pushsecurity / saas-attacksLinks
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown
☆1,379Updated 2 months ago
Alternatives and similar repositories for saas-attacks
Users that are interested in saas-attacks are comparing it to the libraries listed below
Sorting:
- Incident Response Methodologies 2022☆1,069Updated 5 months ago
- AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE…☆1,186Updated 3 months ago
- Automating situational awareness for cloud penetration tests.☆2,195Updated this week
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆812Updated 7 months ago
- A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE AT…☆1,198Updated 3 months ago
- Open source templates you can use to bootstrap your security programs☆868Updated 3 months ago
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,741Updated last week
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆1,057Updated 2 months ago
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆881Updated 10 months ago
- AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover se…☆1,418Updated 6 months ago
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,835Updated this week
- BlueHound - pinpoint the security issues that actually matter☆746Updated 2 years ago
- A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.☆1,136Updated last year
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆708Updated 7 months ago
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,191Updated last month
- Monkey365 provides a tool for security consultants to easily conduct not only Microsoft 365, but also Azure subscriptions and Microsoft E…☆1,184Updated 2 weeks ago
- Purple Team Exercise Framework☆735Updated last year
- Granular, Actionable Adversary Emulation for the Cloud☆2,158Updated this week
- A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigatin…☆459Updated 3 months ago
- Create your own vulnerable by design AWS penetration testing playground☆398Updated 3 weeks ago
- Azure and AWS Attacks☆1,107Updated 2 years ago
- You didn't think I'd go and leave the blue team out, right?☆1,691Updated last week
- Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in…☆935Updated 2 months ago
- My cheatsheet notes to pentest AWS infrastructure☆688Updated 2 years ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆665Updated 2 years ago
- The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).☆396Updated 2 weeks ago
- Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.☆714Updated last month
- PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection…☆713Updated last month
- An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRI…☆840Updated last week
- Websec interview questions by tib3rius answered☆311Updated last year