A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud
☆151May 24, 2022Updated 4 years ago
Alternatives and similar repositories for cloud-penetration-testing
Users that are interested in cloud-penetration-testing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Cloud Pentesting Resource Collection☆43Apr 18, 2026Updated 4 months ago
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆60Mar 7, 2022Updated 4 years ago
- This repository mainly focuses on various techniques, tools, frameworks and approach to perform offensive exploitation of AWS infrastruct…☆12Jun 12, 2019Updated 7 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆97Dec 29, 2025Updated 8 months ago
- Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)☆354Mar 4, 2025Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆11Jan 24, 2023Updated 3 years ago
- A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.☆1,222Dec 27, 2023Updated 2 years ago
- Collection of fuzzing payloads and corpus from all around added as sub modules☆15Mar 26, 2026Updated 5 months ago
- Awesome list for cloud security related projects☆158Oct 4, 2022Updated 3 years ago
- Here are some common interview questions for an application security position you can review for your own interview, along with example a…☆34Apr 17, 2022Updated 4 years ago
- This Repo serves as a collection of shared security and penetration testing resources for the cloud.☆304Jul 21, 2024Updated 2 years ago
- Automatically deploy Nemesis☆21Jun 14, 2024Updated 2 years ago
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆964Oct 30, 2024Updated last year
- Exploit for CVE-2024-5009☆13Jul 8, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Wounty is a simple web enumeration script that makes use of other popular tools to automate the early stages of recognition in Bug Bounty…☆14Feb 6, 2022Updated 4 years ago
- Automating situational awareness for cloud penetration tests.☆2,573Aug 20, 2026Updated 2 weeks ago
- ☆778Updated this week
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆400Jan 10, 2025Updated last year
- Simple website to guess API Key / OAuth Token☆49Aug 29, 2022Updated 4 years ago
- BurpSuite Extension leveraging new Montoya API to automatically sets payload positions to your inruder tab saving you time during VAPT.☆19Feb 21, 2026Updated 6 months ago
- Pentesting lab with a Kali Linux instance accessible via ssh & wireguard VPN and with vulnerable instances in a private subnet☆198Jul 4, 2024Updated 2 years ago
- Beacon Object Files used for Cobalt Strike☆19Jul 18, 2023Updated 3 years ago
- Collection of offensive tools targeting Microsoft Azure☆227Apr 1, 2026Updated 5 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.☆5,320May 19, 2026Updated 3 months ago
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,842Apr 6, 2026Updated 5 months ago
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆2,188Oct 1, 2025Updated 11 months ago
- A curated list of available Bug Bounty & Disclosure Programs and Write-ups.☆83Dec 3, 2023Updated 2 years ago
- Watches the Downloads folder for any new files and inserts it into Nemesis for analysis.☆15Feb 29, 2024Updated 2 years ago
- A OWASP Based Checklist With 80+ Test Cases☆205Oct 26, 2022Updated 3 years ago
- ☆16Sep 4, 2025Updated last year
- Tool to automate recon☆45Dec 28, 2021Updated 4 years ago
- Awesome Mobile Application Penetration Testing Cheat Sheet☆21May 29, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆47Feb 11, 2023Updated 3 years ago
- A Python, Boto3 script that leverages a forensic volume to attach & mount to a selected instance, run a memory dump, unmount and detach f…☆12Jul 15, 2020Updated 6 years ago
- An Incredibly Annoying, Insufferable Authentication Implementation☆32Apr 17, 2024Updated 2 years ago
- bash script for automating subdomain enumeration process either passive or active☆29Feb 24, 2026Updated 6 months ago
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆714Oct 23, 2025Updated 10 months ago
- ☆16Mar 29, 2024Updated 2 years ago
- Cool One Liners at one place to make your recon and bug bounty skills better !☆15Oct 3, 2020Updated 5 years ago