
iron-proxy
An egress firewall for untrusted workloads.

An egress firewall for untrusted workloads.

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

Purple Team Exercise Framework

Rust-powered HTTP Request Smuggling Scanner.

GitHub Actions workflow sandbox for CVE-2025-55192 reproduction

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

A Trivy plugin that scans the images of a kubernetes resource

Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, Suricata and…

CLI tool for the Horizon3.ai API

System utility that identifies and restarts daemons using outdated libraries after package upgrades to maintain security. Supports containers and…

Agent skill that audits a Rails codebase for CVE-2026-66066 (KindaRails2Shell) — Active Storage + libvips arbitrary file read / RCE, checking Rails…

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

