pushsecurity / saas-attacksLinks
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown
☆1,333Updated 3 months ago
Alternatives and similar repositories for saas-attacks
Users that are interested in saas-attacks are comparing it to the libraries listed below
Sorting:
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆798Updated 3 months ago
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆980Updated last month
- Azure and AWS Attacks☆1,103Updated 2 years ago
- Automating situational awareness for cloud penetration tests.☆2,123Updated 2 months ago
- AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE…☆1,159Updated last week
- A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE AT…☆1,181Updated 2 weeks ago
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆849Updated 7 months ago
- Incident Response Methodologies 2022☆1,052Updated last month
- A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.☆1,105Updated last year
- A collection of sources of documentation, as well as field best practices, to build/run a SOC☆1,401Updated 2 weeks ago
- A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigatin…☆431Updated 3 months ago
- Granular, Actionable Adversary Emulation for the Cloud☆2,029Updated this week
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,651Updated 2 weeks ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆652Updated last year
- Purple Team Exercise Framework☆706Updated last year
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆682Updated 4 months ago
- My cheatsheet notes to pentest AWS infrastructure☆675Updated 2 years ago
- 🛡️ Awesome Cloud Security Resources ⚔️☆2,186Updated 6 months ago
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre…☆646Updated 2 months ago
- AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover se…☆1,327Updated 2 months ago
- A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data int…☆2,296Updated this week
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,112Updated 7 months ago
- 💀 Don't fear the Reaper 👻☆522Updated 3 weeks ago
- An offensive data enrichment pipeline☆680Updated last month
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆382Updated last month
- Vulnerable app with examples showing how to not use secrets☆1,319Updated this week
- RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers…☆636Updated last year
- Create your own vulnerable by design AWS penetration testing playground☆378Updated last month
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,802Updated last month
- Pen Test Report Generation and Assessment Collaboration☆526Updated last week