robbholland's Stars
chadchristensen/dev-sparknotes
A collection of condensed, quality information for a variety of technologies
trap-bytes/gourlex
Gourlex is a simple tool that can be used to extract URLs and paths from web pages.
sdv-dev/SDV
Synthetic data generation for tabular data
ByteSnipers/awesome-pentest-cheat-sheets
Collection of cheat sheets useful for pentesting
evidence-dev/evidence
Business intelligence as code: build fast, interactive data visualizations in pure SQL and markdown
observablehq/framework
A static site generator for data apps, dashboards, reports, and more. Observable Framework combines JavaScript on the front-end for interactive graphics with any language on the back-end for data analysis.
hrishioa/wishful-search
Natural language search for complex JSON arrays, with AI Quickstart.
jtesta/ssh-audit
SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
turbot/flowpipe
Flowpipe is a cloud scripting engine. Automation and workflow to connect your clouds to the people, systems and data that matters.
D00Movenok/BounceBack
↕️🤫 Stealth redirector for your red team operation security
petrgazarov/salami
Infrastructure as Natural Language
gotr00t0day/Gsec
Web Security Scanner
letta-ai/letta
Letta (formerly MemGPT) is a framework for creating LLM services with memory.
awslabs/amazon-guardduty-tester
This repository can be used to generate and evaluate findings detected by Amazon GuardDuty
awslabs/aws-cloudsaga
AWS CloudSaga - Simulate security events in AWS
aws-samples/aws-customer-playbook-framework
This repository provides sample templates for security playbooks against various scenarios when using Amazon Web Services.
g0ldencybersec/CloudRecon
gruntwork-io/terratest
Terratest is a Go library that makes it easier to write automated tests for your infrastructure code.
OJ/gobuster
Directory/File, DNS and VHost busting tool written in Go
jonrau1/ElectricEye
ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP & SaaS environments with controls mapped to over 20 industry, regulatory, and best practice controls frameworks
protectai/rebuff
LLM Prompt Injection Detector
NetSPI/FuncoPop
Tools for attacking Azure Function Apps
OWASP/wrongsecrets
Vulnerable app with examples showing how to not use secrets
9rnt/poro
Scan publicly accessible assets on your AWS cloud environment
righteousgambit/quiet-riot
Unauthenticated enumeration of AWS, Azure, and GCP Principals
sa7mon/S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!
zoph-io/aws-security-survival-kit
Bare minimum AWS Security Alerting and Configuration
BishopFox/smogcloud
Find cloud assets that no one wants exposed 🔎 ☁️
SummitRoute/aws_exposable_resources
Resource types that can be publicly exposed on AWS
salesforce/cloudsplaining
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.