
context-aware-offensive-intelligence
Research framework redefining post-exploitation through decision intelligence.

Research framework redefining post-exploitation through decision intelligence.

Audits Windows security settings against CIS, Microsoft, STIG, and BSI baselines, scores compliance, and applies hardening changes via registry or…

Privilege Escalation Project - Windows / Linux / Mac

Curated Google Dork search patterns for web security and bug bounty reconnaissance, covering exposed files, admin panels, CMS instances, logs, and…

Nuclei Templates Collection

Find vulnerabilities in AD Group Policy, but do it better than Grouper2 did.

BadZure automates the deployment of intentionally misconfigured Entra ID tenants and Azure subscriptions, populating them with diverse entities and…


Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

Repository contains psexec, which will help to exploit the forgotten pipe

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

AI coding agents that can't exfiltrate secrets or merge their own PRs.

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

SpringBoot_Actuator_RCE

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.