NicholasSpringer / thunder-ctfLinks
GCP cloud security CTF
☆47Updated 4 months ago
Alternatives and similar repositories for thunder-ctf
Users that are interested in thunder-ctf are comparing it to the libraries listed below
Sorting:
- GCP GOAT is the vulnerable application for learn the GCP Security☆68Updated 5 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆50Updated 2 years ago
- ☆36Updated 5 years ago
- ☆139Updated 2 years ago
- Posts about different topics☆40Updated 2 months ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- Enumerate AWS permissions and resources.☆70Updated 3 years ago
- Determine privileges from cloud credentials via brute-force testing.☆69Updated last year
- Jenkins Security Research or Hacking Jenkins ;)☆12Updated 10 months ago
- ☆60Updated 2 years ago
- ☆40Updated last month
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- ☆94Updated 3 years ago
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆41Updated 4 months ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆83Updated 2 months ago
- ☆70Updated 2 years ago
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆29Updated 7 months ago
- Virtual Security Operations Center☆52Updated 2 years ago
- ☆50Updated last year
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- ☆24Updated 2 years ago
- Publicly availalbe vulnarble by desgin vm/machines☆43Updated 3 years ago
- Slides and materials for conference presentations☆11Updated 2 years ago
- ☆114Updated 2 years ago
- ☆90Updated 3 years ago
- Scripts and misc. stuff related to the PortSwigger Web Academy☆17Updated 3 years ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆139Updated this week
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated 2 years ago
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆51Updated 11 months ago
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆54Updated 3 years ago