Starred repositories
List Formatting Samples for use in SharePoint and Microsoft Lists
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
Find, verify, and analyze leaked credentials
Monkey365 is an open-source security assessment tool for Microsoft 365, Azure, and Microsoft Entra ID. It helps security professionals identify misconfigurations, review cloud security posture, and…
A PowerShell script to audit privileged users in Microsoft Entra ID and Azure with detailed reporting
NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Redirects, leveraging advanced scanning and URL enumeration te…
Maester is a test automation framework to help you stay in control of your Microsoft security configuration.
A PowerShell script that automates the security assessment of Microsoft 365 environments.
joe-shenouda / osint-tools
Forked from Astrosp/Awesome-OSINT-ListOSINT tools can be used for Information gathering, Cybersecurity, Reverse searching, bugbounty, trust and safety, red team operations and more.
This repository contains policy packs which can be used by system management software to configure device platforms (such as Windows 10 and iOS) in accordance with NCSC device security guidance. Th…
🌐 The Internet Computer! Free, Open-Source, and Self-Hostable.
Fast passive subdomain enumeration tool.
Converts text dumps from CIS Benchmark PDFs to CSV & Excel formats.
Convert CIS pdf benchmarks to Excel and Json
PowerShell Digital Forensics & Incident Response Scripts.
A modular vulnerability scanner with automatic report generation capabilities.
Free and libre source BadUSB payloads for Flipper Zero. [Windows, GNU/Linux, iOS]
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
An offline Phishing Email Analyzer. Enabling non-techies to analyze phishing emails automatically!
Mantis is a security framework that automates the workflow of discovery, reconnaissance, and vulnerability scanning.
BZHack / Farewell-Ransom
Forked from JoelGMSec/PSRansomPowerShell Ransomware Simulator with C2 Server
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.
A curated list of awesome Microsoft Azure Security tools, guides, blogs, and other resources.
A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automate your pentest reports with ease.
A pentest reporting tool written in Python. Free yourself from Microsoft Word.