
CVE-2021-34824
reproducing an old istio bug

reproducing an old istio bug
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…


CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

AWSGoat : A Damn Vulnerable AWS Infrastructure

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

Terraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational…

Getting a handle on container security

AzureGoat : A Damn Vulnerable Azure Infrastructure

My cheatsheet notes to pentest AWS infrastructure

Discover resources created in an AWS account.

GCPGoat : A Damn Vulnerable GCP Infrastructure

Graph-based AWS security analysis tool that dumps cloud configurations, detects misconfigurations, and maps attack paths using a Neo4j digital twin…

Find cloud assets that no one wants exposed 🔎 ☁️

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS

The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container