074

A 16-year-old bug in the Linux kernel lets a rented VM break out and attack the host it runs on. Intel and AMD alike. Januscape is a use-after-free…