pypi-data / pypi-aws-secrets
This repo scans pypi for AWS keys
☆105Updated last year
Alternatives and similar repositories for pypi-aws-secrets:
Users that are interested in pypi-aws-secrets are comparing it to the libraries listed below
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 3 years ago
- clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerabil…☆99Updated 2 years ago
- An Open Letter to the OWASP Board☆106Updated last year
- WAF bypass PoC☆47Updated last year
- Fetch the details of assets hosted on AWS.☆87Updated last year
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆296Updated last week
- This repository collects lists of security-relavent Python APIs, along with examples of exploits using those APIs☆35Updated 3 years ago
- Assorted tools for security-related task for git repositories☆59Updated 3 years ago
- Utility for downloading and mounting EBS snapshots using the EBS Direct API's☆84Updated last month
- Holds the public Hacking the Cloud CTFs.☆55Updated last year
- A tool for quickly evaluating IAM permissions in AWS.☆73Updated 11 months ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 3 years ago
- Scan DockerHub images that match a keyword to find secrets.☆57Updated 4 years ago
- find dangling domains in a multi cloud environment☆142Updated this week
- ☆110Updated last year
- A small library to alter AWS API requests; Used for fuzzing research☆22Updated last year
- Cloud agnostic IAM permissions enumerator☆148Updated 2 weeks ago
- Intentionally Vulnerable Flask app for use in Demos☆30Updated last month
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated 2 years ago
- AWS STS token decoder☆39Updated last month
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆40Updated this week
- Find secrets in your codebase☆124Updated last month
- S3 Account Search☆4Updated 6 months ago
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆68Updated 3 years ago
- Obtain GraphQL API Schema even if the introspection is not enabled☆11Updated last year
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆271Updated 7 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated last month
- ☆48Updated 2 years ago
- ☆168Updated 2 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago