cloud-security-testing

Solid

Multi-cloud security assessment and penetration testing capabilities. Execute Prowler/ScoutSuite assessments, analyze IAM policies, identify cloud misconfigurations, test permissions, and enumerate cloud resources across AWS/GCP/Azure.

Testing & QA 1,160 stars 71 forks Updated today MIT

Install

View on GitHub

Quality Score: 96/100

Stars 20%
100
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# cloud-security-testing You are **cloud-security-testing** - a specialized skill for multi-cloud security assessment and authorized penetration testing across AWS, GCP, and Azure environments. ## Overview This skill enables AI-powered cloud security operations including: - Running Prowler and ScoutSuite security assessments - Analyzing IAM policies for misconfigurations and privilege escalation paths - Identifying cloud resource misconfigurations (S3 buckets, storage, databases) - Executing Pacu for authorized AWS penetration testing - Enumerating cloud resources and attack surfaces - Generating cloud security compliance reports ## Prerequisites - **Cloud CLI Tools**: AWS CLI, Azure CLI, GCP gcloud installed - **Assessment Tools**: Prowler, ScoutSuite, Pacu (for authorized testing) - **Valid Credentials**: Appropriate cloud credentials configured - **Authorization**: Written authorization for security testing activities ## IMPORTANT: Authorized Testing Only This skill is designed for authorized security research and penetration testing contexts only. All operations must: - Have explicit written authorization from the cloud account owner - Be conducted within defined scope boundaries - Follow responsible disclosure practices - Comply with cloud provider terms of service ## Capabilities ### 1. Prowler Security Assessments (AWS/Azure/GCP) Execute comprehensive security assessments using Prowler: ```bash # AWS Security Assessment prowler aws --output-formats json,html...

Details

Author
a5c-ai
Repository
a5c-ai/babysitter
Created
4 months ago
Last Updated
today
Language
JavaScript
License
MIT

Integrates with

Similar Skills

Semantically similar based on skill content — not just same category

DevOps & Infrastructure Featured

cloud-penetration-testing

Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).

39,350 Updated today
sickn33
DevOps & Infrastructure Solid

cloud-penetration-testing

This skill should be used when the user asks to "perform cloud penetration testing", "assess Azure or AWS or GCP security", "enumerate cloud resources", "exploit cloud misconfigurations", "test O365 security", "extract secrets from cloud environments", or "audit cloud infrastructure". It provides comprehensive techniques for security assessment across major cloud platforms.

27,705 Updated today
davila7
DevOps & Infrastructure Solid

cloud-penetration-testing

This skill should be used when the user asks to "perform cloud penetration testing", "assess Azure or AWS or GCP security", "enumerate cloud resources", "exploit cloud misconfigurations", "test O365 security", "extract secrets from cloud environments", or "audit cloud infrastructure". It provides comprehensive techniques for security assessment across major cloud platforms.

4,222 Updated today
zebbern
DevOps & Infrastructure Listed

cloud-penetration-testing

This skill should be used when the user asks to "perform cloud penetration testing", "assess Azure or AWS or GCP security", "enumerate cloud resources", "exploit cloud misconfigurations", "test O365 security", "extract secrets from cloud environments", or "audit cloud infrastructure". It provides comprehensive techniques for security assessment across major cloud platforms.

335 Updated today
aiskillstore
AI & Automation Featured

conducting-cloud-penetration-testing

This skill outlines methodologies for performing authorized penetration testing against AWS, Azure, and GCP cloud environments. It covers understanding the shared responsibility model for testing scope, leveraging cloud-specific attack tools like Pacu and ScoutSuite, exploiting IAM misconfigurations, testing for SSRF to cloud metadata services, and reporting findings aligned to MITRE ATT&CK Cloud matrix.

13,115 Updated today
mukul975