
KubeStalk
Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Kubolt utility for scanning public kubernetes clusters

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening…

Fast and configurable TLS grabber focused on TLS based data collection.

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

Subdomain takeover vulnerability checker

Windows Local Privilege Escalation Cookbook

Offensive GPO dumping and analysis tool that leverages and enriches BloodHound data

gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory environment.

Automating the MITM attack on WSUS

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

Authorized cloud adversary simulation and validation toolkit

Pentester-focused Docker registry tool to enumerate and pull images

Detect security issues in an Apache CouchDB server

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…

Automated detection of vulnerable domain configurations and subdomain takeover risks across cloud environments, with continuous monitoring and…