
iron-proxy
An egress firewall for untrusted workloads.

An egress firewall for untrusted workloads.

Firefox/Burp extension for security audits with single-click proxy, container profiles, postMessage logging, JS injection toolbox, and security…

A self hosted virtual browser that runs in docker and uses WebRTC.

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

快速搭建各种漏洞环境(Various vulnerability environment)

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

Kubernetes-native security scanning orchestrator that automates continuous vulnerability detection by integrating multiple open-source scanners into…

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes…

Proper sandboxing for agentic coding and web browsing

PoC for CVE-2018-1002105.

Easily setup a hidden service inside the Tor network

CVE-2025-1974