
natlas
Attack Surface Management since before Attack Surface Management was a thing

Attack Surface Management since before Attack Surface Management was a thing

Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Find exposed data in Azure with this public blob scanner

AWS Identity and Access Management Visualizer and Anomaly Finder

BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom…

Python script to enumerate valid Microsoft 365 domains, retrieve tenant name, and check for an MDI instance.

Lan Tian's NixOS Configuration

A horizontally scalable Direct Server Return layer 4 load balancer for Linux using XDP/eBPF

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares

A collector and derivation engine. It maps your environment, evaluates effective permissions and trust, and writes a complete attack graph as a…

Cobalt Strike BOF collection for attacking Azure AD during red team operations, covering authentication, enumeration, and post-exploitation vectors.

Like Envoy xDS, but for eBPF filters

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

A tool to enumerate S3 buckets manually or via certstream

Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.

AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration