awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to mdsecactivebreach/o365-attack-toolkit

Open-source alternatives to O365 Attack Toolkit

30 open-source projects similar to mdsecactivebreach/o365-attack-toolkit, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best O365 Attack Toolkit alternative.

  • drk1wi/modlishkadrk1wi avatar

    drk1wi/Modlishka

    5,273View on GitHub↗

    Modlishka is a man-in-the-middle reverse proxy framework designed for automated phishing campaigns. It dynamically generates valid TLS certificates for target domains, aggregates traffic from multiple domains through a single proxy, and injects custom scripts into proxied responses. The framework operates transparently without requiring client-side certificate installation and relays two-factor authentication steps to capture secondary verification tokens. What sets Modlishka apart is its ability to automate the entire credential theft process. It logs all form submissions, headers, and cooki

    Goeducationalmitmpenetration-testing-tools
    View on GitHub↗5,273
  • kgretzky/evilginx2kgretzky avatar

    kgretzky/evilginx2

    14,627View on GitHub↗

    Evilginx2 is a man-in-the-middle phishing framework designed to proxy authentication traffic between a user and a target web service. By acting as a reverse proxy, the tool intercepts and relays web requests to capture credentials and session tokens in real time, enabling the bypass of multi-factor authentication mechanisms through session cookie hijacking. The platform distinguishes itself by integrating infrastructure orchestration with modular template-driven content injection. It automates the deployment of proxy servers, manages the lifecycle of encryption certificates, and applies conte

    Go
    View on GitHub↗14,627
  • v2-dev/awesome-social-engineeringv2-dev avatar

    v2-dev/awesome-social-engineering

    4,029View on GitHub↗

    This project is a curated collection of frameworks, libraries, and toolsets designed for social engineering and public data gathering. It aggregates specialized software and educational materials used to perform human-centric attacks during professional security engagements. The directory provides resources for gathering and visualizing open source intelligence to identify sensitive information leaks. It also includes a collection of methods and software for executing phishing campaigns to harvest credentials and session cookies. The repository further covers educational materials focused on

    View on GitHub↗4,029

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • aliyun/aliyun-cliA

    aliyun/aliyun-cli

    0View on GitHub↗
    View on GitHub↗0
  • andresriancho/enumerate-iamandresriancho avatar

    andresriancho/enumerate-iam

    1,242View on GitHub↗

    Enumerate the permissions associated with AWS credential set

    Python
    View on GitHub↗1,242
  • andresriancho/nimbostratusandresriancho avatar

    andresriancho/nimbostratus

    509View on GitHub↗

    Tools for fingerprinting and exploiting Amazon cloud infrastructures

    Python
    View on GitHub↗509
  • alteredsecurity/365-stealerA

    AlteredSecurity/365-Stealer

    0View on GitHub↗
    View on GitHub↗0
  • aquasecurity/kube-hunteraquasecurity avatar

    aquasecurity/kube-hunter

    5,064View on GitHub↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    View on GitHub↗5,064
  • aws-cloudformation/cloudformation-guardaws-cloudformation avatar

    aws-cloudformation/cloudformation-guard

    1,384View on GitHub↗

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    Rust
    View on GitHub↗1,384
  • awslabs/aws-security-benchmarkawslabs avatar

    awslabs/aws-security-benchmark

    620View on GitHub↗

    Open source demos, concept and guidance related to the AWS CIS Foundation framework.

    Python
    View on GitHub↗620
  • azure/stormspotterAzure avatar

    Azure/Stormspotter

    1,706View on GitHub↗

    Stormspotter creates an “attack graph” of the resources in an Azure subscription. It enables red teams and pentesters to visualize the attack surface and pivot opportunities within a tenant, and supercharges your defenders to quickly orient and prioritize incident response work.

    Python
    View on GitHub↗1,706
  • azuread/azure-ad-incident-response-powershell-moduleA

    AzureAD/Azure-AD-Incident-Response-PowerShell-Module

    0View on GitHub↗
    View on GitHub↗0
  • bishopfox/iam-vulnerableBishopFox avatar

    BishopFox/iam-vulnerable

    574View on GitHub↗

    Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

    HCL
    View on GitHub↗574
  • bishopfox/smogcloudB

    BishopFox/smogcloud

    0View on GitHub↗
    View on GitHub↗0
  • bizken/phishmailerBiZken avatar

    BiZken/PhishMailer

    1,368View on GitHub↗
    Pythonhackingphishingphishing-attacks
    View on GitHub↗1,368
  • bitsadmin/fakelogonscreenbitsadmin avatar

    bitsadmin/fakelogonscreen

    1,375View on GitHub↗

    Fake Windows logon screen to steal passwords

    C#cobaltstrikefakelogon
    View on GitHub↗1,375
  • bloodhoundad/azurehoundB

    BloodHoundAD/AzureHound

    0View on GitHub↗
    View on GitHub↗0
  • boxug/trapeB

    boxug/trape

    0View on GitHub↗
    View on GitHub↗0
  • bridgecrewio/cdkgoatbridgecrewio avatar

    bridgecrewio/cdkgoat

    48View on GitHub↗

    CdkGoat is Bridgecrew's "Vulnerable by Design" AWS CDK repository. CdkGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.

    Python
    View on GitHub↗48
  • bridgecrewio/cfngoatbridgecrewio avatar

    bridgecrewio/cfngoat

    97View on GitHub↗

    Cfngoat is Bridgecrew's "Vulnerable by Design" Cloudformation repository. Cfngoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.

    View on GitHub↗97
  • carlospolop/purplepandaC

    carlospolop/PurplePanda

    0View on GitHub↗
    View on GitHub↗0
  • carnal0wnage/weirdaalcarnal0wnage avatar

    carnal0wnage/weirdAAL

    844View on GitHub↗

    WeirdAAL (AWS Attack Library)

    Python
    View on GitHub↗844
  • cdk-team/cdkcdk-team avatar

    cdk-team/CDK

    4,692View on GitHub↗

    CDK is a specialized toolset for container security auditing, container escape exploitation, and cloud infrastructure pentesting. It provides a collection of scripts and tools designed to identify and exploit vulnerabilities in container runtimes to break out of isolated environments and execute commands on the underlying host operating system. The project features a dedicated Docker runtime exploit suite for abusing the Docker API, procfs, and cgroups to gain unauthorized host-level access. It includes specific techniques for bypassing isolation via LXCFS, user namespace exploitation, and ho

    Go
    View on GitHub↗4,692
  • certsocietegenerale/swordphish-awarenessC

    certsocietegenerale/swordphish-awareness

    0View on GitHub↗
    View on GitHub↗0
  • chaitin/veinmind-toolschaitin avatar

    chaitin/veinmind-tools

    1,649View on GitHub↗

    问脉已接入 openai, 可以使用 openai 对扫描的结果进行人性化分析,让您更加清晰的了解本次扫描发现了哪些风险。

    Go
    View on GitHub↗1,649
  • cisagov/sparrowcisagov avatar

    cisagov/Sparrow

    1,430View on GitHub↗

    Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.

    PowerShell
    View on GitHub↗1,430
  • cisagov/untitledgoosetoolcisagov avatar

    cisagov/untitledgoosetool

    956View on GitHub↗

    Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azure Active Directory (AzureAD), Azure, and M365 environments.

    Python
    View on GitHub↗956
  • cloud-sniper/cloud-sniperC

    cloud-sniper/cloud-sniper

    0View on GitHub↗
    View on GitHub↗0
  • cloudexplorer-dev/cloudexplorer-liteC

    CloudExplorer-Dev/CloudExplorer-Lite

    0View on GitHub↗
    View on GitHub↗0
  • aquasecurity/kube-benchaquasecurity avatar

    aquasecurity/kube-bench

    8,078View on GitHub↗

    kube-bench is a Kubernetes security benchmark scanner and configuration auditor. It verifies if a cluster adheres to the Center for Internet Security standards and other hardening guides to identify security misconfigurations and vulnerabilities. The tool operates as a containerized security scanner, utilizing host namespaces to analyze nodes and control plane components without requiring the installation of binaries directly on the host. It supports multiple Kubernetes distributions, applying environment-specific benchmarks to ensure auditing accuracy for managed services. The project cover

    Go
    View on GitHub↗8,078