PoC for CVE-Requested vulnerability in Amazon ECS (EC2 launch type) allowing cross-task IAM credential theft.
☆52Aug 20, 2025Updated last year
Alternatives and similar repositories for ecscape
Users that are interested in ecscape are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An interactive, TLS-capable HTTP intercepting proxy designed for penetration testers and software developers, including a parser for the …☆28Jul 31, 2025Updated last year
- Blogpost series showcasing interesting cloud - web app security bugs☆76Jul 20, 2026Updated 2 months ago
- POC tool to abuse windows server failover clusters☆58Aug 7, 2025Updated last year
- JavaScript for Automation (JXA) tool to do Active Directory enumeration.☆107Feb 19, 2022Updated 4 years ago
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆13Jan 24, 2026Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Enumerate Callbacks and all Object Types☆16Jan 9, 2023Updated 3 years ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegat…☆42Aug 8, 2025Updated last year
- Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations,…☆76Sep 13, 2025Updated last year
- PoC for gaining persistency on vulnerable Lambdas☆32Feb 26, 2021Updated 5 years ago
- ☆91Apr 29, 2024Updated 2 years ago
- ☆23Apr 28, 2026Updated 5 months ago
- CloudRec is an open source multi-cloud security posture management (CSPM) platform designed to help organizations improve the security of…☆191Jun 12, 2026Updated 3 months ago
- Active Directory certificate abuse☆43Oct 9, 2022Updated 4 years ago
- Tools and Scripts used in CRTP☆13Apr 27, 2020Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- This repository is for the Testing ASP.NET ViewState with YSoNet (YSoSerial.NET) workshop.☆25Dec 17, 2025Updated 9 months ago
- Create Entra Global Admin accounts from On-Prem☆25Jul 28, 2025Updated last year
- This is a VxLAN PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆31Jul 21, 2025Updated last year
- Shellcode Loader Utilizing ETW Events☆65Feb 26, 2025Updated last year
- S2-057 poc test☆13Aug 31, 2018Updated 8 years ago
- HotFuzz is a fuzz testing utility that generates random data and sends it to a service's endpoint over HTTP or HTTPS based on a given fuz…☆18Mar 14, 2021Updated 5 years ago
- A Server Side Request Forgery (SSRF) protection library. Made with 🖤 by Doyensec LLC.☆116Jun 11, 2026Updated 3 months ago
- A Rust library along with a Win32 GUI application to determine the driver load order of a Windows system (cf. https://colinfinck.de/posts…☆13Jan 26, 2025Updated last year
- Pure PowerShell port of PassTheCert tool to authenticate to an LDAP/S server with a certificate through Schannel☆63Apr 13, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Digging into private data through Sonarcloud public projects☆11Sep 13, 2024Updated 2 years ago
- a small script to collect information from a management point☆37Jan 19, 2026Updated 8 months ago
- An AWS metadata enumeration tool by Plerion☆102Updated this week
- A collection of published exploits and proof-of-concept code.☆20Dec 19, 2017Updated 8 years ago
- Listing of resources for example AWS Service Control Policies (SCPs)☆16Jan 10, 2024Updated 2 years ago
- Generic security MCP server — brokers policies, risk, paved roads, and tools to coding agents. Talk demo for fwd:cloudsec 2026.☆17Sep 27, 2026Updated last week
- This Python tool enables network node command and exfiltration while applying OPSEC to ensure the process is hidden by transmitting comma…☆34Sep 30, 2026Updated last week
- CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious…☆15Jan 21, 2025Updated last year
- ☆15Jun 28, 2021Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Finding Java/C# gadget chains with CodeQL☆188Updated this week
- Monitoring tool to detect patterns or IOCs (strings, regex, VirusTotal) and alert you and your team via console, Telegram or SMS written …☆17Feb 17, 2026Updated 7 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆27Apr 27, 2026Updated 5 months ago
- Cross Compatible Command and Control☆49Dec 18, 2025Updated 9 months ago
- UAC Bypass using RequestTrace scheduled task☆28Jul 23, 2026Updated 2 months ago
- MCP server for the HackerOne GraphQL API☆19Dec 3, 2025Updated 10 months ago
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆38Jun 12, 2024Updated 2 years ago