awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to andresriancho/enumerate-iam

Open-source alternatives to Enumerate Iam

30 open-source projects similar to andresriancho/enumerate-iam, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Enumerate Iam alternative.

  • rhinosecuritylabs/pacuAvatar von RhinoSecurityLabs

    RhinoSecurityLabs/pacu

    5,234Auf GitHub ansehen↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    Auf GitHub ansehen↗5,234
  • toniblyx/prowlerAvatar von toniblyx

    toniblyx/prowler

    14,005Auf GitHub ansehen↗

    Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance assessments across multiple cloud environments to identify misconfigurations and vulnerabilities. The project provides a multi-cloud security analysis engine that operates as an automated auditor, evaluating infrastructure against industry-standard regulatory frameworks and security benchmarks. It features a cloud security visualization dashboard that uses a graph database to map cloud inventory and visualize potential attack paths. Capabilities include automated cloud infrast

    Python
    Auf GitHub ansehen↗14,005
  • mindpointgroup/cloudfruntAvatar von MindPointGroup

    MindPointGroup/cloudfrunt

    363Auf GitHub ansehen↗

    A tool for identifying misconfigured CloudFront domains

    Python
    Auf GitHub ansehen↗363
  • nccgroup/scoutsuiteAvatar von nccgroup

    nccgroup/ScoutSuite

    7,548Auf GitHub ansehen↗

    ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and misconfigurations across cloud environments. It functions as a security posture manager and compliance auditor, gathering resource metadata from cloud APIs to evaluate infrastructure against security benchmarks. The tool provides auditing capabilities for AWS, Google Cloud, DigitalOcean, and Kubernetes clusters and control planes. It distinguishes itself by decoupling data collection from analysis, allowing users to cache cloud configurations locally for offline auditing and iterative rul

    Pythonauditingawsazure
    Auf GitHub ansehen↗7,548

KI-Suche

Entdecke weitere awesome Repositories

Beschreibe in einfachen Worten, was du brauchst — die KI bewertet tausende kuratierte Open-Source-Projekte nach Relevanz.

Find more with AI search
  • eth0izzle/bucket-streamAvatar von eth0izzle

    eth0izzle/bucket-stream

    1,809Auf GitHub ansehen↗

    Find interesting Amazon S3 Buckets by watching certificate transparency logs.

    Python
    Auf GitHub ansehen↗1,809
  • 0xsha/cloudbruteAvatar von 0xsha

    0xsha/cloudbrute

    1,137Auf GitHub ansehen↗

    Awesome cloud enumerator

    Go
    Auf GitHub ansehen↗1,137
  • carnal0wnage/weirdaalAvatar von carnal0wnage

    carnal0wnage/weirdAAL

    844Auf GitHub ansehen↗

    WeirdAAL (AWS Attack Library)

    Python
    Auf GitHub ansehen↗844
  • cloudsploit/scansAvatar von cloudsploit

    cloudsploit/scans

    3,748Auf GitHub ansehen↗

    This project is a multi-cloud security auditor and configuration audit tool designed to identify misconfigurations and vulnerabilities across various cloud service provider environments. It functions as a cloud security posture management tool and a vulnerability remediation engine, allowing users to scan resources against security best practices and industry compliance standards. The system distinguishes itself by combining detection with a remediation engine that executes corrective actions to fix discovered security gaps. It employs a plugin-based audit engine and a provider-agnostic abstr

    JavaScript
    Auf GitHub ansehen↗3,748
  • andresriancho/nimbostratusAvatar von andresriancho

    andresriancho/nimbostratus

    509Auf GitHub ansehen↗

    Tools for fingerprinting and exploiting Amazon cloud infrastructures

    Python
    Auf GitHub ansehen↗509
  • salesforce/cloudsplainingAvatar von salesforce

    salesforce/cloudsplaining

    2,226Auf GitHub ansehen↗

    Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

    JavaScript
    Auf GitHub ansehen↗2,226
  • prevade/cloudjackAvatar von prevade

    prevade/cloudjack

    86Auf GitHub ansehen↗

    Route53/CloudFront Vulnerability Assessment Utility

    Python
    Auf GitHub ansehen↗86
  • v2-dev/awesome-social-engineeringAvatar von v2-dev

    v2-dev/awesome-social-engineering

    4,029Auf GitHub ansehen↗

    This project is a curated collection of frameworks, libraries, and toolsets designed for social engineering and public data gathering. It aggregates specialized software and educational materials used to perform human-centric attacks during professional security engagements. The directory provides resources for gathering and visualizing open source intelligence to identify sensitive information leaks. It also includes a collection of methods and software for executing phishing campaigns to harvest credentials and session cookies. The repository further covers educational materials focused on

    Auf GitHub ansehen↗4,029
  • skerkour/black-hat-rustAvatar von skerkour

    skerkour/black-hat-rust

    4,353Auf GitHub ansehen↗

    This project is an offensive security toolkit and development framework for creating memory-safe malware, network scanners, and payload generators. It provides a structured approach to developing exploits, shellcode, and remote access tools. The framework distinguishes itself through the use of no-standard-library environments to generate minimal standalone machine code and shellcode. It also supports the compilation of high-performance logic into WebAssembly for the creation of deceptive web interfaces used in social engineering. Capability areas cover automated vulnerability discovery via

    Rustauditbeaconbug-bounty
    Auf GitHub ansehen↗4,353
  • mxrch/ghuntAvatar von mxrch

    mxrch/GHunt

    19,089Auf GitHub ansehen↗

    GHunt is a Google account investigator and open-source intelligence framework designed to retrieve publicly available information and metadata associated with Google accounts. It functions as an OSINT data extractor and offensive security framework used to identify user identities and uncover hidden metadata. The tool extracts public profile data from various Google services and exports the findings into structured JSON formats. This allows for the collection and analysis of digital footprints to support security research and reconnaissance.

    Python
    Auf GitHub ansehen↗19,089
  • mandiant/commando-vmAvatar von mandiant

    mandiant/commando-vm

    7,667Auf GitHub ansehen↗

    Commando VM is a Windows-based penetration testing distribution and offensive security virtual machine. It serves as a toolset manager for deploying and maintaining a curated collection of security tools, scripts, and configurations designed for security auditing, red teaming, and adversary simulation. The project automates the provisioning of a specialized workstation by using PowerShell scripts and a modular repository to orchestrate the installation of offensive security software. It utilizes a community-driven package manager to handle dependency resolution and binary installations, ensur

    PowerShellfireeye-flarepenetration-testingred-teaming
    Auf GitHub ansehen↗7,667
  • cloudflare/flanAvatar von cloudflare

    cloudflare/flan

    4,162Auf GitHub ansehen↗

    Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations. The system is designed to run within isolated container environments, utilizing configuration maps to manage target lists and secrets. It includes a dedicated mechanism for archiving scan output files and security analysis data to remote S3 buckets for long-term storage. The tool generates formatted vulnerability summaries and security reports in multiple document formats for technical analysis. I

    Python
    Auf GitHub ansehen↗4,162
  • samratashok/nishangAvatar von samratashok

    samratashok/nishang

    9,951Auf GitHub ansehen↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Auf GitHub ansehen↗9,951
  • am0nsec/wspeA

    am0nsec/wspe

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • aliyun/oss-browserAvatar von aliyun

    aliyun/oss-browser

    3,585Auf GitHub ansehen↗

    OSS Browser 提供类似windows资源管理器功能。用户可以很方便的浏览文件,上传下载文件,支持断点续传等。

    JavaScript
    Auf GitHub ansehen↗3,585
  • 3gstudent/from-system-authority-to-medium-authority3

    3gstudent/From-System-authority-to-Medium-authority

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • aliyun/aliyun-cliA

    aliyun/aliyun-cli

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • ascotbe/virusA

    Ascotbe/virus

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • aquasecurity/trivyAvatar von aquasecurity

    aquasecurity/trivy

    36,462Auf GitHub ansehen↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Auf GitHub ansehen↗36,462
  • alfresco/prowlerAvatar von Alfresco

    Alfresco/prowler

    14,005Auf GitHub ansehen↗

    Prowler is a multi-cloud security posture management platform and vulnerability scanner. It provides tools for automating security audits, evaluating cloud infrastructure against regulatory compliance frameworks, and managing security assessments through a dedicated analysis dashboard. The project distinguishes itself by providing an AI-driven security context server that feeds structured data to AI assistants for automated risk analysis. It also employs graph-based attack path mapping to visualize potential lateral movement and exploitation routes across cloud inventories. The platform cove

    Python
    Auf GitHub ansehen↗14,005
  • aws-cloudformation/cloudformation-guardAvatar von aws-cloudformation

    aws-cloudformation/cloudformation-guard

    1,384Auf GitHub ansehen↗

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    Rust
    Auf GitHub ansehen↗1,384
  • awslabs/aws-security-benchmarkAvatar von awslabs

    awslabs/aws-security-benchmark

    620Auf GitHub ansehen↗

    Open source demos, concept and guidance related to the AWS CIS Foundation framework.

    Python
    Auf GitHub ansehen↗620
  • azagarampur/byeintegrity-uacA

    AzAgarampur/byeintegrity-uac

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • azagarampur/byeintegrity5-uacA

    AzAgarampur/byeintegrity5-uac

    0Auf GitHub ansehen↗
    Auf GitHub ansehen↗0
  • azure/stormspotterAvatar von Azure

    Azure/Stormspotter

    1,706Auf GitHub ansehen↗

    Stormspotter creates an “attack graph” of the resources in an Azure subscription. It enables red teams and pentesters to visualize the attack surface and pivot opportunities within a tenant, and supercharges your defenders to quickly orient and prioritize incident response work.

    Python
    Auf GitHub ansehen↗1,706
  • 1remote/1remoteAvatar von 1Remote

    1Remote/1Remote

    5,953Auf GitHub ansehen↗

    1Remote is a portable remote desktop client that manages and launches remote sessions across multiple protocols from a single unified interface. It organizes servers using a flexible tagging system and stores all configuration in structured JSON files for easy backup and transfer between machines. The application supports launching RDP, SSH, VNC, Telnet, and other remote connections, and allows users to replace default protocol handlers with custom external programs that accept command-line arguments. It includes a bulk server editor for applying uniform changes to addresses, credentials, or

    C#rdpremote-controlremote-desktop
    Auf GitHub ansehen↗5,953