Loading...
Exposure & Vulnerability Management tools for Aws: the Exposure & Vulnerability Management options most relevant when Aws is the priority, compared side by side so you can shortlist faster. Filter by pricing or specialization. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
We cover 30 cybersecurity tools
Agentless cloud vulnerability management with unified context and prioritization
Network vulnerability scanning with human validation and risk-based scoring
Risk-based vulnerability mgmt for networks & cloud with threat intel scoring
AI agents investigate cloud vulnerabilities in context and automate remediation
Attack surface mgmt platform with vuln scanning and cloud security features
Assesses AWS accounts for subdomain hijacking via Route53/CloudFront
S3cario is an AWS S3 bucket security testing tool that validates permissions and identifies potential vulnerabilities through scenario simulation.
A security tool that performs whitebox evaluation of S3 object permissions to identify publicly accessible files and generate reports on potential exposure risks.
A tool for enumerating and analyzing Amazon S3 buckets associated with specific targets to identify potential security misconfigurations.
A security tool for discovering S3 bucket references in web content and testing buckets for misconfigurations.
A Chrome extension that automatically detects and lists Amazon S3 buckets while browsing websites.
A Python tool that tests multiple AWS S3 buckets for security misconfigurations including directory listing and upload permissions.
A storage exploration tool that provides unified access to view publicly accessible Amazon S3 buckets, Azure Blob storage, FTP servers, and HTTP directory listings.
A Ruby-based tool that enumerates all public IPv4 and IPv6 addresses associated with an AWS account across multiple services including EC2, CloudFront, ELB, RDS, and others.
A black-box reconnaissance tool that discovers cloud infrastructure, files, and applications across major cloud providers for security testing purposes.
Terrascan is a static code analyzer that scans Infrastructure as Code for security misconfigurations and compliance violations across multiple cloud platforms and container environments.
A CLI tool for bulk deletion and inspection of AWS resources to clean up testing accounts and prevent unnecessary charges.
CFRipper is a security analyzer for AWS CloudFormation templates that identifies vulnerabilities and misconfigurations before cloud deployment.
A command-line tool that discovers and catalogs all AWS resources across an account using botocore, outputting results in JSON format.
CloudFrunt identifies misconfigured Amazon CloudFront domains that are vulnerable to hijacking due to improper CNAME configuration.
A Python tool that uses AWS Cloud Control API to enumerate and catalog AWS resources across specified accounts and regions, outputting results in JSON format.
MetaHub is an open-source vulnerability management tool that provides impact-contextual analysis of security findings in AWS environments through automated contextualization, ownership identification, and prioritization scoring.
A distributed AWS security auditing tool that continuously enumerates and scans internet-facing AWS services to identify potentially misconfigured resources.
A command line tool that counts and inventories AWS resources across multiple regions, providing visibility into cloud infrastructure with efficient API querying.