
nuvola
Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Mounts AWS resources as a local filesystem for infrastructure exploration, security auditing, and configuration analysis using standard Unix tools…

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

A collection of Azure AD/Entra tools for offensive and defensive security purposes

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

Automating situational awareness for cloud penetration tests.

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf,…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

A collection of AWS penetration testing junk

A graph-based tool for visualizing effective access and resource relationships in AWS environments.

Attack Surface Management since before Attack Surface Management was a thing

Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6, Classic/VPC networking, and across all AWS services

BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom…

AWS Identity and Access Management Visualizer and Anomaly Finder

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) SMB shares

Identify IP addresses owned by public cloud providers