Parasimpaticki / sandcastle
🏰 A Python script for AWS S3 bucket enumeration.
☆54Updated 5 years ago
Alternatives and similar repositories for sandcastle:
Users that are interested in sandcastle are comparing it to the libraries listed below
- Scan for and exploit Consul agents☆40Updated 5 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆83Updated 5 years ago
- Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆92Updated 6 years ago
- retrive metadata endpoint data with these one liners.☆38Updated 4 years ago
- Zone transfers for rwhois☆20Updated 6 years ago
- A tool to evaluate Content Security Policies.☆71Updated 4 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆113Updated 6 years ago
- AWS S3 Sensitive Data Search☆36Updated 3 years ago
- Scans a list of websites for Cloudfront or S3 Buckets☆104Updated 3 years ago
- A collection of slides, videos, and proof-of-concept scripts from various Rhino presentations.☆38Updated 6 years ago
- Ruby command-line interface to Burp Suite's REST API☆59Updated 5 years ago
- An epic web shell☆84Updated 3 months ago
- A simple remote scanner for Liferay Portal☆18Updated 3 weeks ago
- The SSH Multiplex Backdoor Tool☆64Updated 5 years ago
- A simple file-based scanner to look for potential AWS access and secret keys in files☆91Updated last year
- Hayat is a script for report and analyze Google Cloud Platform resources.☆80Updated 5 years ago
- OAuth Security Cheatsheet☆40Updated 10 years ago
- Amazon S3 bucket spelunking!☆86Updated 7 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆29Updated 6 years ago
- Automating Jenkins Hacking using Shodan API☆94Updated 7 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 7 years ago
- An AWS Lambda vulnerable application written in flask.☆48Updated 7 years ago
- Burp Extension for AWS Signing☆88Updated 3 months ago
- An nmap script to produce target lists for use with various tools.☆33Updated 3 years ago
- The Unofficial Burp Extension for DNSDumpster.com☆70Updated 7 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆103Updated 2 years ago
- A git submodule list containing all the tools repo's you'll ever need.☆27Updated 5 years ago
- A tool to enumerate S3 buckets manually or via certstream☆82Updated 2 years ago
- A password spraying wordlist generator. Takes breach data as a valid input in order to target password reuse.☆44Updated 6 years ago