uchi-mata / awesome-cloud-securityLinks
My collection of Cloud Security Resources
☆16Updated 9 months ago
Alternatives and similar repositories for awesome-cloud-security
Users that are interested in awesome-cloud-security are comparing it to the libraries listed below
Sorting:
- Salesforce Policy Deviation Checker☆30Updated 5 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- Application and Service Fingerprinting☆132Updated 3 years ago
- Static Token And Credential Scanner☆95Updated 2 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 3 years ago
- ☆17Updated 3 years ago
- ☆83Updated 3 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- Burp Extension for AWS Signing☆90Updated last year
- This repo gives an overview of some GCP metadata API attack and defend patterns☆78Updated 5 years ago
- Research on the enumeration of IAM permissions without logging to CloudTrail☆61Updated 4 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆45Updated 8 years ago
- ☆29Updated 9 years ago
- ☆114Updated 2 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
- Collection of Semgrep rules for security analysis☆10Updated last year
- A collection of my Semgrep rules☆51Updated 2 years ago
- PoC's and Slides from 'Gophers, whales and.. clouds? Oh my!' BSides Wellington presentation by Glenn 'devalias' Grant☆16Updated 7 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 7 years ago
- ☆60Updated 2 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 5 years ago
- Generate and Permutate Context Aware Dictionaries for Application Testing☆11Updated 9 years ago
- An Evil OIDC Server☆54Updated 3 years ago
- Code Review Audit Script Scanner☆143Updated 3 months ago
- Collect chrome extensions from various devices and find out if they are malicious☆24Updated 2 weeks ago
- ☆32Updated 10 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated last year
- An AWS Lambda vulnerable application written in flask.☆49Updated 8 years ago