yahoo / SubdomainSleuth
Scanner to identify dangling DNS records and subdomain takeovers
☆37Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for SubdomainSleuth
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆57Updated 2 years ago
- Detections for CVE-2021-44228 inside of nested binaries☆34Updated 2 years ago
- ☆110Updated last year
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆39Updated 2 months ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆27Updated 2 years ago
- OpenIOC rules to facilitate hunting for indicators of compromise☆38Updated 2 years ago
- Vulnerability disclosure policies in the US Government's executive branch☆37Updated last year
- A simple script that generates an Excel friendly CSV file from an Amass JSON file.☆13Updated 2 years ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆62Updated last year
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆49Updated 8 months ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆61Updated this week
- Identify IP addresses owned by public cloud providers☆112Updated 4 months ago
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆49Updated last year
- A tool for testing objects' permissions in AWS buckets☆39Updated 3 years ago
- A tool to monitor for potential spear phishing domains and send to Slack.☆22Updated 9 months ago
- Citrix Scanner for CVE-2023-3519☆48Updated last year
- AWS SSO serverless phishing API.☆29Updated 3 years ago
- ☆90Updated 2 years ago
- IAMFinder enumerates and finds users and IAM roles in a target AWS account.☆109Updated 3 years ago
- SMBScan is a tool to enumerate file shares on an internal network.☆39Updated 3 weeks ago
- A pure python tool for finding and comparing typo-squatting, bytesqatting, and homoglyph domain attacks and brand impersonation☆38Updated last month
- Holds the public Hacking the Cloud CTFs.☆49Updated 8 months ago
- Virtual Security Operations Center☆49Updated last year
- A small library to alter AWS API requests; Used for fuzzing research☆21Updated last year
- This repository provides a comprehensive collection of Pulumi scenarios utilized by cnappgoat☆18Updated last month
- ☆36Updated 6 months ago
- boostsecurityio/lotp☆100Updated 7 months ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆93Updated 3 years ago