NicholasSpringer / thunder-ctfLinks
GCP cloud security CTF
☆47Updated 6 months ago
Alternatives and similar repositories for thunder-ctf
Users that are interested in thunder-ctf are comparing it to the libraries listed below
Sorting:
- GCP GOAT is the vulnerable application for learn the GCP Security☆70Updated 7 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆50Updated 2 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- ☆41Updated last week
- Enumerate AWS permissions and resources.☆71Updated 3 years ago
- ☆94Updated 3 years ago
- Posts about different topics☆39Updated 4 months ago
- Determine privileges from cloud credentials via brute-force testing.☆67Updated last year
- ☆139Updated 2 years ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆59Updated 2 years ago
- Jenkins Security Research or Hacking Jenkins ;)☆12Updated last year
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆43Updated 6 months ago
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- ☆50Updated last year
- ☆36Updated 5 years ago
- ☆24Updated 2 years ago
- Virtual Security Operations Center☆52Updated 2 years ago
- ☆60Updated 2 years ago
- ☆70Updated 2 years ago
- ☆114Updated 2 years ago
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆51Updated last year
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆31Updated last month
- ☆90Updated 3 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆96Updated last week
- Slides and materials for conference presentations☆11Updated 2 years ago
- Tools and blogs I use to perform GCP red teams☆134Updated last year
- ☆12Updated 2 years ago
- Scripts and misc. stuff related to the PortSwigger Web Academy☆17Updated 3 years ago
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆50Updated 2 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆45Updated 2 years ago