ofirc / ingress-nightmare
A Terraform reproducer for IngressNightmare
☆23Updated 3 weeks ago
Alternatives and similar repositories for ingress-nightmare:
Users that are interested in ingress-nightmare are comparing it to the libraries listed below
- Worlds First Public POC for CVE-2025-1974 lol☆86Updated 2 weeks ago
- ☆46Updated 10 months ago
- Tool to spray AWS Console IAM Logins☆29Updated 2 years ago
- ☆20Updated 2 years ago
- Based on Lightspin proprietary data, research, and our tracking of cloud security trends in the market, our research team has compiled a …☆40Updated 2 years ago
- Some of my rough notes for Docker threat detection☆47Updated last year
- Determine privileges from cloud credentials via brute-force testing.☆67Updated 8 months ago
- A tool for secrets management, encryption as a service, and privileged access management☆14Updated last month
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- Additional active scan checks for BURP☆27Updated 6 months ago
- Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.☆47Updated last month
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆49Updated 2 years ago
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆46Updated 8 months ago
- ☆35Updated 3 weeks ago
- Contains all my research and content produced regarding the log4shell vulnerability☆31Updated 3 years ago
- Damn Vulnerable SCA Application☆32Updated 4 months ago
- POC for CVE-2022-23648☆36Updated 3 years ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- Cloud subdomains identification tool☆54Updated last week
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- Citrix Scanner for CVE-2023-3519☆51Updated last year
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 3 months ago
- A tool for quickly evaluating IAM permissions in AWS.☆57Updated last year
- A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques.☆43Updated 7 months ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆66Updated last year
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆39Updated 2 years ago
- Silver SAML forgery tool☆50Updated last year
- Dump Kerberos tickets from the KCM database of SSSD☆50Updated 7 months ago
- Tool to check the CloudTrail configuration and the services where trails are sent, to detect potential attacks to CloudTrail logging.☆13Updated 10 months ago
- ☆62Updated 4 months ago