
Nuvola
#Network & Cloud#Cloud Security
Comprehensive suite of tools and resources by Microsoft Azure for ensuring security and protection of data and applications in the cloud.
Nuvola (with the lowercase n)
Nuvola (with the lowercase n) is a tool to dump and perform automatic and manual security analysis on AWS environments configurations and services using predefined, extensible and custom rules created using a simple Yaml syntax
The general idea behind this
The general idea behind this project is to create an abstracted digital twin of a cloud platform
For a more concrete example
nuvola reflects the BloodHound traits used for Active Directory analysis but on cloud environments (at the moment only AWS)
The usage of a graph
The usage of a graph database also increases the possibility of finding different and innovative attack paths and can be used as an offline, centralised and lightweight digital twin.
Quick Start Requirements:
- docker-compose installed
- an AWS account configured to be used with awscli with full access to the cloud resources, better if in ReadOnly mode (the policy arn:aws:iam::aws:policy/ReadOnlyAccess is fine)
Setup:
- Clone the repository: git clone --depth=1 https://github.com/primait/nuvola.git; cd nuvola
- Create and edit, if required, the .env file to set your DB username/password/URL: cp .env_example .env; You may need to edit the size of the memory allocated to Neo4j if you run the tool on a low-RAM device.
Other AI Tools

PCAPdroid
A tool for discovering open S3 Buckets starting from a domain using various techniques such as crawling and DNS crawling.
Details
Visit site

PacketQ
Network metadata capture and analysis tool
Details
Visit site

Palo Alto Networks - Prisma SASE
DirSearch is a simple tool for finding files and directories on a web server.
Details
Visit site

Passive Network Audit Framework (PNAF) v0.1.2
A tool to discover new target domains using Content Security Policy
Details
Visit site

PFQ v6.2
6Guard is an IPv6 attack detector sponsored by Google Summer of Code 2012 and supported by The Honeynet Project organization.
Details
Visit site

PF_RING ZC (Zero Copy)
A honeypot designed to detect and analyze malicious activities in instant messaging platforms.
Details
Visit site