feeltheajf / trufflehog3
Find secrets in your codebase
☆119Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for trufflehog3
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆110Updated last year
- ☆121Updated last year
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆265Updated 2 months ago
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆229Updated 2 weeks ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆105Updated last month
- ☆110Updated last year
- Secrets scanner that understands code☆187Updated last year
- FestIn - Open S3 Bucket Scanner☆230Updated 3 years ago
- Unauthenticated enumeration of AWS, Azure, and GCP Principals☆203Updated last week
- Scans Slack for API tokens, credentials, passwords, and more using YARA rules☆38Updated 3 years ago
- S3 Account Search☆246Updated last month
- Protect against subdomain takeover☆92Updated 5 months ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆133Updated 4 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆98Updated 9 months ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆96Updated 11 months ago
- Python API library for DefectDojo☆40Updated last year
- Assorted tools for security-related task for git repositories☆59Updated 2 years ago
- Reconnaissance tool for GitLab and GitHub organizations☆49Updated last year
- Find cloud assets that no one wants exposed 🔎 ☁️☆332Updated 4 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆112Updated last year
- GraphQL security testing tool☆118Updated 2 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago
- ☆233Updated 4 months ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆103Updated 5 years ago
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago
- Fetch the details of assets hosted on AWS.☆86Updated 11 months ago
- OWASP Domain Protect - prevent subdomain takeover☆398Updated last month
- The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testin…☆181Updated 2 years ago
- A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets☆307Updated 5 months ago