
smokedmeat
A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

Slack enumeration and exposed secrets detection tool

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information

gitGraber: monitor GitHub to search and find sensitive data in real time for different online services such as: Google, Amazon, Paypal, Github,…

🕵️ Python project to crawl for JavaScript files and search for secrets like API keys, authorization tokens, hardcoded credentials, etc.

Enumerates AWS environments for secrets by scanning EC2 userdata, Lambda environment variables and source code, and CodeBuild instances for…

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Finding exposed secrets and personal data in GitLab