
cloudfox
Automating situational awareness for cloud penetration tests.

Automating situational awareness for cloud penetration tests.

S3 Account Search

Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.

CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

Security auditing tool for AWS environments

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Red team operations management platform automating infrastructure deployment, C2 setup, phishing campaigns, and reconnaissance with integrated tool…

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

A collection of AWS penetration testing junk

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares

PowerShell script to enumerate Azure Active Directory access permissions, including role assignments, service principals, and privileged access…

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf,…

Attack Surface Management since before Attack Surface Management was a thing