
Startup-SBOM
A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

Interactive NGINX configuration generator that produces optimized, security-hardened server configs with HTTPS, HTTP/2, HSTS, SSL profiles, caching,…

USB port access control tool for Debian with whitelist management, automatic background scanning daemon, and CLI interface to block or allow USB…

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

Automated Android device hardening tool that scans installed apps for malware, audits system settings against CIS benchmarks, revokes dangerous…

Scans ELF binaries and Linux systems for security hardening mechanisms (Stack Canary, RELRO, ASLR, PIE, NX) and exports results to table, CSV, or…

A command line security audit tool for Amazon Web Services

Temporary macOS admin rights management tool for enterprise environments. Grants time-limited administrator privileges on-demand, enhancing security…

Web-based Kubernetes RBAC management tool for creating users, assigning namespaces and permissions, and distributing Kubeconfig files via an…

A tool to scan Kubernetes cluster for risky permissions

An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

A new open-source tool to quickly audit SAP permissions.

Azure AD security assessment tool that evaluates tenant configuration and identity risk, scoring findings through a maturity framework to prioritize…

Simple and flexible tool for managing secrets

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Automated tool that assesses open source project security using heuristic checks, assigns scores 0-10, and provides remediation guidance to improve…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.