
CloudPentestCheatsheets
This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.

This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.

All the deals for InfoSec related software/tools this Black Friday

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.

This skill helps Claude write secure code and prevent common vulnerabilities.

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

This is a PoC code to exploit the IngressNightmare vulnerabilities (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974).

Find exposed data in Azure with this public blob scanner

The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

Summary of Cyber Security interview questions I have been through, hope this helps

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability

This repository holds a target infrastructure you can use for running the nimbostratus tools.

This is an incident response playbook we created for the Vercel April 2026 compromise

MCP is being adopted rapidly. Security guidance is lagging behind. This checklist gives security engineers, platform teams, and technical leaders a…

This opensource project dedicated to implementing Enterprise level AI-SPM. By doing so organizations can proactively protect their AI systems from…

Python script to bypass Azure APIM signup when UI is disabled, this is different from the CVE-2025-66390 as it does not require you to setup anything…

This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

Local web app for conducting a Check Point Trusted Access Review. This scanner is built specifically to look for configuration issues around…