
LAPSToolkit
Tool to audit and attack LAPS environments

Tool to audit and attack LAPS environments

A new open-source tool to quickly audit SAP permissions.

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE chain — PoC exploit + defensive audit tool + nuclei template

VOIP Security Audit Framework

Suite of tools for BloodHound that enables domain password auditing, privilege path analysis, edge manipulation, and custom Cypher queries to…

Automated Active Directory auditing and enumeration tool that generates detailed HTML audit reports with CSV/XLSX export, designed for security…

SolarWinds Orion Account Audit / Password Dumping Utility

Lightweight web proxy for intercepting, inspecting, and modifying HTTP traffic to audit web applications during penetration testing and bug bounty…

A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.

Open source security auditing tool to search and dump system configuration. It allows you to generate reports in HTML or RAW-HTML formats.

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-1…

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

A tool to hunt for publicly accessible DigitalOcean Spaces

A tool to enumerate S3 buckets manually or via certstream

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

AWS Testing and Reporting Management Tool