
prowler
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…

Privilege Escalation Project - Windows / Linux / Mac

Simple JMX RMI scanning tool

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

The format of various s3 buckets is convert in one format. for bugbounty and security testing.

Hunt for security weaknesses in Kubernetes clusters

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

Curated SIEM queries and techniques for offensive discovery of Windows privilege escalation, misconfigured ACLs, services, scheduled tasks, and…

A Cloudflare resolver that works

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Local Linux enumeration script that identifies privilege escalation vectors including misconfigurations, world-writable files, clear-text passwords,…

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

A static + runtime security scanner for MCP (Model Context Protocol) servers