WAFW00F allows one to identify and fingerprint Web App Firewall
Malicious traffic detection system
OAuth2 goodies for the Djangonauts!
A generic, spec-compliant, thorough implementation of the OAuth
Main Sigma Rule Repository
The AWS exploitation framework, designed for testing security
CTFs as you need them
Utilize all available CPU cores for accepting new client connections
Server for security audits supporting public key authentication
A list of useful payloads and bypass for Web Application Security
macOS Security Compliance Project
Prevent cloud misconfigurations during build-time for Terraform
AWS Encryption SDK
A tool that allows you to create vulnerable environments
Cell-by-cell testing for production Jupyter notebooks in JupyterLab
Automatic SQL injection and database takeover tool
GTFOBins is a curated list of Unix binaries
A pass extension for importing data from most existing password
With Django Hijack, admins can log in and work on behalf of others
Rules engine for cloud security, cost optimization, and governance
A Burp Extension for GraphQL Security Testing
A central control plane for AWS permissions and access
Utility for sending notifications, on demand and when commands finish
An AI-powered security review GitHub Action using Claude