JOSHUAJEBARAJ / GCP-GOATLinks
GCP GOAT is the vulnerable application for learn the GCP Security
☆69Updated 6 months ago
Alternatives and similar repositories for GCP-GOAT
Users that are interested in GCP-GOAT are comparing it to the libraries listed below
Sorting:
- Blogpost series showcasing interesting cloud - web app security bugs☆50Updated 2 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆96Updated last year
- ☆114Updated 2 years ago
- GCP cloud security CTF☆47Updated 5 months ago
- ☆50Updated last year
- Holds the public Hacking the Cloud CTFs.☆60Updated last year
- ☆40Updated 2 months ago
- ☆55Updated 2 years ago
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆108Updated last year
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆52Updated last year
- Whois for the Cloud: Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.☆182Updated last month
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated 2 years ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆32Updated 3 years ago
- Tools and blogs I use to perform GCP red teams☆132Updated last year
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆54Updated 3 years ago
- ☆60Updated 2 years ago
- ☆139Updated 2 years ago
- Determine privileges from cloud credentials via brute-force testing.☆69Updated last year
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠 ️ and collaborate with others 🤝☆140Updated last month
- ☆43Updated last month
- Enumerate AWS permissions and resources.☆71Updated 3 years ago
- 📚A curated list of product security resources.☆21Updated 5 months ago
- ☆94Updated 3 years ago
- Hide from the InstanceCredentialExfiltration GuardDuty finding by using VPC Endpoints☆122Updated 4 months ago
- Jenkins Security Research or Hacking Jenkins ;)☆12Updated 11 months ago
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆107Updated 2 years ago
- LLM Testing Findings Templates☆75Updated last year
- AWS SSO serverless phishing API.☆32Updated 4 years ago
- Virtual Security Operations Center☆52Updated 2 years ago