
Azure-App-Tools
Collection of tools to use with Azure Applications

Collection of tools to use with Azure Applications

Scans AWS IAM configurations for shadow admins by detecting misconfigured deny policies that fail to restrict user actions on groups, enabling…

The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

A tool to enumerate S3 buckets manually or via certstream

Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.

Python3 tool to perform password spraying against Microsoft Online service using various methods

CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD

Pentester-focused Docker registry tool to enumerate and pull images

IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.

Suite of programs meant to aid in bug hunting and security assessments

Container Snitch checks running processes under the Docker Engine and alerts if any are found to be running as root

AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

A fast tool to scan SAAS,PAAS App written in Go

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

eBPF-based runtime security agent for Kubernetes that detects unknown processes and file changes, enforces pre-registered constraints, and automates…

Providing Azure pipelines to create an infrastructure and run Atomic tests.

Scripts to build Kali cloud images (fork of https://salsa.debian.org/cloud-team/debian-cloud-images)

Cloud pentesting framework deploying vulnerable-by-demand AWS resources with quest-based scenarios to teach practical penetration testing and…