
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Vendor-neutral cloud security testing guide with structured phases for enumeration, privilege escalation, lateral movement, and post-exploitation…

DejaVU - Open Source Deception Framework


📦 Make security testing of K8s, Docker, and Containerd easier.

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

StandIn is a small .NET35/45 AD post-exploitation toolkit

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Automated Persistence and Lateral Movement using GCP Patch Management

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

Post-exploitation toolkit for Azure AD: fetch/search Microsoft Graph data, swap FOCI refresh tokens, and generate Azure CLI auth files from tokens.

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps…

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

PHP poc, exploit for CVE-2025-9074

This cheatsheet maps common impacket workflows to their modern alternatives

AzureRT - A Powershell module implementing various Azure Red Team tactics

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…