grines / scourLinks
☆127Updated last year
Alternatives and similar repositories for scour
Users that are interested in scour are comparing it to the libraries listed below
Sorting:
- Utility for downloading and mounting EBS snapshots using the EBS Direct API's☆86Updated 3 months ago
- A utility to convert your AWS CLI credentials into AWS console access.☆240Updated 5 years ago
- ☆137Updated 2 years ago
- Research on the enumeration of IAM permissions without logging to CloudTrail☆61Updated 4 years ago
- Hide from the InstanceCredentialExfiltration GuardDuty finding by using VPC Endpoints☆117Updated last year
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago
- AWS SSO serverless phishing API.☆32Updated 4 years ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated 2 years ago
- Lightspin AWS IAM Vulnerability Scanner☆96Updated 4 years ago
- ☆111Updated 2 years ago
- Cloud agnostic IAM permissions enumerator☆150Updated 3 months ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 2 years ago
- Jekyll Files for cloudsecwiki.com☆50Updated 3 years ago
- ☆36Updated 5 years ago
- Determine privileges from cloud credentials via brute-force testing.☆69Updated 10 months ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 3 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆105Updated 5 months ago
- This tool implements a cloud version of the Shadow Copy attack against domain controllers running in AWS using only the EC2:CreateSnapsho…☆120Updated 5 years ago
- ☆140Updated last week
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆134Updated 5 years ago
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- ☆90Updated 3 years ago
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- ☆57Updated 2 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆143Updated 2 years ago
- An Evil OIDC Server☆53Updated 2 years ago
- Scan DockerHub images that match a keyword to find secrets.☆60Updated 4 years ago
- IAMFinder enumerates and finds users and IAM roles in a target AWS account.☆111Updated 4 years ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆51Updated 8 months ago