A tool for identifying misconfigured CloudFront domains
☆363Jun 24, 2020Updated 6 years ago
Alternatives and similar repositories for cloudfrunt
Users that are interested in cloudfrunt are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Route53/CloudFront Vulnerability Assessment Utility☆86Sep 11, 2023Updated 2 years ago
- A simple file-based scanner to look for potential AWS access and secret keys in files☆94Mar 18, 2024Updated 2 years ago
- WeirdAAL (AWS Attack Library)☆844Jan 13, 2025Updated last year
- A collection of AWS penetration testing junk☆1,222Aug 30, 2023Updated 2 years ago
- Security Tool to Look For Interesting Files in S3 Buckets☆1,469Apr 10, 2024Updated 2 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- ☆278Oct 19, 2021Updated 4 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆116Mar 29, 2019Updated 7 years ago
- ☆125Sep 2, 2019Updated 6 years ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆537Mar 7, 2022Updated 4 years ago
- Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆95Nov 9, 2018Updated 7 years ago
- A Powerful Subdomain Takeover Tool☆966Oct 17, 2023Updated 2 years ago
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆258Feb 23, 2022Updated 4 years ago
- Tool to search secrets in various filetypes.☆1,036Apr 25, 2023Updated 3 years ago
- Enumerate the permissions associated with AWS credential set☆1,248Feb 5, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆5,281May 19, 2026Updated 2 months ago
- ☆11Aug 5, 2014Updated 11 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆3,160Updated this week
- Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.☆1,171Dec 8, 2022Updated 3 years ago
- Password Lense: reveal character types in a password☆23Oct 18, 2025Updated 9 months ago
- This tests a list of s3 buckets to see if they have dir listings enabled or if they are uploadable☆54Dec 10, 2025Updated 7 months ago
- Security auditing tool for AWS environments☆1,716Nov 28, 2018Updated 7 years ago
- Exploits written by the Rhino Security Labs team☆1,100Jan 23, 2021Updated 5 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆583Sep 7, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- DNS Takeover tool written in Go☆2,102Jul 3, 2026Updated 2 weeks ago
- Checks using a test string if a Cloudflare DNS bypass is possible using CloudFail.☆48Dec 17, 2020Updated 5 years ago
- Drupal enumeration & exploitation tool☆617Nov 4, 2020Updated 5 years ago
- A simple CORS misconfiguration scanner☆425Aug 14, 2020Updated 5 years ago
- Stealing CSRF tokens with CSS injection (without iFrames)☆322Feb 7, 2018Updated 8 years ago
- Find interesting Amazon S3 Buckets by watching certificate transparency logs.☆1,809Feb 28, 2025Updated last year
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Mar 1, 2023Updated 3 years ago
- A tool to find sensitive keys and passwords in Travis logs☆140Jun 27, 2021Updated 5 years ago
- This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtu…☆634Feb 5, 2019Updated 7 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆266Nov 18, 2021Updated 4 years ago
- StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile ap…☆871Apr 27, 2021Updated 5 years ago
- Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.☆652Nov 21, 2019Updated 6 years ago
- Burp Extension for AWS Signing☆93Jan 10, 2025Updated last year
- Enumerate usernames on a domain where you have no creds by using SMB Relay with low priv.☆400May 20, 2020Updated 6 years ago
- The original AWS security enforcer™☆61Mar 6, 2019Updated 7 years ago
- A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.☆560Mar 6, 2023Updated 3 years ago