EN
ENNA

cloud_enum vs CloudBrute

GitHub Stats

2.1k
Stars
1.1k
294
Forks
157
3
Issues
0
8mo ago
Updated
1y ago
MIT
License
MIT
Python
Language
Go

About cloud_enum

cloud_enum is a multi-cloud OSINT tool that enumerates public resources in Amazon Web Services, Microsoft Azure, and Google Cloud Platform. Given a set of keywords, it discovers publicly accessible storage buckets (S3, Azure Blobs, GCP Buckets), web applications (Azure App Services, AWS Elastic Beanstalk), databases, and other resources that may be inadvertently exposed. It uses brute-force enumeration with configurable wordlists and mutation rules to generate permutations of target keywords, then checks each cloud provider for matching resources. This is particularly effective during the reconnaissance phase of penetration tests or bug bounty hunting, where misconfigured cloud storage is a common finding.

About CloudBrute

CloudBrute is an enumeration tool used to discover cloud assets across multiple cloud service providers. By leveraging publicly accessible APIs and services, it identifies exposed company resources and infrastructure components. CloudBrute is capable of scanning for assets on popular platforms like AWS, Azure, and Google Cloud, offering insights into potential security exposures. Its utility lies in its ability to provide a comprehensive view of an organization's cloud footprint, aiding in asset management and security assessments.

Platform Support

🐧linux🍎macos🪟windows
🐧linux🍎macos🪟windows

Tags

Shared

enumerationmulti-cloud

cloud_enum only

cloud-osints3azure-blobsgcp-buckets

CloudBrute only

cloudassets