
azure-security-auditor
CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

NCC Group Template for the Microsoft Threat Modeling Tool 2016 for Automotive Security

Official IP ranges for AI bot crawlers (OpenAI, Anthropic, Google, Microsoft, Perplexity). Weekly auto-updates.

Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.


CVE-2019-0708 bluekeep 漏洞检测

CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability


Check for events that indicate non compatible devices -> CVE-2020-1472

A quick scanner for the CVE-2019-0708 "BlueKeep" vulnerability.

基于asyncio(协程)的CVE-2020-0796 速度还是十分可观的,方便运维师傅们对内网做下快速检测。

Scanners List - Microsoft Windows SMBv3 Remote Code Execution Vulnerability (CVE-2020-0796)

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

Documentation and PoC for CVE-2023-21554 MSMQ Vulnerability

Disclosed on June 3, 2026, the "HTTP/2 Bomb" is an unauthenticated remote DoS that combines an HPACK compression bomb with a Slowloris-style hold to…


POC Of CVE-2022-26937