pushsecurity / saas-attacks
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown
☆1,284Updated last month
Alternatives and similar repositories for saas-attacks:
Users that are interested in saas-attacks are comparing it to the libraries listed below
- Incident Response Methodologies 2022☆1,040Updated last year
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆789Updated last month
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,585Updated 4 months ago
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆949Updated 2 months ago
- A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE AT…☆1,170Updated last month
- A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.☆1,075Updated last year
- Azure and AWS Attacks☆1,100Updated 2 years ago
- AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE…☆1,099Updated last month
- Automating situational awareness for cloud penetration tests.☆2,059Updated 2 weeks ago
- AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover se…☆1,263Updated 2 weeks ago
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,781Updated 3 weeks ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆645Updated last year
- A collection of sources of documentation, as well as field best practices, to build/run a SOC☆1,353Updated last month
- Azure Security Resources and Notes☆1,527Updated 9 months ago
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre…☆620Updated this week
- This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and …☆2,269Updated last month
- Navigate the CVE jungle with ease.☆1,916Updated 2 weeks ago
- Open source templates you can use to bootstrap your security programs☆820Updated last month
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,065Updated 4 months ago
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆833Updated 5 months ago
- A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automat…☆1,814Updated this week
- You didn't think I'd go and leave the blue team out, right?☆1,647Updated last year
- A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data int…☆2,254Updated this week
- Granular, Actionable Adversary Emulation for the Cloud☆1,962Updated last week
- Purple Team Exercise Framework☆687Updated last year
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆366Updated this week
- My cheatsheet notes to pentest AWS infrastructure☆671Updated 2 years ago
- Create your own vulnerable by design AWS penetration testing playground☆360Updated 2 months ago
- PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection…☆620Updated last week
- GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]☆1,443Updated 8 months ago