
tirith
Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Phishing simulation and awareness framework for node-based campaigns, credential capture, SMTP delivery, CAPTCHA, and optional browser credential…

A fork of the great TokenTactics with support for CAE and token endpoint v2

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

Repository of attack and defensive information for Business Email Compromise investigations

Collection of offensive tools targeting Microsoft Azure

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

All the deals for InfoSec related software/tools this Black Friday

A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

Deploy a phishing infrastructure on the fly.

Azure JWT Token Manipulation Toolset

Infrastructure Automation

Collection of tools to use with Azure Applications

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

A toolkit to attack Office365

a CLI for ephemeral penetration testing