
aws-enumerator
Read-only AWS service enumerator with 600+ API calls for cloud reconnaissance, info dumping, and result analysis during penetration testing.

Read-only AWS service enumerator with 600+ API calls for cloud reconnaissance, info dumping, and result analysis during penetration testing.

Abusing Azure services over C2

AzureRT - A Powershell module implementing various Azure Red Team tactics

A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.

Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files

Whois for the Cloud: Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.

Passive DNS server that detects exposed cloud storage buckets (AWS S3, GCP, Azure) by resolving DNS requests, tracing CNAME chains, and flagging…

CVE-2026-44578 scanner and exploit tool for SSRF in Next.js WebSocket upgrade handler. Detects vulnerable versions, extracts cloud metadata, and…

Chrome and Firefox extension that lists Amazon S3 Buckets while browsing

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

A tool for exploring Firebase datastores.


Cloud agnostic IAM permissions enumerator

PowerShell module for post-breach Azure red teaming, automating token extraction, resource enumeration, and lateral movement within managed identity…

Enumerates AWS environments for secrets by scanning EC2 userdata, Lambda environment variables and source code, and CodeBuild instances for…

Post-exploitation toolkit for Azure AD: fetch/search Microsoft Graph data, swap FOCI refresh tokens, and generate Azure CLI auth files from tokens.

PowerShell tool for enumerating Azure AD users, devices, applications, and domains via Microsoft Graph API, with offline data export capability.