sebastian-mora / awsssome_phish
AWS SSO serverless phishing API.
☆31Updated 3 years ago
Alternatives and similar repositories for awsssome_phish:
Users that are interested in awsssome_phish are comparing it to the libraries listed below
- ☆58Updated last year
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- A PoC to Simulate Ransomware Attack on AWS Environment☆29Updated 3 months ago
- A small library to alter AWS API requests; Used for fuzzing research☆21Updated last year
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆51Updated 2 months ago
- A combined list of helpful awscli commands from Scott Piper's flaws.cloud exercise as well as from Beau Bullock's Breaching the Cloud Tra…☆19Updated 3 years ago
- ☆28Updated 3 years ago
- This is a custom SSM agent which is sorta functional☆17Updated 3 years ago
- Determine privileges from cloud credentials via brute-force testing.☆64Updated 4 months ago
- A toolset to juggle AWS roles for persistent access☆53Updated 5 months ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆88Updated 2 years ago
- ☆55Updated last year
- WAF bypass PoC☆45Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆39Updated last year
- Virtual Security Operations Center☆50Updated last year
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆29Updated 2 years ago
- ☆39Updated 7 months ago
- ☆124Updated 6 months ago
- sgCheckup generates nmap output based on scanning your AWS Security Groups for unexpected open ports.☆81Updated 3 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆75Updated 2 years ago
- Research on the enumeration of IAM permissions without logging to CloudTrail☆60Updated 3 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated last year
- Lightspin AWS IAM Vulnerability Scanner☆96Updated 3 years ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆60Updated last year
- python3 scripts to help with aws triage needs☆15Updated 2 years ago
- Offensive Terraform module which creates EC2 instance and reverse shell from an EC2 instance to attacker machine.☆17Updated 4 years ago
- Pivot into private VPC networks using a VPN connection☆41Updated 5 years ago