BishopFox / cloudfox
Automating situational awareness for cloud penetration tests.
☆2,034Updated last month
Alternatives and similar repositories for cloudfox:
Users that are interested in cloudfox are comparing it to the libraries listed below
- Granular, Actionable Adversary Emulation for the Cloud☆1,913Updated this week
- An encyclopedia for offensive and defensive security knowledge in cloud native technologies.☆1,808Updated last week
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆903Updated this week
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆4,545Updated 3 weeks ago
- Awesome cloud enumerator☆956Updated 6 months ago
- Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.☆1,751Updated 4 months ago
- CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool☆3,080Updated 3 weeks ago
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,640Updated 5 months ago
- A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure☆683Updated last year
- Identify privilege escalation paths within and across different clouds☆680Updated 3 months ago
- 🛡️ Awesome Cloud Security Resources ⚔️☆2,129Updated 3 months ago
- Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.☆1,091Updated last year
- Peirates - Kubernetes Penetration Testing tool☆1,279Updated last month
- AWSGoat : A Damn Vulnerable AWS Infrastructure☆1,791Updated 2 weeks ago
- Cloud Security Posture Management (CSPM)☆3,428Updated last week
- Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)☆1,260Updated this week
- A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.☆2,009Updated 7 months ago
- Tool for building Kubernetes attack paths☆818Updated this week
- Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized en…☆1,150Updated 2 weeks ago
- My cheatsheet notes to pentest AWS infrastructure☆666Updated 2 years ago
- Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.☆493Updated last year
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,553Updated 3 months ago
- ☆624Updated this week
- A graph-based tool for visualizing effective access and resource relationships in AWS environments.☆935Updated 2 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,669Updated this week
- Navigate the CVE jungle with ease.☆1,847Updated this week
- Security Remediation Guides☆718Updated 2 weeks ago
- Enumerate the permissions associated with AWS credential set☆1,130Updated last year
- Azure Security Resources and Notes☆1,517Updated 8 months ago
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,486Updated 8 months ago