awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

13 مستودعات

Awesome GitHub RepositoriesCloud Security Tools

Security assessment and scanning utilities for cloud environments.

Explore 13 awesome GitHub repositories matching part of an awesome list · Cloud Security Tools. Refine with filters or upvote what's useful.

Awesome Cloud Security Tools GitHub Repositories

اعثر على أفضل المستودعات باستخدام الذكاء الاصطناعي.سنبحث عن أفضل المستودعات المطابقة باستخدام الذكاء الاصطناعي.
  • projectdiscovery/naabuالصورة الرمزية لـ projectdiscovery

    projectdiscovery/naabu

    5,766عرض على GitHub↗

    Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet

    Feeds discovered cloud assets into scanning tools like httpx and nuclei for security assessment.

    Gocdn-exclusionhacktoberfestnmap
    عرض على GitHub↗5,766
  • cdk-team/cdkالصورة الرمزية لـ cdk-team

    cdk-team/CDK

    4,692عرض على GitHub↗

    CDK هي مجموعة أدوات متخصصة لتدقيق أمان الحاويات، واستغلال الهروب من الحاويات، واختبار اختراق البنية التحتية السحابية. توفر المجموعة مجموعة من النصوص البرمجية والأدوات المصممة لتحديد واستغلال الثغرات الأمنية في بيئات تشغيل الحاويات للهروب من البيئات المعزولة وتنفيذ الأوامر على نظام التشغيل المضيف الأساسي. يتميز المشروع بمجموعة استغلال وقت تشغيل Docker مخصصة لإساءة استخدام Docker API و procfs و cgroups للحصول على وصول غير مصرح به على مستوى المضيف. يتضمن المشروع تقنيات محددة لتجاوز العزل عبر LXCFS، واستغلال مساحة اسم المستخدم، وتركيب أقراص المضيف، بالإضافة إلى إمكانيات لاستخراج البيانات الوصفية السحابية وتدقيق أذونات حساب الخدمة لتصعيد الامتيازات في بيئات المجموعات (clusters). تغطي مجموعة الأدوات مجموعة واسعة من إمكانيات التدقيق الأمني، بما في ذلك تدقيق مجموعات Kubernetes لاستخراج الأسرار وتحليل السياسات، ومسح الملفات والخدمات الحساسة، واكتشاف مشاركة شبكة المضيف. كما توفر أدوات لإنشاء قذائف عكسية (reverse shells)، ونشر الحمولات في البيئات المقيدة، وتثبيت أدوات إدارة النظام داخل حاويات مصغرة.

    Container-focused penetration testing tool for cloud environments.

    Go
    عرض على GitHub↗4,692
  • sa7mon/s3scannerالصورة الرمزية لـ sa7mon

    sa7mon/S3Scanner

    2,997عرض على GitHub↗

    S3Scanner is a security tool for auditing public access and misconfigured permissions across S3-compatible storage providers. It functions as a storage auditor and security scanner designed to identify open buckets, enumerate publicly accessible objects, and exfiltrate data from misconfigured cloud environments. The project is distinguished by its integration with message brokers, allowing it to consume target lists for large-scale cloud infrastructure audits. It also provides utilities for dumping the entire contents of misconfigured buckets to local directories and calculating the total siz

    Finds and scans open AWS S3 buckets for sensitive data.

    Goawsbugbountygcp
    عرض على GitHub↗2,997
  • bishopfox/cloudfoxالصورة الرمزية لـ BishopFox

    BishopFox/cloudfox

    2,444عرض على GitHub↗

    Automating situational awareness for cloud penetration tests.

    Automated cloud infrastructure security assessment and enumeration.

    Go
    عرض على GitHub↗2,444
  • uzju/cloud-bucket-leak-detection-toolsالصورة الرمزية لـ UzJu

    UzJu/Cloud-Bucket-Leak-Detection-Tools

    1,258عرض على GitHub↗

    六大云存储,泄露利用检测工具

    Detection tool for identifying leaked cloud storage buckets.

    Python
    عرض على GitHub↗1,258
  • dark-kinga/cloudtoolsالصورة الرمزية لـ dark-kingA

    dark-kingA/cloudTools

    1,154عرض على GitHub↗

    云资产管理工具 目前工具定位是云安全相关工具,目前是两个模块 云存储工具、云服务工具, 云存储工具主要是针对oss存储、查看、删除、上传、下载、预览等等 云服务工具主要是针对rds、服务器的管理,查看、执行命令、接管等等

    Management and security utility for cloud storage and services.

    عرض على GitHub↗1,154
  • bishopfox/cloudfoxableالصورة الرمزية لـ BishopFox

    BishopFox/cloudfoxable

    457عرض على GitHub↗

    Create your own vulnerable by design AWS penetration testing playground

    Vulnerable cloud environment for practicing security assessment techniques.

    Python
    عرض على GitHub↗457
  • redskycyber/cloud-securityالصورة الرمزية لـ redskycyber

    redskycyber/Cloud-Security

    301عرض على GitHub↗

    This Repo serves as a collection of shared security and penetration testing resources for the cloud.

    Collection of resources for securing cloud-based infrastructure.

    عرض على GitHub↗301
  • rnalter/thundercloudR

    Rnalter/ThunderCloud

    0عرض على GitHub↗

    Vulnerability scanning tool for cloud environments.

    عرض على GitHub↗0
  • datadog/kubehoundD

    DataDog/KubeHound

    0عرض على GitHub↗

    Tool for mapping attack paths in Kubernetes clusters.

    عرض على GitHub↗0
  • neargle/my-re0-k8s-securityN

    neargle/my-re0-k8s-security

    0عرض على GitHub↗

    Educational resources for Kubernetes security and defense.

    عرض على GitHub↗0
  • 404tk/cloudtoolkit4

    404tk/cloudtoolkit

    0عرض على GitHub↗

    Toolkit for performing cloud-based penetration testing.

    عرض على GitHub↗0
  • teamssix/cfT

    teamssix/cf

    0عرض على GitHub↗

    Exploitation framework for post-compromise cloud operations.

    عرض على GitHub↗0
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Cloud Security Tools

استكشف الوسوم الفرعية

  • Asset Pipeline IntegrationsFeeds discovered cloud assets into scanning tools like httpx and nuclei for security assessment. **Distinct from Cloud Security Tools:** Distinct from Cloud Security Tools: focuses on piping discovered assets into downstream tools, not the tools themselves.