African cybersecurity training ecosystem — hands-on bootcamps, self-paced courses, and a token-based reward system (CP).
Explore the QYVORA organization for platform repositories, toolchain documentation, and installers.
| Tool | Description | Repository | |
|---|---|---|---|
| Anansi | Attack surface reconnaissance CLI — subdomain discovery, TLS/header/path auditing, tech-stack detection, takeover, and OSINT. | qyvora-anansi | |
| Jabari | Android device security assessment CLI — ADB-based posture analysis, rule-driven findings, and offline reports. | qyvora-jabari | |
| TOHA3EE | Modular network security framework — MITM, wireless, switch, auth, web, enumeration, and OSINT modules. | qyvora-toha3ee | |
| Aksum | Static binary analysis platform — hardening checks, disassembly, dataflow, and attack-surface aggregation. | qyvora-aksum | |
| Sekhmet | Baseline-aware fuzzing framework — mutation, crash classification, deduplication, minimization, and coverage feedback. | qyvora-sekhmet | |
| Nzinga | Open-source intelligence CLI — multi-source collection, correlation, evidence-backed findings, and reports. | qyvora-nzinga | |
| Shaka | Active Directory security assessment — discovery, enumeration, relationship graphing, posture analysis, and risk scoring. | qyvora-shaka | |
| Mansa | Authorized wireless security assessment — WLAN discovery, enumeration, MITM-range analysis, deterministic rules, and transparent risk scoring. | qyvora-mansa | |
| Amanirenas | Mobile app security assessment — offline IPA/profile analysis for metadata, static, configuration, API, and secrets risk. Runtime assessment and live device acquisition are refused honestly. | qyvora-amanirenas | |
| Sundiata | Identity directory security assessment — discovery, enumeration, authentication & MFA posture, credential exposure, privilege mapping, and identity attack paths. Credentials are redacted and never stored. | qyvora-sundiata | |
| Timbuktu | Digital forensics investigation — evidence integrity, artifact, filesystem, memory, timeline, log, and indicator analysis on offline case files. | qyvora-timbuktu | |
| Kush | Malware sample analysis — hashes, metadata, static posture, strings, network indicators, IOC extraction, and threat classification. Samples are never executed. | qyvora-kush | |
| Imhotep | Cloud snapshot security assessment — IAM, storage, network, container, secret, and misconfiguration risk on offline snapshots. Live provider collection is refused. | qyvora-imhotep |