
GPOHound
Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data


Scan for misconfigured S3 buckets across S3-compatible APIs!

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

Automation to assess the state of your M365 tenant against CISA's baselines

Privilege Escalation Project - Windows / Linux / Mac

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

A tool to scan Kubernetes cluster for risky permissions

Electronegativity is a tool to identify misconfigurations and security anti-patterns in Electron applications.

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Discover resources created in an AWS account.

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting)…