
Aaia
AWS Identity and Access Management Visualizer and Anomaly Finder

AWS Identity and Access Management Visualizer and Anomaly Finder

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能,…

A BOF to determine Windows Defender exclusions.

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation

ADCS cert template modification and ACL enumeration

Proof-of-concept tool leveraging WinGet Configuration COM API to apply DSC configurations through Microsoft-signed binaries, enabling EDR bypass for…

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

An AWS IAM policy statement parser and query tool.

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

Post exploitation tool for configuration management servers.

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

A collection of tools to enumerate and analyse Windows DACLs

ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminating the need…

Registry permission scanner written in C# for finding potential privesc avenues within registry

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

Automated attack surface assessment framework for Active Directory and local infrastructures, correlating vulnerabilities with attack paths to domain…

OWASP SAPKiln is a graphical user interface (GUI) tool designed to facilitate securing and auditing SAP systems effectively.

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…