
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

provides a Firewall Manager API designed to centralize and streamline the management of firewall configurations

Open Source Cloud Native Application Protection Platform (CNAPP)

OPNsense GUI, API and systems backend

The official Asterisk Project repository.

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

HardeningKitty - Checks and hardens your Windows configuration

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

DEPRECATED - A prototype SSH configuration and policy scanner (Blog: https://mozilla.github.io/ssh_scan/)

A PowerShell script that automates the security assessment of Microsoft 365 environments.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Powershell-based Windows Security Auditing Toolbox

Hubble is a modular, open-source security compliance framework. The project provides on-demand profile-based auditing, real-time security event…

Blue Team detection lab created with Terraform and Ansible in Azure.

Audit program for AzureAD

Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

DSC resources to simplify administration of certificates on a Windows Server.