
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

Poc - CVE-2025-49132

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

Open-source IPAM and DCIM platform providing a centralized source of truth for modeling, documenting, and automating network infrastructure with…

Automated System Hardening Framework

Sparty - MS Sharepoint and Frontpage Auditing Tool [Unofficial]

AI-powered Windows diagnostic & auto-repair tool using Google Gemini. Detect crashes, optimize performance, scan for malware, and generate PowerShell…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

The Symfony PHP framework

⚙️ NGINX config generator on steroids 💉

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…


Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.

Fast and powerful SSL/TLS scanning library.

SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

Web vulnerability scanner written in Python3