
dorothy
Simulates attacker actions in Okta environments to test monitoring and detection capabilities, with modules mapped to MITRE ATT&CK tactics for red…

Simulates attacker actions in Okta environments to test monitoring and detection capabilities, with modules mapped to MITRE ATT&CK tactics for red…

Read-only PowerShell module for detecting UNC2452 and other threat actor artifacts in Azure AD, auditing federated domains, service principals,…

Open source solutions for SOC2, GDPR, and ISO27001

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Detects forged Kerberos tickets by dumping session and ticket data, scoring anomalies, and generating Windows event-log indicators for SIEM-based…

MDE/MDI Defender setup for Ludus

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…

Six Degrees of Domain Admin

Cloud Canary Object Orchestration Management Platform

Detects shadow-administrator accounts in WordPress via configurable indicators and heuristics, then removes selected accounts through guarded, logged…

Keep it secret, keep it safe

Repository of attack and defensive information for Business Email Compromise investigations

SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS

Collection of Google Cloud solution examples and operational utilities for audit log monitoring, DLP de-identification, encryption key management,…

Powerful protection for AI agents - Open-source security and cost tracking for AI applications
