
preflight
Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

GUI-based lab tool to detect, patch, and verify protection against CVE-2019-14287 sudo privilege-escalation vulnerability. Scans sudoers for risky…

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

Pluggable vulnerability assessment and management platform that orchestrates static and dynamic analysis scanners for web, mobile, network, and code,…

Scans websites for HTTP security headers and provides actionable recommendations to harden web server configurations against common attacks.

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.

Rule-based CLI tool that grades organizational defenses against MITRE ATT&CK and D3FEND frameworks, detects security gaps, and proposes mitigations.…

Real-time policy enforcement hook for Claude Code that intercepts tool calls, applies conditional rules via API, and logs all allow/deny decisions…

Use this tool to prioritize cluster patching for the recent VMware advisory VMSA-2018-0027 related to CVE-2018-6981 and CVE-2018-6982.

This script audits ServiceNow AI Agents for vulnerabilities like CVE-2025-12420, governance gaps, and compliance risks. Powered by CYBERDUDEBIVASH –…

Integration of Clair and Docker Registry

Automated database security assessment tool that evaluates configuration, privileges, users, and information against CIS benchmarks to identify…

Registry permission scanner written in C# for finding potential privesc avenues within registry

Automated Linux security auditing tool that checks 130+ CIS benchmark items for RHEL-based systems, generating detailed XML reports on system…

SNMP-based exposure assessment tool that scans subnets with onesixtyone and parses Cisco IOS/IOS XE sysDescr.0 banners to identify devices…

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

Free NGINX Rift CVE-2026-42945 detector for version, rewrite config, ASLR, crash logs, and exploitation indicators.

Analyze AWS environments for security misconfigurations, audit IAM policies, map network topology, and identify unused resources with a comprehensive…