Explore Projects

Discover 24 open source projects

Active filters (1):
Search: misconfigurationร—
Clear all

Showing 1-20 of 24 projects

aquasecurity/trivy

Security scanner for vulnerabilities, misconfigurations, secrets, and SBOM in containers, Kubernetes, code repos, and clouds

32.8K
Active
Go
Penetration Testing
Infrastructure as Code
Go
#security-scanner#vulnerability-detection#iac-scanning

GTFOBins/GTFOBins.github.io

A curated list of Unix-like executables that can bypass local security restrictions in misconfigured systems.

12.7K
Active
YAML
Security Research
#linux#binaries#bypass

kubescape/kubescape

Kubescape is an open-source Kubernetes security platform that provides risk analysis, security, compliance, and misconfiguration scanning.

11.2K
Active
Go
CLI Tools
#kubernetes#security#compliance

bridgecrewio/checkov

Checkov is a tool to prevent cloud misconfigurations and find vulnerabilities in infrastructure as code, container images, and open-source packages.

8.5K
Active
Python
Infrastructure as Code
Linters & Formatters
#cloud-security#infrastructure-as-code#static-analysis

liamg/traitor

Automatic Linux privilege escalation tool that exploits common vulnerabilities and misconfigurations.

7.1K
Archived
Go
Security Research
CLI Tools
#cve-2021-3560#cve-2022-0847#dirtypipe

aquasecurity/tfsec

Tfsec is an open-source static code analysis tool for Terraform that helps find misconfigurations and potential security issues.

7.0K
Stable
Go
Linters & Formatters
Infrastructure as Code
#security#compliance#linter

datreeio/datree

Datree is a policy enforcement solution to prevent Kubernetes misconfigurations from reaching production.

6.3K
Archived
Go
Containerization
CLI Tools
Go
#kubernetes#policy-management#security

sa7mon/S3Scanner

Scan for misconfigured S3 buckets across S3-compatible APIs

3.0K
Stable
Go
Go
#authentication#s3#infosec

Checkmarx/kics

KICS by Checkmarx helps developers find security vulnerabilities and compliance issues in infrastructure-as-code early in the development cycle.

2.6K
Active
Open Policy Agent
Infrastructure as Code
Security Tools
Open Policy Agent
#appsec#devsecops#iac

m0rtem/CloudFail

A Python tool that can discover hidden IP addresses behind Cloudflare using misconfigured DNS and old database records.

2.5K
Archived
Python
Penetration Testing
#cloudflare#ip-discovery#pentest

TH3xACE/SUDO_KILLER

A tool to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems.

2.4K
Stable
Shell
Penetration Testing
CLI Tools
#abuse-sudo#linux-exploits#privilege-escalation

TheKingOfDuck/burpFakeIP

A Burp Suite plugin for testing web applications by spoofing IP addresses in case of server misconfigurations.

1.6K
Archived
Java
Penetration Testing
#burp-suite#ip-spoofing#web-application-testing

liamg/gitjacker

A Go tool to leak git repositories from misconfigured websites for security research and penetration testing.

1.6K
Stable
Go
Penetration Testing
CLI Tools
#git#hacking#security

stark0de/nginxpwner

A Python tool to find common Nginx misconfigurations and vulnerabilities.

1.6K
Archived
Python
API Frameworks
Security Research
#nginx#security#vulnerability

C0nw0nk/Nginx-Lua-Anti-DDoS

An anti-DDoS Lua script for Nginx to protect web servers from various attack types using a JavaScript-based authentication puzzle.

1.6K
Stable
Lua
API Frameworks
#anti-ddos#ddos-mitigation#security

s0md3v/Corsy

A Python tool that scans for misconfigurations in Cross-Origin Resource Sharing (CORS) policies.

1.5K
Archived
Python
Penetration Testing
CLI Tools
#cors#security-scanning#vulnerability-detection

jakehildreth/Locksmith

A PowerShell tool to find and fix common misconfigurations in Active Directory Certificate Services.

1.5K
Active
PowerShell
API Frameworks
CLI Tools
#active-directory#pki#powershell-module

cyberark/KubiScan

A tool to scan Kubernetes clusters for risky permissions and misconfigurations.

1.4K
Experimental
Python
API Frameworks
Containerization
#kubernetes#rbac#authorization

nickvourd/Windows-Local-Privilege-Escalation-Cookbook

This Windows Local Privilege Escalation Cookbook provides PowerShell scripts and techniques for privilege escalation on Windows systems.

1.3K
Archived
PowerShell
Security Research
Windows
#privilege-escalation#windows-security#oscp

chenjj/CORScanner

A fast, open-source CORS misconfiguration vulnerability scanner written in Python.

1.1K
Archived
Python
Security Research
Backend & APIs
#cors#cors-policy#cors-misconfigurations
2

Stay in the loop

Get weekly updates on trending AI coding tools and projects.