
otseca
Open source security auditing tool to search and dump system configuration. It allows you to generate reports in HTML or RAW-HTML formats.

Open source security auditing tool to search and dump system configuration. It allows you to generate reports in HTML or RAW-HTML formats.

gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory environment.

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

YAML-driven CLI scanner that detects exposed services, files, and folders on web endpoints. Designed for developers to integrate security checks into…

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…

In-depth ldap enumeration utility

Use this tool to prioritize cluster patching for the recent VMware advisory VMSA-2018-0027 related to CVE-2018-6981 and CVE-2018-6982.

A tool to scan Kubernetes cluster for risky permissions

A CLI tool for detecting CVE-2023-20048 vulnerability in Cisco Firepower Management Center.

A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.

ADCS cert template modification and ACL enumeration

OWASP SAPKiln is a graphical user interface (GUI) tool designed to facilitate securing and auditing SAP systems effectively.

Check for LDAP protections regarding the relay of NTLM authentication