PankajMoolrajani / PermCutter
Spec and Sample code for Identifying and Reducing Permission Explosion
☆11Updated last year
Related projects ⓘ
Alternatives and complementary repositories for PermCutter
- This application was built to help reduce the amount of time it takes to review AWS Lambda code.☆60Updated 2 weeks ago
- An AWS metadata enumeration tool by Plerion☆76Updated 9 months ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- ☆38Updated 4 months ago
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆89Updated last week
- Determine privileges from cloud credentials via brute-force testing.☆64Updated 3 months ago
- ☆24Updated 2 weeks ago
- Hide from the InstanceCredentialExfiltration GuardDuty finding by using VPC Endpoints☆113Updated last year
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆92Updated last year
- Repository to archive AWS Documentation for local use☆38Updated last month
- Vulnerable by Design AWS Cloud Development Kit (CDK) Infrastructure☆46Updated 10 months ago
- AWS STS token decoder☆37Updated 4 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆21Updated 2 months ago
- A tool for quickly evaluating IAM permissions in AWS.☆70Updated 5 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆39Updated 11 months ago
- ☆32Updated last year
- ☆24Updated 2 weeks ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆131Updated last year
- A toolset to juggle AWS roles for persistent access☆52Updated 3 months ago
- ☆38Updated 5 months ago
- A PoC to Simulate Ransomware Attack on AWS Environment☆28Updated last month
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago
- find dangling domains in a multi cloud environment☆135Updated 6 months ago
- Unauthenticated enumeration of AWS, Azure, and GCP Principals☆203Updated last week
- ☆43Updated 3 weeks ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated 2 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆110Updated 2 months ago
- Automation associated with our talk: Attacking and Defending Infrastructure with Terraform☆16Updated 2 years ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆59Updated last year