awesome-repositories.com
Blog
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

Entornos cloud vulnerables intencionalmente

Clasificación actualizada el 30 jun 2026

For entorno en la nube intencionalmente vulnerable para prácticas, the strongest matches are orange-cyberdefense/goad (GOAD deploys intentionally vulnerable Windows networks for Active Directory), splunk/attack_range (Attack Range is a cybersecurity breach simulation framework that) and rhinosecuritylabs/cloudgoat (CloudGoat is a purpose-built tool for deploying intentionally vulnerable). Each is ranked by relevance to your query, popularity and recent activity.

Descubre plataformas en la nube de código abierto diseñadas para practicar pruebas de penetración e identificar configuraciones de seguridad erróneas comunes.

Entornos cloud vulnerables intencionalmente

Encuentra los mejores repositorios con IA.Buscaremos los repositorios que mejor coincidan usando IA.
  • orange-cyberdefense/goadAvatar de Orange-Cyberdefense

    Orange-Cyberdefense/GOAD

    7,464Ver en GitHub↗

    GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of vulnerable Windows virtual machines. It serves as a security training environment for practicing Active Directory penetration testing, privilege escalation, and lateral movement across various cloud platforms and local virtualization hypervisors. The project distinguishes itself through a multi-provider infrastructure model and a system of infrastructure recipes that simulate intentional security misconfigurations. It supports the deployment of varied attack scenarios, including

    GOAD deploys intentionally vulnerable Windows networks for Active Directory penetration testing across multiple cloud platforms and hypervisors, providing automated provisioning and realistic AD attack scenarios, though it focuses on AD rather than broader cloud services like web, IAM, or multi-cloud services beyond IaaS.

    PowerShellTargeted Attack ScenariosMulti-Cloud Orchestrators
    Ver en GitHub↗7,464
  • splunk/attack_rangeAvatar de splunk

    splunk/attack_range

    2,507Ver en GitHub↗

    Attack Range is a cybersecurity breach simulation framework designed to orchestrate the lifecycle of security labs and execute controlled attack scenarios. It functions as a security simulation infrastructure orchestrator, enabling the deployment of instrumented cloud and local environments to validate defensive capabilities and generate security telemetry. The platform distinguishes itself through configuration-driven automation and infrastructure-as-code orchestration, which allow for the repeatable provisioning of vulnerable environments. It manages the entire simulation lifecycle, from th

    Attack Range is a cybersecurity breach simulation framework that provisions vulnerable cloud and local environments for practicing attack and detection scenarios, squarely fitting the cloud security lab category, though it lacks explicit multi-cloud support and guided walkthroughs, making it a narrower match for hands-on cloud hacking practice.

    PythonInfrastructure as Code
    Ver en GitHub↗2,507
  • rhinosecuritylabs/cloudgoatAvatar de RhinoSecurityLabs

    RhinoSecurityLabs/cloudgoat

    3,639Ver en GitHub↗

    CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

    CloudGoat is a purpose-built tool for deploying intentionally vulnerable AWS environments, making it a solid cloud security lab for AWS practice, though it does not extend to Azure or GCP as needed for full multi-cloud coverage.

    PythonCloud SecuritySecurity Training LabsVulnerable Environments
    Ver en GitHub↗3,639

Related searches

  • aplicación web vulnerable para entrenamiento en seguridad
  • plataforma para practicar desafíos de ciberseguridad CTF
  • escáner de seguridad automatizado para aplicaciones web
  • ruta para convertirse en ingeniero cloud
  • plataforma de gestión de vulnerabilidades
  • ruta de aprendizaje en ingeniería de seguridad
  • framework de pruebas de penetración open source
  • herramienta de auditoría de seguridad automatizada para AWS