
kubescape
Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

👀 A Kubernetes cluster resource sanitizer

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

HardeningKitty - Checks and hardens your Windows configuration

🔪 :octocat: Leak git repositories from misconfigured websites

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

This skill helps Claude write secure code and prevent common vulnerabilities.

Find vulnerabilities in AD Group Policy, but do it better than Grouper2 did.

Curated timeline of AWS S3 bucket misconfigurations, exposed data, and leaked IAM credentials, with incident links for cloud security defenders and…

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

Content hijacking proof-of-concept using Flash, PDF and Silverlight

Enemies Of Symfony - Debug mode Symfony looter

AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with kerberos.

A New Approach to Directory Bruteforce with WaybackLister v1.0

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…