pop3ret / AWSome-Pentesting
My cheatsheet notes to pentest AWS infrastructure
☆656Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for AWSome-Pentesting
- Azure and AWS Attacks☆1,048Updated last year
- ☆693Updated 2 years ago
- Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.☆480Updated 9 months ago
- Automating situational awareness for cloud penetration tests.☆1,955Updated last month
- Create your own vulnerable by design AWS penetration testing playground☆331Updated 5 months ago
- Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)☆316Updated 3 weeks ago
- ☆566Updated last year
- API Security Project aims to present unique attack & defense methods in API Security field☆278Updated 2 years ago
- Awesome cloud enumerator☆894Updated 3 months ago
- Identify privilege escalation paths within and across different clouds☆667Updated 2 weeks ago
- GCPGoat : A Damn Vulnerable GCP Infrastructure☆359Updated 3 weeks ago
- ☆581Updated this week
- ☆705Updated 2 years ago
- Websec interview questions by tib3rius answered☆303Updated last year
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆787Updated 3 weeks ago
- Watch the latest awesome security talks around the globe☆261Updated 2 years ago
- Security Remediation Guides☆709Updated this week
- Automated Penetration Testing Reporting System☆801Updated this week
- Awesome list of step by step techniques to achieve Remote Code Execution on various apps!☆1,850Updated last year
- BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for c…☆381Updated 3 months ago
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,433Updated 2 weeks ago
- AWSGoat : A Damn Vulnerable AWS Infrastructure☆1,748Updated 3 weeks ago
- List of all the Publicly disclosed vulnerabilities of Public Cloud Provider like Amazon Web Services (AWS), Microsoft Azure, Google Cloud…☆357Updated last year
- RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers…☆580Updated 5 months ago
- An encyclopedia for offensive and defensive security knowledge in cloud native technologies.☆1,729Updated this week
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆274Updated 7 months ago
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆533Updated 11 months ago
- SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applic…☆448Updated 7 months ago
- List of regex for scraping secret API keys and juicy information.☆682Updated 2 years ago
- My subdomain enumeration script. It's unique in the way it is built upon.☆664Updated 3 months ago