pushsecurity / saas-attacks
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown
☆1,326Updated 3 months ago
Alternatives and similar repositories for saas-attacks
Users that are interested in saas-attacks are comparing it to the libraries listed below
Sorting:
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆795Updated 3 months ago
- AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE…☆1,152Updated last month
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆970Updated last month
- A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.☆1,097Updated last year
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,627Updated 6 months ago
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆672Updated 3 months ago
- Automating situational awareness for cloud penetration tests.☆2,104Updated 2 months ago
- A collection of sources of documentation, as well as field best practices, to build/run a SOC☆1,391Updated 2 weeks ago
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,094Updated 6 months ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆651Updated last year
- Incident Response Methodologies 2022☆1,049Updated last month
- My cheatsheet notes to pentest AWS infrastructure☆673Updated 2 years ago
- Purple Team Exercise Framework☆701Updated last year
- Azure Security Resources and Notes☆1,546Updated 11 months ago
- RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers…☆636Updated 11 months ago
- Azure and AWS Attacks☆1,104Updated 2 years ago
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,795Updated 2 weeks ago
- A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE AT…☆1,178Updated last month
- AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover se…☆1,303Updated 2 months ago
- Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.☆1,140Updated last year
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre …☆641Updated last month
- You didn't think I'd go and leave the blue team out, right?☆1,658Updated last year
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆843Updated 6 months ago
- SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applic…☆449Updated last year
- A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automat…☆1,882Updated this week
- A concise, directive, specific, flexible, and free incident response plan template☆704Updated last year
- ☆828Updated last year
- Pen Test Report Generation and Assessment Collaboration☆521Updated last week
- An offensive data enrichment pipeline☆675Updated last month
- Open source templates you can use to bootstrap your security programs☆847Updated last month