
Dop2Mop
OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…



CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

The Azure Active Directory Incident Response PowerShell module provides a number of tools, developed by the Azure Active Directory Product Group in…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Detection-engineering reference mapping Windows, cloud, container, identity, and ICS attack classes to Sigma rules, trust-boundary models, BYOVD…


Identity services for traditional infrastructure, applications and containers.

Password attacks and MFA validation against various endpoints in Azure and Office 365


Open-source security gateway & static scanner for AI agents. Enforce role-based access control (RBAC), human-in-the-loop approvals, segregation of…

A tool for secrets management, encryption as a service, and privileged access management

Infisical is the open-source platform for secrets, certificates, and privileged access management.

A free, secure and open source app for Android to manage your 2-step verification tokens.

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Automation to assess the state of your M365 tenant against CISA's baselines

Collaborative Passwords Manager