wickett / lambhack
A very vulnerable serverless application in AWS Lambda
☆94Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for lambhack
- Route53/CloudFront Vulnerability Assessment Utility☆84Updated last year
- Content for 'JIRA Risk Project' book published at LeanPub☆56Updated 6 years ago
- A simple file-based scanner to look for potential AWS access and secret keys in files☆89Updated 8 months ago
- for AWS Security material☆246Updated 2 years ago
- AppSecPipeline Specification for DevOps automation.☆38Updated last year
- OWASP Cloud Security - Enabling conversations through threat and control stories☆177Updated 5 years ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆46Updated 7 years ago
- An AWS Lambda vulnerable application written in flask.☆48Updated 7 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆62Updated 5 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated last year
- Security Payload Unit Test Repository (SPUTR)☆86Updated last year
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆61Updated last year
- A command line security audit tool for Amazon Web Services☆80Updated 5 years ago
- This command line tool counts the number of resources in different categories across Amazon regions.☆56Updated 4 years ago
- Example detection of compromise credentials in AWS☆119Updated 6 years ago
- Research on the enumeration of IAM permissions without logging to CloudTrail☆60Updated 3 years ago
- ☆61Updated last year
- The invoicer for Chapter 2 of Securing DevOps☆47Updated 3 months ago
- Security aspects of AWS products for the Security Specialist certification☆208Updated 2 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆74Updated 2 years ago
- ☆65Updated 7 years ago
- This script is used to generate some basic detections of the aws security services☆71Updated 2 years ago
- ☆82Updated 4 years ago
- Blazing CloudTrail since 2018☆134Updated 5 years ago
- Proof of Concept Zappa Based AWS Persistence and Attack Platform☆37Updated 4 years ago
- Content for OWASP Summit 2017 site☆128Updated 4 years ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.☆71Updated 3 years ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆133Updated 4 years ago
- ☆20Updated 6 years ago