
PMapper
A tool for quickly evaluating IAM permissions in AWS.

A tool for quickly evaluating IAM permissions in AWS.

Automating situational awareness for cloud penetration tests.

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

An AWS IAM policy statement parser and query tool.

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

A list of awesome penetration testing tools and resources.

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

Penetration testing tool that discovers exposed Docker APIs and grants root-level remote access to containers, with nmap-based scanning and evasion…

Automated Kubernetes penetration testing tool for privilege escalation, service account token theft, secret collection, and cluster pivot attacks…

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Maps GitHub organization relationships to identify lateral movement and privilege escalation paths via CI/CD pipelines and access controls, using…

Determine privileges from cloud credentials via brute-force testing.

Research and analysis of the ServiceNow Virtual Agent vulnerability (CVE-2025-12420), including attack flow, MITRE ATT&CK mapping, detection…

Proof-of-concept exploit for CVE-2021-41805, a privilege escalation vulnerability in HashiCorp Consul Enterprise that enables remote code execution…