Skip to content
Change the repository type filter

All

    Repositories list

    • cloudgoat

      Public
      CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
      Python
      BSD 3-Clause "New" or "Revised" License
      7513.5k174Updated Apr 21, 2026Apr 21, 2026
    • pacu

      Public
      The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
      Python
      BSD 3-Clause "New" or "Revised" License
      7825.1k2111Updated Mar 30, 2026Mar 30, 2026
    • Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.
      Python
      15089120Updated Feb 23, 2026Feb 23, 2026
    • IAMActionHunter

      Public
      An AWS IAM policy statement parser and query tool.
      Python
      Apache License 2.0
      1719910Updated Feb 10, 2026Feb 10, 2026
    • A collection of GCP IAM privilege escalation methods documented by the Rhino Security Labs team.
      Python
      BSD 3-Clause "New" or "Revised" License
      7842053Updated Oct 6, 2025Oct 6, 2025
    • CVEs

      Public
      Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs
      Python
      BSD 3-Clause "New" or "Revised" License
      24989401Updated Jun 4, 2025Jun 4, 2025
    • dsnap

      Public
      Utility for downloading and mounting EBS snapshots using the EBS Direct API's
      Python
      BSD 3-Clause "New" or "Revised" License
      99362Updated Mar 17, 2025Mar 17, 2025
    • A script to enumerate Google Storage buckets, determine what access you have to them, and determine if they can be privilege escalated.
      Python
      BSD 3-Clause "New" or "Revised" License
      9056043Updated May 26, 2023May 26, 2023
    • A tool geared towards pentesting APIs using OpenAPI definitions.
      JavaScript
      BSD 3-Clause "New" or "Revised" License
      4518810Updated Oct 27, 2022Oct 27, 2022
    • CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.
      Python
      MIT License
      1143401Updated Mar 7, 2022Mar 7, 2022
    • Send and receive bypassing Little Snitch alerting.
      Go
      21300Updated Jan 27, 2022Jan 27, 2022
    • Fork of amazon-ssm-agent that can run as any user in parallel with the official service.
      Go
      Apache License 2.0
      350400Updated Dec 3, 2021Dec 3, 2021
    • Exploits written by the Rhino Security Labs team
      Python
      BSD 3-Clause "New" or "Revised" License
      2961.1k93Updated Jan 23, 2021Jan 23, 2021
    • Cloud-related research releases from the Rhino Security Labs team.
      Python
      BSD 3-Clause "New" or "Revised" License
      6839200Updated Apr 23, 2020Apr 23, 2020
    • ccat

      Public
      Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.
      Python
      BSD 3-Clause "New" or "Revised" License
      11064920Updated Nov 21, 2019Nov 21, 2019
    • SleuthQL

      Public
      Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.
      Python
      BSD 3-Clause Clear License
      8347151Updated Nov 14, 2019Nov 14, 2019
    • A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.
      BSD 3-Clause "New" or "Revised" License
      12392710Updated Jul 25, 2019Jul 25, 2019
    • A collection of slides, videos, and proof-of-concept scripts from various Rhino presentations.
      BSD 3-Clause "New" or "Revised" License
      63700Updated Aug 13, 2018Aug 13, 2018
    • Aggregation of Cobalt Strike's aggressor scripts.
      PowerShell
      4114110Updated Mar 31, 2018Mar 31, 2018
    • Python api for usage with cobalt strike's External C2 specification
      Python
      987200Updated Feb 15, 2018Feb 15, 2018
    ProTip! When viewing an organization's repositories, you can use the props. filter to filter by custom property.