EN
ENNA

CloudMapper vs WeirdAAL

GitHub Stats

6.3k
Stars
838
834
Forks
94
211
Issues
22
1y ago
Updated
1y ago
BSD-3-Clause
License
-
Python
Language
Python

About CloudMapper

CloudMapper is a tool for visualizing and analyzing Amazon Web Services (AWS) environments. It generates network diagrams, identifying security risks and architectural flaws by mapping out VPCs, subnets, and other resources. The tool aids in understanding complex AWS setups and spotting potential vulnerabilities in the network design. CloudMapper is particularly useful for security audits and compliance checks, offering insights into the cloud infrastructure's security posture.

About WeirdAAL

WeirdAAL (AWS Attack Library) is a Python framework for offensive testing of Amazon Web Services environments. It organizes AWS attacks into categorized modules covering enumeration (listing resources, permissions, and configurations across services), exploitation (abusing misconfigurations and excessive permissions), and persistence (creating backdoor access). WeirdAAL supports testing across a wide range of AWS services including IAM, EC2, S3, Lambda, STS, CloudTrail, and many others. Each module performs a specific action - from enumerating all S3 buckets and their ACLs, to checking for privilege escalation paths through IAM policy misconfigurations, to creating persistence mechanisms via Lambda backdoors. WeirdAAL uses boto3 and works with standard AWS credential configurations, making it easy to test with compromised or provided access keys.

Platform Support

🐧linux🍎macos
🐧linux🍎macos🪟windows

Tags

Shared

aws

CloudMapper only

network-diagramvisualizationsecurity

WeirdAAL only

cloud-pentestenumerationexploitationpersistenceiam