SirBroccoli's repositories
PurplePanda
Identify privilege escalation paths within and across different clouds
Bruteforce-GCP-Permissions
Use the GCP testIamPermissions functionality to bruteforce and discover your permissions
prowler
Prowler is an Open Cloud Security tool for AWS, Azure, GCP and Kubernetes. It helps for continuos monitoring, security assessments and audits, incident response, compliance, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more.
404checker
Auxiliary script thought to be used in Red Team exercises to check if an URL redirects to a masked 404 (such as 200 that redirects to a "Not found" page or similars). URLs must be passed sorted in order to improve performance.
delepwn
DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegation (DWD) misconfigurations in Google Cloud Platform (GCP) environments. This tool helps security professionals and administrators evaluate their organization's exposure to potential DWD-based attacks.
react-native-onesignal
React Native Library for OneSignal Push Notifications Service
airflow
Apache Airflow - A platform to programmatically author, schedule, and monitor workflows
crossmint-sdk
Crossmint SDK for client and server integrations
flake8-logging
A Flake8 plugin that checks for issues using the standard library logging module.
functions-quickstart-javascript
Contains a basic JavaScript quickstart project for Azure Functions
grafana
The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
helm
The Kubernetes Package Manager
msdocs-python-flask-webapp-quickstart
Contains the sample application for the App Service Quickstart in Python using Flask.
postMessage-tracker
A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon