awesome-repositories.com
المدونة
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعحولكيفية ترتيب النتائجالصحافةخادم MCP
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
sa7mon avatar

sa7mon/S3Scanner

0
View on GitHub↗
2,997 نجوم·396 تفرعات·Go·mit·2 مشاهداتgithub.com/sa7mon/S3Scanner/discussions/135↗

S3Scanner

S3Scanner is a security tool for auditing public access and misconfigured permissions across S3-compatible storage providers. It functions as a storage auditor and security scanner designed to identify open buckets, enumerate publicly accessible objects, and exfiltrate data from misconfigured cloud environments.

The project is distinguished by its integration with message brokers, allowing it to consume target lists for large-scale cloud infrastructure audits. It also provides utilities for dumping the entire contents of misconfigured buckets to local directories and calculating the total size of exposed storage volumes.

The tool covers a broad surface of security operations, including cross-provider permission auditing, recursive object enumeration, and identifier validation. Results can be exported to relational databases for long-term tracking or streamed as machine-readable JSON for integration with other tools.

Features

  • Public Bucket Discovery - Identifies publicly accessible cloud storage buckets and evaluates their read permissions.
  • Cloud Storage Enumerators - Provides utility for listing objects and calculating total size of public cloud storage buckets.
  • Bucket File Listings - Retrieves recursive lists of files within buckets when public read permissions are active.
  • Cloud Object Enumerations - Retrieves full lists of stored files by iteratively calling storage APIs to calculate total exposed volume.
  • Cloud Object Enumerations - Lists files and calculates the total size of exposed objects within S3-compatible storage.
  • Bucket Sources - Implements recursive listing of files and directories within object storage buckets to identify exposed data.
  • S3-Compatible Security Auditing - Audits storage permissions and lists contents across various providers using a unified S3 API interface.
  • Cloud Storage Scanning - Performs security audits and permission checks against various cloud storage platforms and custom endpoints.
  • S3-Compatible Security Scanning - Audits public access and misconfigured permissions across various S3-compatible storage providers using a unified API interface.
  • Security Automation Workflows - Integrates storage audits into message queue workflows to automate large-scale permission checks.
  • Bucket Data Exfiltration - Provides the ability to dump entire contents of misconfigured buckets to local directories for analysis.
  • Cloud Data Leak Detection - Identifies publicly accessible buckets and downloads exposed files to assess security breach impact.
  • Cloud Storage Auditors - Checks for open buckets and permission leaks using the S3 API standard.
  • Cloud Storage Security Scanners - Audits public access, misconfigured permissions, and exposed data across S3-compatible storage.
  • Permission Auditing Tools - Provides utilities for analyzing and verifying access control policies on cloud storage buckets.
  • Queue-Driven Security Scanners - Consumes target lists from message brokers to perform large-scale cloud infrastructure audits.
  • Cloud Storage Volume Calculation - Calculates the total storage volume of exposed buckets by summing the sizes of all enumerated objects.
  • Message Queue Workers - Uses background workers to consume targets from message queues for distributed high-volume scanning.
  • Message Broker Consumers - Consumes target lists from message brokers to automate large-scale cloud infrastructure audits.
  • Data Exfiltration Tools - Dumps the entire contents of misconfigured storage buckets to local directories for analysis.
  • Reconnaissance - Scanning and dumping contents of open cloud storage buckets.
  • Reconnaissance Tools - Scanning and dumping contents of open cloud storage buckets.
  • Vulnerability Scanners - Scans for open AWS S3 buckets.
  • Cloud and Git Security - Scan for open and misconfigured S3 buckets.
  • Cloud Security - Scans and dumps open S3 buckets.
  • Cloud Security Tools - Finds and scans open AWS S3 buckets for sensitive data.
  • Cloud Storage Auditing - Scans for and dumps contents of open S3 buckets.
  • Storage Auditing - Scans for and dumps contents of open S3 buckets.

سجل النجوم

مخطط تاريخ النجوم لـ sa7mon/s3scannerمخطط تاريخ النجوم لـ sa7mon/s3scanner

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Start searching with AI

بدائل مفتوحة المصدر لـ S3Scanner

مشاريع مفتوحة المصدر مشابهة، مرتبة حسب عدد الميزات المشتركة مع S3Scanner.
  • rhinosecuritylabs/pacuالصورة الرمزية لـ RhinoSecurityLabs

    RhinoSecurityLabs/pacu

    5,234عرض على GitHub↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    عرض على GitHub↗5,234
  • zricethezav/gitleaksالصورة الرمزية لـ zricethezav

    zricethezav/gitleaks

    27,739عرض على GitHub↗

    Gitleaks is a static analysis security tool and secret detection engine designed to find hardcoded passwords, API keys, and authentication tokens. It functions as a Git secret scanner that analyzes both local file systems and Git commit history to prevent credential leaks. The tool distinguishes itself through a decoding pipeline that transforms base64 and hex strings into plaintext to find obfuscated secrets. It further reduces false positives using proximity-based validation and fingerprint-based suppression to filter out known or baseline findings. The system covers a broad range of detec

    Go
    عرض على GitHub↗27,739
  • jordanpotti/awsbucketdumpالصورة الرمزية لـ jordanpotti

    jordanpotti/AWSBucketDump

    1,463عرض على GitHub↗

    Security Tool to Look For Interesting Files in S3 Buckets

    Python
    عرض على GitHub↗1,463
  • six2dez/reconftwالصورة الرمزية لـ six2dez

    six2dez/reconftw

    7,226عرض على GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    عرض على GitHub↗7,226
عرض جميع البدائل الـ 30 لـ S3Scanner→

الأسئلة الشائعة

ما هي وظيفة sa7mon/s3scanner؟

S3Scanner is a security tool for auditing public access and misconfigured permissions across S3-compatible storage providers. It functions as a storage auditor and security scanner designed to identify open buckets, enumerate publicly accessible objects, and exfiltrate data from misconfigured cloud environments.

ما هي الميزات الرئيسية لـ sa7mon/s3scanner؟

الميزات الرئيسية لـ sa7mon/s3scanner هي: Public Bucket Discovery, Cloud Storage Enumerators, Bucket File Listings, Cloud Object Enumerations, Bucket Sources, S3-Compatible Security Auditing, Cloud Storage Scanning, S3-Compatible Security Scanning.

ما هي البدائل مفتوحة المصدر لـ sa7mon/s3scanner؟

تشمل البدائل مفتوحة المصدر لـ sa7mon/s3scanner: rhinosecuritylabs/pacu — Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments.… zricethezav/gitleaks — Gitleaks is a static analysis security tool and secret detection engine designed to find hardcoded passwords, API… jordanpotti/awsbucketdump — Security Tool to Look For Interesting Files in S3 Buckets. six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… trufflesecurity/trufflehog — Trufflehog is a security tool designed to continuously monitor code repositories and cloud environments to detect,… cr0hn/festin — FestIn - Open S3 Bucket Scanner.