FestIn is a tool for discovering open S3 Buckets starting from a domain. It performs a lot of tests and collects information from: DNS Web Pages (Crawler) S3 bucket itself (like S3 redirections) It uses various techniques for finding buckets: crawling, DNS crawling. Main features that make FestIn great: Various techniques for finding buckets: crawling, dns crawling FestIn is a tool for discovering open S3 Buckets starting from a domain. It performs a lot of tests and collects information from: DNS Web Pages (Crawler) S3 bucket itself (like S3 redirections) Main features that does FestIn great: Various techniques for finding buckets: crawling, dns crawling
FEATURES
ALTERNATIVES
A framework for creating and executing pynids-based decoders and detectors of APT tradecraft
A low-interaction honeypot for detecting and analyzing potential attacks on Android devices via ADB over TCP/IP
A Burp extension to detect alias traversal via NGINX misconfiguration at scale.
Identify unintended network access to AWS resources and ensure network security by analyzing network reachability conditions.
A network recon framework including tools for passive and active recon
Exploiting simple stack overflow vulnerabilities using return oriented programming (ROP) to defeat data execution prevention - DEP.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.