securisec / cliamLinks
Cloud agnostic IAM permissions enumerator
☆161Updated 9 months ago
Alternatives and similar repositories for cliam
Users that are interested in cliam are comparing it to the libraries listed below
Sorting:
- A utility to convert your AWS CLI credentials into AWS console access.☆255Updated 5 years ago
- A GraphQL enumeration and extraction tool☆134Updated 3 years ago
- The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testin…☆246Updated 3 years ago
- S3 Account Search☆35Updated 6 months ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆191Updated last year
- Tools to assess DNS security.☆153Updated last year
- Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.☆186Updated 2 years ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆68Updated last year
- ☆127Updated last year
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆113Updated last year
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆165Updated 3 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated last year
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆122Updated 2 years ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆282Updated 4 months ago
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆181Updated last month
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆190Updated 3 years ago
- WAF bypass PoC☆50Updated 2 years ago
- boostsecurityio/lotp☆138Updated 2 weeks ago
- Determine privileges from cloud credentials via brute-force testing.☆68Updated last year
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- ☆114Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆31Updated 2 years ago
- Find CVE PoCs on GitHub☆160Updated 6 months ago
- ☆104Updated 3 years ago
- Scan DockerHub images that match a keyword to find secrets.☆61Updated 4 years ago
- ☆142Updated last month
- Burp Extension to add additional functionality for pentesting websocket based applications☆103Updated 5 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- Utility for downloading and mounting EBS snapshots using the EBS Direct API's☆91Updated 10 months ago
- Enumerate AWS permissions and resources.☆71Updated 3 years ago