
MFASweep
A tool for checking if MFA is enabled on multiple Microsoft Services

A tool for checking if MFA is enabled on multiple Microsoft Services

Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.

Azure Red Team tool for graphing Azure and Azure Active Directory objects

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

A tool for quickly evaluating IAM permissions in AWS.

A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

A graph-based tool for visualizing effective access and resource relationships in AWS environments.

A Blazing fast Security Auditing tool for Kubernetes

Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North…

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.

A tool for exploring Firebase datastores.

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

Multi-threaded DNS-based enumeration tool for discovering AWS S3 buckets using pre-compiled wordlists and custom DNS resolvers, with optional Docker…

Automated security testing tool for Salesforce Experience Cloud that discovers misconfigured Aura applications, accessible records, and unauthorized…