mxm0z / awesome-sec-s3
A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets
☆307Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for awesome-sec-s3
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆229Updated 2 weeks ago
- Find AWS S3 buckets and test their permissions.☆368Updated last year
- Scrapts Scrapts Scrapts☆235Updated 7 months ago
- A DNS Bruteforcing Wordlist Generator☆350Updated last year
- Golang client for querying SecurityTrails API data☆539Updated last year
- Find cloud assets that no one wants exposed 🔎 ☁️☆332Updated 4 years ago
- Awesome cloud enumerator☆895Updated 3 months ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆201Updated last year
- GraphQL automated security testing toolkit☆303Updated 9 months ago
- Poor (rich?) man's bug bounty pipeline https://dubell.io☆271Updated last year
- Takes a list of URLs and returns their HTTP response codes☆391Updated last year
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆263Updated last year
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆217Updated 2 years ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆188Updated 3 years ago
- Maintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.☆656Updated 10 months ago
- Vulnerability Scan with Nuclei☆242Updated this week
- Get related domains / subdomains by looking at Google Analytics IDs☆228Updated 2 years ago
- ☆365Updated 3 years ago
- Curated list of open-source & paid Attack Surface Monitoring (ASM) tools.☆354Updated last month
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆295Updated this week
- Prototype pollution scanner using headless chrome☆197Updated 2 years ago
- Damn Vulnerable Cloud Application☆187Updated 6 years ago
- The Fairly Fast Fetcher. Requests a bunch of URLs provided on stdin fairly quickly.☆387Updated 7 months ago
- BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for c…☆381Updated 3 months ago
- Enumerate the permissions associated with AWS credential set☆1,098Updated 9 months ago
- Second-order subdomain takeover scanner☆377Updated last year
- S3 Account Search☆246Updated last month
- The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testin…☆181Updated 2 years ago
- A rapid API for the Project Sonar dataset☆641Updated last year
- Gotator is a tool to generate DNS wordlists through permutations.☆457Updated 2 years ago