mxm0z / Awesome Sec S3
A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets
Stars: ✭ 76
Projects that are alternatives of or similar to Awesome Sec S3
Aws Data Replication Hub
Seamless User Interface for replicating data into AWS.
Stars: ✭ 40 (-47.37%)
Mutual labels: aws, s3
Scrapy S3pipeline
Scrapy pipeline to store chunked items into Amazon S3 or Google Cloud Storage bucket.
Stars: ✭ 57 (-25%)
Mutual labels: aws, s3
Simple S3 Setup
Code examples used in the post "How to Setup Amazon S3 in a Django Project"
Stars: ✭ 46 (-39.47%)
Mutual labels: aws, s3
Awslib scala
An idiomatic Scala wrapper around the AWS Java SDK
Stars: ✭ 20 (-73.68%)
Mutual labels: aws, s3
Workshop Donkeytracker
Workshop to build a serverless tracking application for your mobile device with an AWS backend
Stars: ✭ 27 (-64.47%)
Mutual labels: aws, s3
S3 Permission Checker
Check read, write permissions on S3 buckets in your account
Stars: ✭ 18 (-76.32%)
Mutual labels: aws, s3
Terraform Aws S3 Log Storage
This module creates an S3 bucket suitable for receiving logs from other AWS services such as S3, CloudFront, and CloudTrail
Stars: ✭ 65 (-14.47%)
Mutual labels: aws, s3
Locopy
locopy: Loading/Unloading to Redshift and Snowflake using Python.
Stars: ✭ 73 (-3.95%)
Mutual labels: aws, s3
Cloud Security Audit
A command line security audit tool for Amazon Web Services
Stars: ✭ 68 (-10.53%)
Mutual labels: aws, s3
S3 Deploy Website
Deploy website to S3/CloudFront from Python
Stars: ✭ 26 (-65.79%)
Mutual labels: aws, s3
Github To S3 Lambda Deployer
⚓️ GitHub webhook extension for uploading static pages to AWS S3 directly after commiting to master via Lambda written in Node.js
Stars: ✭ 23 (-69.74%)
Mutual labels: aws, s3
Aws Testing Library
Chai (https://chaijs.com) and Jest (https://jestjs.io/) assertions for testing services built with aws
Stars: ✭ 52 (-31.58%)
Mutual labels: aws, s3
Rome
Carthage cache for S3, Minio, Ceph, Google Storage, Artifactory and many others
Stars: ✭ 724 (+852.63%)
Mutual labels: aws, s3
Aws Toolkit Vscode
AWS Toolkit for Visual Studio Code, an extension for working with AWS services including AWS Lambda.
Stars: ✭ 823 (+982.89%)
Mutual labels: aws, s3
S3reverse
The format of various s3 buckets is convert in one format. for bugbounty and security testing.
Stars: ✭ 61 (-19.74%)
Mutual labels: aws, s3
Awesome AWS S3 - Security, Tools and Intel
Collection of tools, techniques and useful links concerning security and exposed AWS S3 Buckets
Tools
- Grayhat Warfare - A free tool that lists open s3 buckets and helps you search for interesting files
- Slurp - Evaluate the security of S3 buckets
- AWSBucketDump - AWSBucketDump is a tool to quickly enumerate AWS S3 buckets to look for loot
- S3Scanner - Scan for open AWS S3 buckets and dump the contents - By sa7mon
- s3enum - Fast Amazon S3 bucket enumeration tool for pentesters
- s3-buckets-finder - PHP tool to brute force Amazon S3 bucket - By gwen001
- s3-buckets-finder - PHP tool to brute force Amazon S3 bucket - By gold1029
- Sandcastle - a Python script for AWS S3 bucket enumeration, formerly known as bucketCrawler
- mubrute - The tool uses the response code returned by s3.amazonaws.com to determine if a bucket exists and its list permissions
- PyLazyS3 - Enumerate AWS S3 buckets using different permutations
- RoboBucketeer - Robot Framework Library for Buckteer - S3 Buckets & Subdomain Enumeration
- s3-inspector - Tool to check AWS S3 bucket permissions
- inSp3ctor - AWS S3 Bucket/Object Finder
- bucketkicker - A tool to quickly enumerate AWS S3 buckets verify whether or not they exist and to look for loot
- s3recon - Amazon S3 bucket finder and crawler
- s3finder - Can search using a wordlist or by monitoring the certstream network for domain names from certificate transparency logs
- kicks3 - S3 bucket finder from html,js and bucket misconfiguration testing tool
- bucket_finder - DigiNinja's bucket_finder utility - By mattweidner
- Bucket_Finder - Leaky Buckets - By hazana
- haka_toni_bucket_finder - Yet another S3 Bucket finder (No official description provided)
- s3-open-bucket-finder - Yet another S3 Bucket finder (No official description provided)
- s3scanner - Scan for open public S3 buckets - By miguelmota
- bucket-scraper - Command-line application for scraping, indexing and downloading of Amazon S3 buckets
- bucket-hunter - Amazon AWS Exposed Bucket Hunter - Security research
- bucket-stream - Find interesting Amazon S3 Buckets by watching certificate transparency logs
- goGetBucket - A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain
- bucket_finder - Trawl Amazon S3 buckets for interesting files
General Purpose Tools
- CloudScraper - CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space
- CloudStorageFinder - A collection of tools to find data that has been made public in cloud storage systems such as S3 Buckets and Digital Ocean Spaces
- exif-scraper - Grab photos from an S3 bucket and store their EXIF data in a database
- mlb-dfs-scrapers - Web scraping library for dumping MLB stats in S3 bucket csv files
Techniques
- enum_wayback - Metasploit module that pulls and parses the URLs stored by Archive.org for the purpose of replaying during a web assessment. Finding unlinked and old pages.
Articles
- List of AWS S3 Leaks
- How to search for Open Amazon s3 Buckets and their contents
- There's a Hole in 1,951 Amazon S3 Buckets
- Amazon S3 Bucket Public Access Considerations
- Analysing Amazon's Buckets
- Unsecured Public Information in Amazon S3 Buckets - Are Your Buckets Leaking Data?
- Exposed S3 bucket CloudTrail logs — Another way to compromise security
- Fantastic! Public S3 Buckets and How to Find Them
Videos
Note that the project description data, including the texts, logos, images, and/or trademarks,
for each open source project belongs to its rightful owner.
If you wish to add or remove any projects, please contact us at [email protected].