synacktiv / action-octoscanLinks
π¦ A GitHub Action that performs a security scan of your GitHub Actions.
β26Updated 11 months ago
Alternatives and similar repositories for action-octoscan
Users that are interested in action-octoscan are comparing it to the libraries listed below
Sorting:
- β86Updated 2 months ago
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post messβ¦β79Updated 4 months ago
- Burp Suite extension for testing Passkey systems.β74Updated 6 months ago
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.β70Updated last month
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.β154Updated 8 months ago
- SOAPI - The OpenAPI Documentation Scannerβ37Updated 7 months ago
- JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by β¦β95Updated last month
- CaptainCredz is a modular and discreet password-spraying tool.β131Updated 2 months ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegatβ¦β34Updated 2 months ago
- β35Updated 6 months ago
- β107Updated 3 months ago
- A tool for quickly evaluating IAM permissions in AWS.β58Updated last year
- Burp extension for Recursive Request Exploits (RRE) β DEFCON 2025β93Updated 2 months ago
- Hijack a slack bot to phish your way inβ57Updated 2 months ago
- An experimental project exploring the use of Large Language Models (LLMs) to solve HackTheBox machines autonomously.β123Updated this week
- β14Updated last year
- A collection of tools that I use in CTF's or for assessmentsβ102Updated 8 months ago
- Interactive results explorer and annotation tool for Nosey Parkerβ38Updated 3 months ago
- Cloud subdomains identification toolβ60Updated 6 months ago
- The ldap2json script allows you to extract the whole LDAP content of a Windows domain into a JSON file.β139Updated 11 months ago
- β38Updated 3 weeks ago
- IPSpinner works as a local proxy that redirects requests through external services.β80Updated 6 months ago
- Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.β49Updated 7 months ago
- Secret Scanner for Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk, GitHub, and GitLabβ68Updated 2 weeks ago
- ServiceLens is a Python tool for analyzing services linked to Microsoft 365 domains. It scans DNS records like SPF and DMARC to identify β¦β78Updated 11 months ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to β¦β125Updated last year
- Verizon Burp Extensions: AI Suiteβ138Updated 5 months ago
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.β67Updated last year
- A python script to create a fake GitHub runner and hijack pipeline jobs to leak CI/CD secrets.β27Updated last year
- Collection of Docker honeypot logs from 2021 - 2024β36Updated last year