Tool for building Kubernetes attack paths
-
Updated
Aug 26, 2026 - Go
Tool for building Kubernetes attack paths
[TDSC 2021] IntruSion alert-driven Attack Graph Extractor. https://ieeexplore.ieee.org/document/9557854
A Graph Neural 网络-based Intrusion Detection System
The OWASP Subtractive 安全 Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber risk through the elimination of attack paths.
Autonomous offensive security agent. Plans engagements, runs recon, chains exploits, and writes reports - end to end. Native to Claude Code, Gemini CLI, Codex and Cursor. Not a scanner wrapper.
A Flipper Zero that stops guessing and starts reasoning: ML-guided RFID/NFC fuzzing & access-control auditing that turns raw card reads into a prioritized, explainable security assessment. Defensive-use only.
Enterprise-grade vulnerability management platform with AI-powered analysis, interactive attack graph visualization (网络X), and intelligent chatbot for security consultation. Integrates OpenCTI threat intelligence.
AAPP-MART is an advanced cybersecurity engine featuring AI-powered autonomous attack path prediction and multi-agent red team simulation engine. Designed for adversary emulation, threat modeling, security validation, risk assessment, and MITRE ATT&CK aligned.
Open-source security intelligence engine for developers. Orchestrates nmap, nikto, semgrep, whatweb, trivy, cortex-crawler & curl. Builds attack graphs, narrates risk, and generates fixes. Runs fully locally, without any cost
Cyber-physical attack-graph generator for smart grids: chains recon → network → ICS/physical impact and ranks defensive chokepoints. Defensive research only.
Real-Time Detection of Multi-Stage Attacks using Kill Chain State Machines: Detect multi-stage attacks by correlating alerts from Intrusion Detection Systems (IDS) to reconstruct attacks. By prioritising alerts based on the kill chain model the RT-KCSM reduces false-positive alerts.
Finds the reachable paths from internet exposure, through excessive privilege, to a sensitive asset, by correlating the scanners you already run into one live graph of your environment. Flags them in the pull request that opens them and ships the fix as a PR. Open source, Apache-2.0.
Static + plan-time Terraform security analysis with attack-graph prioritisation, MITRE ATT&CK mapping, and one-click PR fix suggestions. 215 rules, 100% fix_hcl coverage.
Visual IAM attack graph for AWS. Instantly analyze permissions, detect privilege-escalation risks, and audit IAM roles — locally, securely.
Cold Relay is a single-binary Active Directory security assessment tool that collects Windows authentication evidence across LDAP, Kerberos, SMB, DNS, GPO, delegation, certificate services, and more turning evidence into deterministic findings with an offline attack graph.
Shadow Blade - A tool to interact with attack graphs
Neuro-symbolic RL agent that learns to pentest networks it has never seen — GPT-4o compiles CVE preconditions into a Z3 action mask over a GraphSAGE PPO policy. Zero-shot attack-graph transfer, negatives disclosed.
Hybrid LSTM-Markov attack chain forecasting for MITRE ATT&CK. Learns from 4,849 campaign chains + 8,437 real intrusion traces. Generates 26,051 risk-ranked multi-step attack futures via constrained beam search. 86% next-step accuracy, 0.76 Pearson correlation with NCISS severity. SECRYPT 2026 submission.
Add a description, image, and links to the attack-graph topic page so that developers can more easily learn about it.
To associate your repository with the attack-graph topic, visit your repo's landing page and select "manage topics."