appsecco / CloudPentestCheatsheetsLinks
This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.
☆22Updated 5 years ago
Alternatives and similar repositories for CloudPentestCheatsheets
Users that are interested in CloudPentestCheatsheets are comparing it to the libraries listed below
Sorting:
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆134Updated 5 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆49Updated 6 years ago
- Repository for all the workshop content delivered at nullcon X on 1st of March 2019☆81Updated 6 years ago
- AWS Security Checks☆40Updated 7 years ago
- Route53/CloudFront Vulnerability Assessment Utility☆86Updated last year
- A simple file-based scanner to look for potential AWS access and secret keys in files☆93Updated last year
- Cloud Security Operations Orchestrator☆186Updated last year
- Hayat is a script for report and analyze Google Cloud Platform resources.☆81Updated 5 years ago
- This is an offensive guide to securing AWS infrastructures. The hope is that by knowing how to take advantage of various types of AWS wea…☆172Updated 6 years ago
- Amazon bucket brute force tool☆102Updated 12 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆135Updated 3 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆103Updated last year
- Pentesting/Bugbounty Dockerfiles.☆177Updated 4 years ago
- ☆51Updated 2 years ago
- pentest-standard.org docs redesign☆47Updated 3 years ago
- A Repository dedicated to creating modular and automated penetration testing frameworks utilizing Jupyter Notebooks☆146Updated 4 years ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆58Updated 5 years ago
- A collection of response templates for invalid bug bounty reports.☆91Updated 7 years ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆54Updated 5 years ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆144Updated 2 years ago
- Scripts and tools for AWS Pentest☆53Updated 4 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆63Updated 2 years ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆179Updated 2 years ago
- ☆71Updated 4 years ago
- A tool to enumerate S3 buckets manually or via certstream☆82Updated 2 years ago
- IAMFinder enumerates and finds users and IAM roles in a target AWS account.☆110Updated 4 years ago
- A tool to evaluate Content Security Policies.☆72Updated 5 years ago
- Preventing malicious takeover of the retired slurp AWS tool☆41Updated 6 years ago
- WebStor efficiently enumerates all websites across your organization’s networks and those in your DNS records - including cloud-hosted se…☆157Updated last year