All Projects → mxm0z → Awesome Sec S3

mxm0z / Awesome Sec S3

A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets

Projects that are alternatives of or similar to Awesome Sec S3

Aws Data Replication Hub
Seamless User Interface for replicating data into AWS.
Stars: ✭ 40 (-47.37%)
Mutual labels:  aws, s3
Scrapy S3pipeline
Scrapy pipeline to store chunked items into Amazon S3 or Google Cloud Storage bucket.
Stars: ✭ 57 (-25%)
Mutual labels:  aws, s3
Simple S3 Setup
Code examples used in the post "How to Setup Amazon S3 in a Django Project"
Stars: ✭ 46 (-39.47%)
Mutual labels:  aws, s3
Awslib scala
An idiomatic Scala wrapper around the AWS Java SDK
Stars: ✭ 20 (-73.68%)
Mutual labels:  aws, s3
S3 Blob Store
☁️ Amazon S3 blob-store
Stars: ✭ 66 (-13.16%)
Mutual labels:  aws, s3
Workshop Donkeytracker
Workshop to build a serverless tracking application for your mobile device with an AWS backend
Stars: ✭ 27 (-64.47%)
Mutual labels:  aws, s3
Aws Utilities
Docker images and scripts to deploy to AWS
Stars: ✭ 52 (-31.58%)
Mutual labels:  aws, s3
S3 Permission Checker
Check read, write permissions on S3 buckets in your account
Stars: ✭ 18 (-76.32%)
Mutual labels:  aws, s3
React Deploy S3
Deploy create react app's in AWS S3
Stars: ✭ 66 (-13.16%)
Mutual labels:  aws, s3
Terraform Aws S3 Log Storage
This module creates an S3 bucket suitable for receiving logs from other AWS services such as S3, CloudFront, and CloudTrail
Stars: ✭ 65 (-14.47%)
Mutual labels:  aws, s3
Locopy
locopy: Loading/Unloading to Redshift and Snowflake using Python.
Stars: ✭ 73 (-3.95%)
Mutual labels:  aws, s3
Cloud Security Audit
A command line security audit tool for Amazon Web Services
Stars: ✭ 68 (-10.53%)
Mutual labels:  aws, s3
S3 Deploy Website
Deploy website to S3/CloudFront from Python
Stars: ✭ 26 (-65.79%)
Mutual labels:  aws, s3
Aws S3 Scala
Scala client for Amazon S3
Stars: ✭ 35 (-53.95%)
Mutual labels:  aws, s3
Github To S3 Lambda Deployer
⚓️ GitHub webhook extension for uploading static pages to AWS S3 directly after commiting to master via Lambda written in Node.js
Stars: ✭ 23 (-69.74%)
Mutual labels:  aws, s3
Aws Testing Library
Chai (https://chaijs.com) and Jest (https://jestjs.io/) assertions for testing services built with aws
Stars: ✭ 52 (-31.58%)
Mutual labels:  aws, s3
Rome
Carthage cache for S3, Minio, Ceph, Google Storage, Artifactory and many others
Stars: ✭ 724 (+852.63%)
Mutual labels:  aws, s3
Aws Toolkit Vscode
AWS Toolkit for Visual Studio Code, an extension for working with AWS services including AWS Lambda.
Stars: ✭ 823 (+982.89%)
Mutual labels:  aws, s3
S3reverse
The format of various s3 buckets is convert in one format. for bugbounty and security testing.
Stars: ✭ 61 (-19.74%)
Mutual labels:  aws, s3
Aws
Swift wrapper around AWS API
Stars: ✭ 67 (-11.84%)
Mutual labels:  aws, s3

Awesome AWS S3 - Security, Tools and Intel

Collection of tools, techniques and useful links concerning security and exposed AWS S3 Buckets

Tools

  • Grayhat Warfare - A free tool that lists open s3 buckets and helps you search for interesting files
  • Slurp - Evaluate the security of S3 buckets
  • AWSBucketDump - AWSBucketDump is a tool to quickly enumerate AWS S3 buckets to look for loot
  • S3Scanner - Scan for open AWS S3 buckets and dump the contents - By sa7mon
  • s3enum - Fast Amazon S3 bucket enumeration tool for pentesters
  • s3-buckets-finder - PHP tool to brute force Amazon S3 bucket - By gwen001
  • s3-buckets-finder - PHP tool to brute force Amazon S3 bucket - By gold1029
  • Sandcastle - a Python script for AWS S3 bucket enumeration, formerly known as bucketCrawler
  • mubrute - The tool uses the response code returned by s3.amazonaws.com to determine if a bucket exists and its list permissions
  • PyLazyS3 - Enumerate AWS S3 buckets using different permutations
  • RoboBucketeer - Robot Framework Library for Buckteer - S3 Buckets & Subdomain Enumeration
  • s3-inspector - Tool to check AWS S3 bucket permissions
  • inSp3ctor - AWS S3 Bucket/Object Finder
  • bucketkicker - A tool to quickly enumerate AWS S3 buckets verify whether or not they exist and to look for loot
  • s3recon - Amazon S3 bucket finder and crawler
  • s3finder - Can search using a wordlist or by monitoring the certstream network for domain names from certificate transparency logs
  • kicks3 - S3 bucket finder from html,js and bucket misconfiguration testing tool
  • bucket_finder - DigiNinja's bucket_finder utility - By mattweidner
  • Bucket_Finder - Leaky Buckets - By hazana
  • haka_toni_bucket_finder - Yet another S3 Bucket finder (No official description provided)
  • s3-open-bucket-finder - Yet another S3 Bucket finder (No official description provided)
  • s3scanner - Scan for open public S3 buckets - By miguelmota
  • bucket-scraper - Command-line application for scraping, indexing and downloading of Amazon S3 buckets
  • bucket-hunter - Amazon AWS Exposed Bucket Hunter - Security research
  • bucket-stream - Find interesting Amazon S3 Buckets by watching certificate transparency logs
  • goGetBucket - A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain
  • bucket_finder - Trawl Amazon S3 buckets for interesting files

General Purpose Tools

  • CloudScraper - CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space
  • CloudStorageFinder - A collection of tools to find data that has been made public in cloud storage systems such as S3 Buckets and Digital Ocean Spaces
  • exif-scraper - Grab photos from an S3 bucket and store their EXIF data in a database
  • mlb-dfs-scrapers - Web scraping library for dumping MLB stats in S3 bucket csv files

Techniques

  • enum_wayback - Metasploit module that pulls and parses the URLs stored by Archive.org for the purpose of replaying during a web assessment. Finding unlinked and old pages.

Articles

Videos

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].