avishayil / caponeme
Repository demonstrating the Capital One breach on your AWS account
☆241Updated 4 years ago
Alternatives and similar repositories for caponeme:
Users that are interested in caponeme are comparing it to the libraries listed below
- AWS Security Tools (AST) in a simple Docker container.☆287Updated 3 years ago
- Example detection of compromise credentials in AWS☆120Updated 6 years ago
- A honey token manager and alert system for AWS.☆317Updated 3 years ago
- rpCheckup is an AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, …☆160Updated 3 years ago
- An AWS Pentesting tool that lets you use one-liner commands to backdoor an AWS account's resources with a rogue AWS account - or share th…☆267Updated 3 years ago
- ☆82Updated 5 years ago
- Resource types that can be publicly exposed on AWS☆321Updated 2 years ago
- Red Team Scripts for AWS.☆167Updated 4 years ago
- SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS☆105Updated 3 years ago
- A production-friendly malware scanner for your AWS cloud☆199Updated 3 years ago
- for AWS Security material☆246Updated 2 years ago
- Blazing CloudTrail since 2018☆135Updated 6 years ago
- barq: The AWS Cloud Post Exploitation framework!☆387Updated 2 years ago
- ☆154Updated last year
- Security aspects of AWS products for the Security Specialist certification☆208Updated 2 years ago
- Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services☆638Updated 3 years ago
- Vendor Security Model Contract☆97Updated 2 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 5 years ago
- Leverage the ability of Terraform and AWS or GCP to distribute large security scans across numerous cloud instances.☆92Updated last year
- AWS Inventory and Compliance Framework☆224Updated last year
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 2 years ago
- Continuous Integration and Development ExploiteR☆85Updated 2 years ago
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆141Updated 10 months ago
- AWS Identity and Access Management Visualizer and Anomaly Finder☆292Updated 7 months ago
- AWS docs, guides, and other tools☆76Updated 2 years ago
- Undocumented Amazon S3 APIs and third-party extensions☆69Updated 2 years ago
- CURRYFINGER - SNI & Host header spoofing utility.☆110Updated 5 years ago
- AWSXenos will list all the trust relationships in all the IAM roles, S3 buckets, and more☆61Updated last month
- Open source application to instantly remediate common security issues through the use of AWS Config☆223Updated 4 years ago
- Cloud Security Dashboard for AWS - based on ScoutSuite☆1Updated last year