Lists (4)
Sort Name ascending (A-Z)
Stars
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Find, verify, and analyze leaked credentials
Declarative Continuous Deployment for Kubernetes
An open-source runtime for composable workflows. Great for AI agents and CI/CD.
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…
Vulnerability scanner written in Go which uses the data provided by https://osv.dev
Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…
Find domains and subdomains related to a given domain
A cross-platform command-line tool to convert images into ascii art and print them on the console. Now supports braille art!
Lightweight service virtualization/ API simulation / API mocking tool for developers and testers
Modern CLI for exploring vulnerability data with powerful search, filtering, and analysis capabilities.
Extract URLs, paths, secrets, and other interesting bits from JavaScript
A fast tool to scan CRLF vulnerability written in Go
Utility program to perform multiple operations for a given subnet/CIDR ranges.
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists
Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable SSRF candidates.
Hyperscale OpenShift - clusters with hosted control planes
🦉🔎 A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration
Host and manage multiple Juice Shop instances for security trainings and Capture The Flags