ya'll.secure?

Open Source Projects

Security tools, research utilities, and educational resources built in my spare time. All projects are MIT-licensed and available on GitHub.

ad-lab-builder

Terraform and Ansible scripts for spinning up a realistic Active Directory lab environment in AWS or Azure. Pre-configures common misconfigurations (Kerberoastable accounts, unconstrained delegation, weak GPOs) for practice and training.

TerraformAnsibleActive DirectoryLabAWSAzure
iam-analyzer

CLI tool for analysing AWS IAM configurations at scale. Detects privilege escalation paths, overly permissive policies, and cross-account trust relationship risks. Outputs findings in both human-readable and JSON formats for pipeline integration.

PythonAWSIAMCloud SecurityCLI
phishkit-tracker

Threat intelligence tool that monitors phishing kit deployments targeting Australian financial institutions. Ingests open-source feeds, deduplicates indicators, and sends structured alerts to SIEM platforms via webhook.

PythonThreat IntelligencePhishingSIEMAutomation
recon-pipeline

Automated reconnaissance pipeline for external attack surface enumeration. Chains subdomain discovery, port scanning, web fingerprinting, and screenshot capture into a single parallelised workflow with structured output.

PythonReconnaissanceOSINTAutomationDocker