
GraphSpy
Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity

Automated data flow platform for processing and distributing data with built-in provenance tracking, secure configuration, and scalable pipeline…

Automated data flow processing and distribution system with secure configuration, provenance tracking, and extensible plugin architecture for…

Collects, processes, and visualizes forensic data from cloud and on-premise machine clusters for incident response and digital investigations.

An AWS IAM policy statement parser and query tool.

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

Robust Subdomain Takeover Tool

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Exploit for Apache NiFi CVE-2023-34468, targeting a vulnerability in versions 1.21.0 and earlier to demonstrate data access and system compromise.

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Proof-of-concept demonstrating CVE-2024-23653, a BuildKit container escape via a malicious Dockerfile frontend, using buildctl to inspect process…

Open-source secret scanner in Rust

AWSGoat : A Damn Vulnerable AWS Infrastructure

High speed/Low cost CommonCrawl RegExp in Node.js

Policy engine and EDR for AI agent fleets and developer workstations. Monitors tool calls, file access, network flows, and process execution with…