
kube-hunter
Hunt for security weaknesses in Kubernetes clusters

Hunt for security weaknesses in Kubernetes clusters

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf,…

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

A collection of challenge based hack-a-thons including student guide, coach guide, lecture presentations, sample/instructional code and templates. …

Generates least-privilege AWS IAM policies based on resource ARNs and access levels, automating secure policy creation for cloud infrastructure.

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

PacBot (Policy as Code Bot)

An open source real-time network topology and protocols analyzer

Cloud native secrets management for developers - never leave your command line for secrets.

Terraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational…

Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.

Immutable Linux OS image optimized for running Incus containers and virtual machines, with UEFI Secure Boot, TPM 2.0 disk encryption, and automated…

A collection of AWS penetration testing junk

Open-source cloud security platform that discovers attack paths, identifies misconfigurations, visualizes IAM access, and provides step-by-step…

PowerShell-based security assessment framework for Microsoft 365, Azure, and Entra ID. Scans for misconfigurations, CIS benchmark compliance, and…

🛡️ 🔒 This project's goal is to be simple to create and destroy your own VPN service using WireGuard.

AzureGoat : A Damn Vulnerable Azure Infrastructure