botocore
cloudgoat
botocore | cloudgoat | |
---|---|---|
19 | 10 | |
1,418 | 2,752 | |
1.1% | 1.3% | |
9.9 | 6.7 | |
4 days ago | 4 days ago | |
Python | Python | |
Apache License 2.0 | BSD 3-clause "New" or "Revised" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
botocore
-
Demystifying AWS Partitions
With some searching, you can sometimes get an idea of what’s to come in the future. AWS’s SDKs are intended to be used with all AWS partitions, supporting all the partitions and regions. By examining the Python SDK (boto) code , we can infer that two more partitions may be in progress.
- AWS Endpoints
- Type Hinting with Boto3
- Has anybody tried implementing a contract repository for API contracts amongst microservices?
- microservices in git
- [Blog] - Architecture Decision Records
- Taking over internal tools built by ppl who quit (DevOps/SRE)?
- Mergulhos profundos ou investigando sistemas
-
No more bloat! I'm automatically publishing botocore-a-la-carte
More correctly would likely be https://github.com/boto/botocore/issues/1543
-
Generating an AWS SDK for a new language (Scala)
Pretty much all of the SDKs refer to a standard set of JSON files that define the APIs, in a much older internal format ("C2J") than anything like Smithy or OpenAPI. You can find these in most SDK repos today, e.g. boto3: https://github.com/boto/botocore/blob/develop/botocore/data/kms/2014-11-01/service-2.json
cloudgoat
-
CloudGoat
You can check out the documentation of the scenarios, they list the created AWS resources. The ones I checked looked either free or cheap to me. No guarantee of course and usage can also generate cost.
https://github.com/RhinoSecurityLabs/cloudgoat/blob/master/scenarios/vulnerable_lambda/README.md
-
Launch HN: Corgea (YC S23) – Auto fix vulnerable code
https://github.com/RhinoSecurityLabs/cloudgoat/blob/8ed1cf0e...
Is there something I'm missing?
-
The TISC 2022 Writeup
I tried viewing the other lambda function first, since it's a privilege with the lambda_agent role. I referred to here to help with the code.
- Cloud Pentesting Learning Resources
-
Has anyone took the AWS Pentesting Bootcamp on Pentester Academy?
https://github.com/RhinoSecurityLabs/cloudgoat Good alternative for low cost
-
Hide Your Keys Hide Your Data
Settle your horses. In this post, we will be using CloudGoat. CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool. It allows you to hone your cloud cybersecurity skills by creating and completing several "capture-the-flag" style scenarios. CloudGoat.
-
Pen testing advice
Tryhackme and hackthebox are nice (vulnhub as well), also good to spin up some VMs to test stuff/techniques on. Learn some programming as well. If you're doing cloud testing, Cloudgoat is pretty good (you'll need an aws account first). If web testing, Burpsuite is very helpful. If doing intranet testing, try familiarizing yourself with SysInternals, maybe also Bloodhound, Nmap, etc. Tbh pentesting is a big field in and of itself. Might sometimes feel a bit overwhelming.
- Practice Cloud Security
What are some alternatives?
aws-sdk-go - AWS SDK for the Go programming language.
awesome-aws-security - Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS Security
rclone - "rsync for cloud storage" - Google Drive, S3, Dropbox, Backblaze B2, One Drive, Swift, Hubic, Wasabi, Google Cloud Storage, Azure Blob, Azure Files, Yandex Files
BloodHound - Six Degrees of Domain Admin
aws-sdk - Landing page for the AWS SDKs on GitHub
crc32 - CRC32 tools: reverse, undo/rewind, and calculate hashes
s5cmd - Parallel S3 and local filesystem execution tool.
juice-shop - OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
boto3 - AWS SDK for Python
metaflow - :rocket: Build and manage real-life ML, AI, and data science projects with ease!
aws-cli - Universal Command Line Interface for Amazon Web Services
s4cmd - Super S3 command line tool