
cplt
Sandbox for AI coding agents. Runs Copilot CLI, Claude Code, OpenCode, Gemini CLI, Antigravity, Pi, goose or a plain shell inside a kernel-level…

Sandbox for AI coding agents. Runs Copilot CLI, Claude Code, OpenCode, Gemini CLI, Antigravity, Pi, goose or a plain shell inside a kernel-level…

Safety cannot be a prompt instruction. TBP provides an external execution-layer boundary for autonomous agents, enforcing hard F/I/W invariants via…

Automated attack surface assessment framework for Active Directory and local infrastructures, correlating vulnerabilities with attack paths to domain…

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

Production-safe scanner that detects CVE-2026-25177 (AD SPN Unicode Collision) exploitation on Active Directory Domain Controllers. Read-only.

Static detection of vulnerable log4j librairies on Windows servers, members of an AD domain.

Analyzes DNS delegation and DNSSEC security by probing resolvers and authoritative servers, then validating, diagnosing, and visualizing zone…

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Check for LDAP protections regarding the relay of NTLM authentication

A curated list of awesome Security Hardening techniques for Windows.

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting)…

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

Web application that lets you test if your domain is vulnerable to email spoofing

AWS AMAZON S3 Bucket Takeover Scanner & Claim Tool

Fix URL containing SPACES after Apache upgrade CVE-2023-25690

Simulated exploitation and mitigation of CVE-2025-54918 (Windows NTLM flaw). Includes detection scripts, Ansible patching, and CI/CD hardening.…

Identifying all log4j components across all windows servers, entire domain, can be multi domain. CVE-2021-44228