
KubeLight
OWASP Kubernetes security and compliance tool [WIP]

OWASP Kubernetes security and compliance tool [WIP]

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…

A command line security audit tool for Amazon Web Services

A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.

Automates migration of AWS workloads from IMDSv1 to IMDSv2 to mitigate SSRF attacks. Detects IMDSv1 usage across EC2, ECS, EKS, Lightsail, and more,…

Finds internet-exposed resources in an AWS account

AWS Testing and Reporting Management Tool

Suppress vulnerabilities applying Kubernetes context to scans

we are providing DevOps and security teams script to identify cloud workloads that may be vulnerable to the Log4j vulnerability(CVE-2021-44228) in…

Automated deployment of OWASP Juice Shop on Kubernetes using kubeadm and Terraform, with integrated Trivy vulnerability scanning for DevSecOps…

One command grades your whole cloud account — misconfigurations, missing observability, and security posture.


Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

OpenSSL Heartbleed (CVE-2014-0160) vulnerability scanner.

Script - Workaround instructions to address CVE-2021-44228 in vCenter Server

Extracts all S3 Buckets from CSP report headers and then tests for file upload vulns

End-to-end vulnerability management lifecycle on Azure Windows Server 2025. Features OS patching and network-level compensating controls (NSG) to…