dagrz / aws_pwn
A collection of AWS penetration testing junk
☆1,173Updated last year
Related projects ⓘ
Alternatives and complementary repositories for aws_pwn
- WeirdAAL (AWS Attack Library)☆781Updated last year
- Exploits written by the Rhino Security Labs team☆1,059Updated 3 years ago
- A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.☆897Updated 5 years ago
- Tools for fingerprinting and exploiting Amazon cloud infrastructures☆447Updated 2 years ago
- Security auditing tool for AWS environments☆1,725Updated 5 years ago
- for AWS Security material☆246Updated 2 years ago
- A graph-based tool for visualizing effective access and resource relationships in AWS environments.☆922Updated 2 years ago
- A tool for identifying misconfigured CloudFront domains☆346Updated 4 years ago
- Cloud-related research releases from the Rhino Security Labs team.☆356Updated 4 years ago
- barq: The AWS Cloud Post Exploitation framework!☆386Updated 2 years ago
- Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services☆634Updated 3 years ago
- Security Tool to Look For Interesting Files in S3 Buckets☆1,366Updated 7 months ago
- A tool for quickly evaluating IAM permissions in AWS.☆1,433Updated 3 months ago
- Python installable command line utiltity for mitigation of host and key compromises.☆344Updated 3 years ago
- A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure☆658Updated last year
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆887Updated 2 years ago
- Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.☆1,144Updated last year
- A tool to capture all the git secrets by leveraging multiple open source git searching tools☆1,112Updated 5 years ago
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆4,399Updated this week
- Collection of scripts and resources for DevSecOps and Automated Incident Response Security☆620Updated 3 years ago
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆436Updated last year
- AWS Auditing & Hardening Tool☆708Updated 4 years ago
- a Damn Vulnerable Serverless Application☆534Updated last year
- Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.☆591Updated 5 years ago
- Enumerate the permissions associated with AWS credential set☆1,098Updated 9 months ago
- AWS Least Privilege for Distributed, High-Velocity Deployment☆1,120Updated last year
- Security aspects of AWS products for the Security Specialist certification☆208Updated 2 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,573Updated this week
- CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool☆2,974Updated last week