
semgrep-rules
Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

GCPGoat : A Damn Vulnerable GCP Infrastructure

Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)

Discover resources created in an AWS account.

A security toolkit for Amazon S3

Multi-cloud vulnerable-by-design deployment tool using Terraform to provision intentionally insecure cloud infrastructure for security training and…

Find exposed data in Azure with this public blob scanner

Curated catalog of AWS resource types that can be publicly exposed, with CLI commands for creating and auditing public access configurations across…


Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

:owl::mag_right: A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration

Deliberately vulnerable Terraform infrastructure for learning cloud security misconfigurations and validating IaC scanner detection across AWS and…

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

A tool to hunt for publicly accessible DigitalOcean Spaces

Like Envoy xDS, but for eBPF filters

Scan publicly accessible assets on your AWS cloud environment

Systemd Hardening Helper - Mirror of https://github.com/desbma/shh

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS