Repository navigation

#

misconfiguration

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Go
29298
2 天前
TH3xACE/SUDO_KILLER

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileges on the system, essentially allowing a regular user to execute commands as the root user.

Shell
2364
2 天前

Stunner is a tool to test and exploit STUN, TURN and TURN over TCP servers.

Go
825
24 天前

An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.

Go
758
10 个月前

yotter - bash script that performs recon and then uses dirb to discover directories that might lead to information leakage

Shell
124
8 年前

A Trivy plugin that scans and outputs the results (vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more) to an interactive html file.

HTML
109
1 个月前

⛅️🔐 Security Requirements for Yandex.Cloud configuration: IAM, network access, key management, Kubernetes, audit logs.

40
4 年前

Plugin for YATAS that audits AWS accounts for misconfiguration and security issues

Go
14
13 小时前

Security insights for AWS IAM in large-scale accounts (20K+ users), bypassing CSPM limitations.

7
7 个月前

A tool to find .git folder exposed due to server misconfiguration.

Go
5
1 年前

SecretKeeper is a tool for detecting secrets and misconfigurations on your Git repositories (Bitbucket and GitHub).

Python
4
9 个月前

Env Breaker adalah Pemindaian dan deteksi file .env pada situs-situs target. Skrip ini membantu mengidentifikasi kemungkinan kebocoran informasi sensitif yang terkait dengan file .env

PHP
3
2 年前

FireSploit is a powerful tool for ethical hackers, developers, and security researchers. It helps find and fix misconfigured Firebase databases that are exposing sensitive data to the public. By scanning for open read/write access, it helps you secure your applications and prevent data breaches.

Python
3
2 个月前

Plugin for YATAS that audits GCP projects for misconfiguration and security issues

Go
3
4 天前

This script automate exploit only cloud service

Python
3
2 年前