
cartography
Pulls infrastructure assets and their relationships from 30+ cloud, identity, and SaaS platforms into a Neo4j graph for security queries and…

Pulls infrastructure assets and their relationships from 30+ cloud, identity, and SaaS platforms into a Neo4j graph for security queries and…

Python PoC for CVE-2026-100835: audits Contrast manifests for AllowedChipIDs/AllowedPIIDs, detects versions, and probes Coordinator endpoints to…

Scans Kubernetes clusters from any identity, flags dangerous permissions, and chains them into multi-step escalation paths to cluster compromise.

Deliberately vulnerable Docker lab with a routable DNS estate and machine-readable answer keys per target, scoring scanner precision, recall and…

Explain why a Linux TCP port may or may not be reachable

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

Hands-on project demonstrating Log4Shell exploitation, detection engineering with Splunk and auditd, and validated remediation in a containerized…

WorldFirst (Public) Docker API Exploit - My security researches involving Docker and Openshift

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

Pentester-focused Docker registry tool to enumerate and pull images

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

kali-linux-docker

ProjectDiscovery Cloud - Agent

CVE-2022-46463 harbor公开镜像全自动下载脚本

Information about Kubernetes CVE-2020-8558, including proof of concept exploit.

Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-2021-45046)

Linux Persistence Detection, Hunting and Artifact Collection script