
iron-proxy
An egress firewall for untrusted workloads.

An egress firewall for untrusted workloads.

Run agents like Hermes, LangChain Deep Agents, and OpenClaw more securely inside NVIDIA OpenShell with managed inference

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

A pretty sweet vulnerability scanner

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

Lightweight, container-free sandbox for running commands with network and filesystem restrictions

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

A Microservices-based framework for the study of Network Security and Penetration Test techniques

Ephemeral microVM sandbox for AI agents with network allowlisting, secret injection via MITM proxy, and VM-level isolation. Boots in under a second,…

Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.

OWASP Honeypot, Automated Deception Framework.

☠ Man-in-the-middle wireless access point inside a docker container 🐳

Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes…