BishopFox / cloudfoxLinks
Automating situational awareness for cloud penetration tests.
☆2,160Updated 4 months ago
Alternatives and similar repositories for cloudfox
Users that are interested in cloudfox are comparing it to the libraries listed below
Sorting:
- Granular, Actionable Adversary Emulation for the Cloud☆2,093Updated 2 weeks ago
- AWSGoat : A Damn Vulnerable AWS Infrastructure☆1,890Updated 2 months ago
- Awesome cloud enumerator☆1,027Updated 4 months ago
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆4,822Updated last week
- My cheatsheet notes to pentest AWS infrastructure☆682Updated 2 years ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆956Updated this week
- Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.☆1,887Updated 3 weeks ago
- Identify privilege escalation paths within and across different clouds☆698Updated last month
- An encyclopedia for offensive and defensive security knowledge in cloud native technologies.☆2,155Updated 2 weeks ago
- CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool☆3,294Updated last month
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,726Updated 10 months ago
- A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure☆716Updated last year
- Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.☆1,205Updated 2 months ago
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,702Updated 2 months ago
- Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.☆509Updated last year
- ☆684Updated last week
- Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threa…☆1,356Updated last month
- Create your own vulnerable by design AWS penetration testing playground☆387Updated 3 months ago
- Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)☆1,350Updated 5 months ago
- Azure and AWS Attacks☆1,102Updated 2 years ago
- A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.☆2,112Updated last year
- Peirates - Kubernetes Penetration Testing tool☆1,343Updated last week
- 🛡️ Awesome Cloud Security Resources ⚔️☆2,226Updated 8 months ago
- Cloud Security Posture Management (CSPM)☆3,563Updated 2 weeks ago
- A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automat…☆2,051Updated last week
- GitHub Actions Pipeline Enumeration and Attack Tool☆685Updated last month
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆862Updated 9 months ago
- Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.☆635Updated 5 years ago
- Tool for building Kubernetes attack paths☆894Updated last week
- Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.☆708Updated this week