
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

Poc - CVE-2025-49132

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

Automated System Hardening Framework

Sparty - MS Sharepoint and Frontpage Auditing Tool [Unofficial]

Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...

⚙️ NGINX config generator on steroids 💉

Simple and flexible tool for managing secrets

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices


Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

A collection of awesome security hardening guides, tools and other resources

OpenSSF Scorecard - Security health metrics for Open Source

Open Source Cloud Native Application Protection Platform (CNAPP)

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Automate the creation of a lab environment complete with security tooling and logging best practices