
AD-description-password-finder
Retrieve AD accounts description and search for password in it

Retrieve AD accounts description and search for password in it

AD Enum is a pentesting tool that allows to find misconfiguration through the the protocol LDAP and exploit some of those weaknesses with kerberos.

CVE-2019-19033 description and scripts to check the vulnerability in Jalios JCMS 10 (Authentication Bypass)

A tool to scan Kubernetes cluster for risky permissions

Proof-of-Concept Tool to detect IngressNightmare (CVE-2025-1974) via (non-intrusive) active means.

Electronegativity is a tool to identify misconfigurations and security anti-patterns in Electron applications.

:owl::mag_right: A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration

A tool to hunt for publicly accessible DigitalOcean Spaces

The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

Pentester-focused Docker registry tool to enumerate and pull images

Multi-threaded Go tool to detect nginx alias traversal vulnerabilities using heuristic and brute-force techniques for identifying vulnerable…

This script is a tool to recursively download the contents of the '.git' directory from a website. Using Python and libraries like 'requests' and…

A minimal test tool to help detect annotation injection vulnerabilities in Kubernetes NGINX Ingress controllers. This script sends a crafted…

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…
