
context-aware-offensive-intelligence
Research framework redefining post-exploitation through decision intelligence.

Research framework redefining post-exploitation through decision intelligence.

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Zimbra CVE-2024-45519 real fix - Official patch is incomplete

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

The Intelligent Process Lifecycle of Active Cyber Defenders

A collection of awesome security hardening guides, tools and other resources

Check for LDAP protections regarding the relay of NTLM authentication

Tooling for assessing an Azure AD tenant state and configuration

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Powershell module for VMWare vSphere forensics

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Documentation and scripts to properly enable Windows event logs.

Get Fine Grained Password Policy

Automates Windows host-based firewall management by importing network data into a central database, creating Active Directory groups, and generating…

Production-ready detection & response queries for osquery

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org