
KubiScan
A tool to scan Kubernetes cluster for risky permissions

A tool to scan Kubernetes cluster for risky permissions

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

A tool to hunt for credentials in github wild AKA git*hunt

A collection oneliner scripts for bug bounty

Python script to scan Git repos for interesting strings

A python3 script searching for secret on swaggerhub

Hunt for AI coding artifacts containing secrets.

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

Portable security rules for the action boundary of AI agents

Use regular expressions to get sensitive information from a given repository (GitHub, pip or npm).

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

Burp Plugin for Secret Matching


CVE-2025-14847 PoC exploit for MongoDB heap memory disclosure

Automated Python scanner to detect hardcoded secrets (Private Keys, API Tokens) in client-side JavaScript files.

A static + runtime security scanner for MCP (Model Context Protocol) servers

Go scripts for finding sensitive data like API key / some keywords in the github repository