
AzureADEnumeration
Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

This repository holds a target infrastructure you can use for running the nimbostratus tools.

Ansible role to configure redirectors for red team C2

WorldFirst (Public) Docker API Exploit - My security researches involving Docker and Openshift

Finds internet-exposed resources in an AWS account

AWS Testing and Reporting Management Tool

Arbitary Code Execution in Unsecured Apache Spark Cluster

Docker projects to retain beacon source IPs using C2 relaying infra

Azure CLI extension for Cirro collection


OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

Apache Hadoop YARN ResourceManager - Unauthenticated RCE PoC

A Terraform to deploy vulnerable app and a JDNIExploit to work with CVE-2021-44228

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

CVE-2024-10220 reveals a critical flaw in Kubernetes’ deprecated gitRepo volume type, allowing attackers to execute arbitrary commands via malicious…

Aws S3 Tko Tool
