DataDog / appsec-threat-emulationLinks
☆20Updated last month
Alternatives and similar repositories for appsec-threat-emulation
Users that are interested in appsec-threat-emulation are comparing it to the libraries listed below
Sorting:
- A tool to uncover undocumented APIs from the AWS Console.☆116Updated 9 months ago
- An AWS IAM Privilege Escalation Path Library☆113Updated last week
- Curating Falco rules with MITRE ATT&CK Matrix☆88Updated last year
- This repository provides a comprehensive collection of Pulumi scenarios utilized by cnappgoat☆21Updated last year
- Container image with malware and crypto miner for testing purposes☆46Updated last week
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆106Updated 2 years ago
- AIGoat: A deliberately Vulnerable AI Infrastructure. Learn AI security through solving our challenges.☆259Updated 4 months ago
- Cloud Offensive Breach and Risk Assessment (COBRA) Tool☆102Updated 2 weeks ago
- An open project to list all publicly known cloud vulnerabilities and CSP security issues☆373Updated 4 months ago
- A comprehensive security scanner for Model Context Protocol (MCP) servers that detects vulnerabilities and security issues in your MCP se…☆121Updated last month
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated 2 years ago
- boostsecurityio/lotp☆138Updated 2 weeks ago
- This repo contains IOC, malware and malware analysis associated with Public cloud☆249Updated last year
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆61Updated last year
- A full insecure kubernetes application for testing security tools☆90Updated 3 months ago
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆113Updated last year
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆141Updated last year
- CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.☆293Updated last year
- Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @Webbi…☆283Updated 8 months ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆74Updated 3 years ago
- ☆185Updated last week
- Protect against subdomain takeover☆95Updated 6 months ago
- Cloud Commotion intends to cause chaos to simulate security incidents☆145Updated last year
- MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.☆176Updated 2 months ago
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securit…☆37Updated last year
- An AWS IAM policy statement parser and query tool.☆197Updated last week
- Generate datasets of cloud audit logs for common attacks☆232Updated this week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆141Updated 2 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆96Updated last month
- ☆192Updated 9 months ago