Stars
Breakthrough Method for Agile Ai Driven Development
UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It automates the collection of artifacts from a wide range of U…
TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts
Research into Undocumented Behavior of Azure AD Refresh Tokens
So, you think you have MFA? AAD/ROPC/MFA bypass testing tool
Automation to assess the state of your M365 tenant against CISA's baselines
Scripts to enumerate and report on Entra Conditional Access
Repository for idPowerToys an app for Entra admins.
Lightweight security tool for auditing your organization's Conditional Access Policies (CAPs) in Microsoft Entra ID for potential misconfigurations.
Azure administrative tiering based on known attack paths
PowerShell module to manage Azure Active Directory app credentials.
Offensive Kubernetes Threat Matrix -- kubenomicon.com
A BCDR guide for Microsoft Azure customers
Google Secret Manager provider for the Secret Store CSI Driver.
The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.
CLI tool for Microsoft Graph based on .NET
A collection of watchdog scripts used for monitoring/restart web services
A sample app for the Retrieval-Augmented Generation pattern running in Azure, using Azure AI Search for retrieval and Azure OpenAI large language models to power ChatGPT-style and Q&A experiences.
Sample to set up Azure Functions to use private endpoints.
Example recipes for Kubernetes Network Policies that you can just copy paste
Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
The SpecterOps project management and reporting engine
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…
Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark
Azure Governance Visualizer aka AzGovViz is a PowerShell script that captures Azure Governance related information such as Azure Policy, RBAC (a lot more) by polling Azure ARM, Storage and Microsof…