
ScoutSuite
Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

Open-source automated malware analysis sandbox that runs suspicious files and URLs in isolated VMs and generates detailed behavioral reports.

Spin up new Windows qubes quickly, effortlessly and securely on Qubes OS

Recover VMware VMs affected by ESXiArgs ransomware by rebuilding VM metadata from unencrypted disks, generating new config files, and re-registering…

Minimal unikernel firewall for QubesOS that filters network traffic, implements NAT, and communicates via Qubes DB and qrexec.

Declarative KVM/QEMU VM orchestration tool using YAML compose files. Manages multi-VM stacks with cloud-init, SSH, PCI passthrough, and image…

Virtual machines manipulation framework

Minimal base container image for Kali Linux Rolling, updated weekly and designed as a starting point for building custom penetration-testing and…

Automated builder for Kali Linux VM images for QEMU, VirtualBox, VMware, and Hyper-V using debos, QEMU/KVM, or containers.

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Windows Process Lockdown Tool using Job Objects

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Create and configure lightweight, reproducible, and portable development environments Kali's HashiCorp Packer configurations to create Kali…

Portable, hardware-backed WebAuthn credentials using TPM 2.0. Deterministic parent key derived from a master seed enables cross-device credential…

Protocol-agnostic security kernel for AI tool execution. Enforces zero-trust, sandboxed isolation, policy-driven control, and full auditability…

Runtime security gateway for AI agents: cryptographically attests tool calls, enforces policies, sandboxes execution, and logs tamper-evident audit…