
nuvola
Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Multi-threaded Go tool to detect nginx alias traversal vulnerabilities using heuristic and brute-force techniques for identifying vulnerable…

Pentester-focused Docker registry tool to enumerate and pull images

Prommetrix can obtain relevant information from the instances of 'Node Exporter' executed by 'Prometheus'.

Detect and fix log4j log4shell vulnerability (CVE-2021-44228)

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

Discover and remediate Log4Shell vulnerability [CVE-2021-45105]

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container


This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

Go-based Kubernetes exploitation tool that scans for exposed ports and exploits cluster misconfigurations, including anonymous Kubelet RCE and etcd…

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…


A static analysis tool for securing Go code

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…