TinderSec / oidc-scanner-aws
☆47Updated last year
Related projects ⓘ
Alternatives and complementary repositories for oidc-scanner-aws
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- find dangling domains in a multi cloud environment☆135Updated 6 months ago
- AWS honey token manager☆84Updated 3 months ago
- Vulnerable by Design AWS Cloud Development Kit (CDK) Infrastructure☆46Updated 10 months ago
- Safer AWS SCP deployments via real-time monitoring☆46Updated last year
- HashiCorp-relevant rules for the Semgrep code analysis tool☆37Updated last year
- A collection of documented and undocumented AWS API models☆27Updated last week
- A Terraform module that makes it a snap to opt out of all AWS AI/ML data harvesting.☆30Updated 10 months ago
- Scan publicly accessible assets on your AWS cloud environment☆139Updated 5 months ago
- ☆38Updated 4 months ago
- An AWS metadata enumeration tool by Plerion☆76Updated 9 months ago
- A tool to uncover undocumented APIs from the AWS Console.☆83Updated this week
- AWS Attack Path Management Tool - Walking on the Moon☆225Updated 3 weeks ago
- An AWS IAM policy statement parser and query tool.☆157Updated 9 months ago
- ☆147Updated last month
- A cloud security tool to search and clean up unused AWS access keys, written in Go.☆49Updated 2 years ago
- ☆117Updated last week
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆89Updated last week
- List of known AWS accounts☆167Updated last month
- Crowdsourced list of sensitive IAM Actions☆139Updated 3 weeks ago
- Protect against subdomain takeover☆92Updated 6 months ago
- AWS SSO Reporter☆54Updated last year
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- ☆153Updated 2 months ago
- ☆109Updated last week
- A Golang program to rotate AWS & GCP account keys☆65Updated 2 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆79Updated this week
- Cloud Commotion intends to cause chaos to simulate security incidents☆140Updated 5 months ago
- Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆44Updated last week
- Open-source best practices for protecting a secure, sensible cloud platform☆105Updated 3 weeks ago