awesome-repositories.com
Blog
MCP
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetServeur MCPÀ proposNotre méthodologiePresse
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to andresriancho/enumerate-iam

Open-source alternatives to Enumerate Iam

30 open-source projects similar to andresriancho/enumerate-iam, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Enumerate Iam alternative.

  • rhinosecuritylabs/pacuAvatar de RhinoSecurityLabs

    RhinoSecurityLabs/pacu

    5,234Voir sur GitHub↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    Voir sur GitHub↗5,234
  • toniblyx/prowlerAvatar de toniblyx

    toniblyx/prowler

    14,005Voir sur GitHub↗

    Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance assessments across multiple cloud environments to identify misconfigurations and vulnerabilities. The project provides a multi-cloud security analysis engine that operates as an automated auditor, evaluating infrastructure against industry-standard regulatory frameworks and security benchmarks. It features a cloud security visualization dashboard that uses a graph database to map cloud inventory and visualize potential attack paths. Capabilities include automated cloud infrast

    Python
    Voir sur GitHub↗14,005
  • mindpointgroup/cloudfruntAvatar de MindPointGroup

    MindPointGroup/cloudfrunt

    363Voir sur GitHub↗

    A tool for identifying misconfigured CloudFront domains

    Python
    Voir sur GitHub↗363
  • nccgroup/scoutsuiteAvatar de nccgroup

    nccgroup/ScoutSuite

    7,548Voir sur GitHub↗

    ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and misconfigurations across cloud environments. It functions as a security posture manager and compliance auditor, gathering resource metadata from cloud APIs to evaluate infrastructure against security benchmarks. The tool provides auditing capabilities for AWS, Google Cloud, DigitalOcean, and Kubernetes clusters and control planes. It distinguishes itself by decoupling data collection from analysis, allowing users to cache cloud configurations locally for offline auditing and iterative rul

    Pythonauditingawsazure
    Voir sur GitHub↗7,548

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Find more with AI search
  • eth0izzle/bucket-streamAvatar de eth0izzle

    eth0izzle/bucket-stream

    1,809Voir sur GitHub↗

    Find interesting Amazon S3 Buckets by watching certificate transparency logs.

    Python
    Voir sur GitHub↗1,809
  • 0xsha/cloudbruteAvatar de 0xsha

    0xsha/cloudbrute

    1,137Voir sur GitHub↗

    Awesome cloud enumerator

    Go
    Voir sur GitHub↗1,137
  • carnal0wnage/weirdaalAvatar de carnal0wnage

    carnal0wnage/weirdAAL

    844Voir sur GitHub↗

    WeirdAAL (AWS Attack Library)

    Python
    Voir sur GitHub↗844
  • cloudsploit/scansAvatar de cloudsploit

    cloudsploit/scans

    3,748Voir sur GitHub↗

    This project is a multi-cloud security auditor and configuration audit tool designed to identify misconfigurations and vulnerabilities across various cloud service provider environments. It functions as a cloud security posture management tool and a vulnerability remediation engine, allowing users to scan resources against security best practices and industry compliance standards. The system distinguishes itself by combining detection with a remediation engine that executes corrective actions to fix discovered security gaps. It employs a plugin-based audit engine and a provider-agnostic abstr

    JavaScript
    Voir sur GitHub↗3,748
  • andresriancho/nimbostratusAvatar de andresriancho

    andresriancho/nimbostratus

    509Voir sur GitHub↗

    Tools for fingerprinting and exploiting Amazon cloud infrastructures

    Python
    Voir sur GitHub↗509
  • salesforce/cloudsplainingAvatar de salesforce

    salesforce/cloudsplaining

    2,226Voir sur GitHub↗

    Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

    JavaScript
    Voir sur GitHub↗2,226
  • prevade/cloudjackAvatar de prevade

    prevade/cloudjack

    86Voir sur GitHub↗

    Route53/CloudFront Vulnerability Assessment Utility

    Python
    Voir sur GitHub↗86
  • v2-dev/awesome-social-engineeringAvatar de v2-dev

    v2-dev/awesome-social-engineering

    4,029Voir sur GitHub↗

    This project is a curated collection of frameworks, libraries, and toolsets designed for social engineering and public data gathering. It aggregates specialized software and educational materials used to perform human-centric attacks during professional security engagements. The directory provides resources for gathering and visualizing open source intelligence to identify sensitive information leaks. It also includes a collection of methods and software for executing phishing campaigns to harvest credentials and session cookies. The repository further covers educational materials focused on

    Voir sur GitHub↗4,029
  • skerkour/black-hat-rustAvatar de skerkour

    skerkour/black-hat-rust

    4,353Voir sur GitHub↗

    This project is an offensive security toolkit and development framework for creating memory-safe malware, network scanners, and payload generators. It provides a structured approach to developing exploits, shellcode, and remote access tools. The framework distinguishes itself through the use of no-standard-library environments to generate minimal standalone machine code and shellcode. It also supports the compilation of high-performance logic into WebAssembly for the creation of deceptive web interfaces used in social engineering. Capability areas cover automated vulnerability discovery via

    Rustauditbeaconbug-bounty
    Voir sur GitHub↗4,353
  • mxrch/ghuntAvatar de mxrch

    mxrch/GHunt

    19,089Voir sur GitHub↗

    GHunt is a Google account investigator and open-source intelligence framework designed to retrieve publicly available information and metadata associated with Google accounts. It functions as an OSINT data extractor and offensive security framework used to identify user identities and uncover hidden metadata. The tool extracts public profile data from various Google services and exports the findings into structured JSON formats. This allows for the collection and analysis of digital footprints to support security research and reconnaissance.

    Python
    Voir sur GitHub↗19,089
  • mandiant/commando-vmAvatar de mandiant

    mandiant/commando-vm

    7,667Voir sur GitHub↗

    Commando VM is a Windows-based penetration testing distribution and offensive security virtual machine. It serves as a toolset manager for deploying and maintaining a curated collection of security tools, scripts, and configurations designed for security auditing, red teaming, and adversary simulation. The project automates the provisioning of a specialized workstation by using PowerShell scripts and a modular repository to orchestrate the installation of offensive security software. It utilizes a community-driven package manager to handle dependency resolution and binary installations, ensur

    PowerShellfireeye-flarepenetration-testingred-teaming
    Voir sur GitHub↗7,667
  • cloudflare/flanAvatar de cloudflare

    cloudflare/flan

    4,162Voir sur GitHub↗

    Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations. The system is designed to run within isolated container environments, utilizing configuration maps to manage target lists and secrets. It includes a dedicated mechanism for archiving scan output files and security analysis data to remote S3 buckets for long-term storage. The tool generates formatted vulnerability summaries and security reports in multiple document formats for technical analysis. I

    Python
    Voir sur GitHub↗4,162
  • samratashok/nishangAvatar de samratashok

    samratashok/nishang

    9,951Voir sur GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    Voir sur GitHub↗9,951
  • am0nsec/wspeA

    am0nsec/wspe

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • aliyun/oss-browserAvatar de aliyun

    aliyun/oss-browser

    3,585Voir sur GitHub↗

    OSS Browser 提供类似windows资源管理器功能。用户可以很方便的浏览文件,上传下载文件,支持断点续传等。

    JavaScript
    Voir sur GitHub↗3,585
  • 3gstudent/from-system-authority-to-medium-authority3

    3gstudent/From-System-authority-to-Medium-authority

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • aliyun/aliyun-cliA

    aliyun/aliyun-cli

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • ascotbe/virusA

    Ascotbe/virus

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • aquasecurity/trivyAvatar de aquasecurity

    aquasecurity/trivy

    36,462Voir sur GitHub↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    Voir sur GitHub↗36,462
  • alfresco/prowlerAvatar de Alfresco

    Alfresco/prowler

    14,005Voir sur GitHub↗

    Prowler is a multi-cloud security posture management platform and vulnerability scanner. It provides tools for automating security audits, evaluating cloud infrastructure against regulatory compliance frameworks, and managing security assessments through a dedicated analysis dashboard. The project distinguishes itself by providing an AI-driven security context server that feeds structured data to AI assistants for automated risk analysis. It also employs graph-based attack path mapping to visualize potential lateral movement and exploitation routes across cloud inventories. The platform cove

    Python
    Voir sur GitHub↗14,005
  • aws-cloudformation/cloudformation-guardAvatar de aws-cloudformation

    aws-cloudformation/cloudformation-guard

    1,384Voir sur GitHub↗

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    Rust
    Voir sur GitHub↗1,384
  • awslabs/aws-security-benchmarkAvatar de awslabs

    awslabs/aws-security-benchmark

    620Voir sur GitHub↗

    Open source demos, concept and guidance related to the AWS CIS Foundation framework.

    Python
    Voir sur GitHub↗620
  • azagarampur/byeintegrity-uacA

    AzAgarampur/byeintegrity-uac

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • azagarampur/byeintegrity5-uacA

    AzAgarampur/byeintegrity5-uac

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • azure/stormspotterAvatar de Azure

    Azure/Stormspotter

    1,706Voir sur GitHub↗

    Stormspotter creates an “attack graph” of the resources in an Azure subscription. It enables red teams and pentesters to visualize the attack surface and pivot opportunities within a tenant, and supercharges your defenders to quickly orient and prioritize incident response work.

    Python
    Voir sur GitHub↗1,706
  • 1remote/1remoteAvatar de 1Remote

    1Remote/1Remote

    5,953Voir sur GitHub↗

    1Remote is a portable remote desktop client that manages and launches remote sessions across multiple protocols from a single unified interface. It organizes servers using a flexible tagging system and stores all configuration in structured JSON files for easy backup and transfer between machines. The application supports launching RDP, SSH, VNC, Telnet, and other remote connections, and allows users to replace default protocol handlers with custom external programs that accept command-line arguments. It includes a bulk server editor for applying uniform changes to addresses, credentials, or

    C#rdpremote-controlremote-desktop
    Voir sur GitHub↗5,953