{"repo":"TROUBLE-1/Vajra","free":true,"listed":false,"github":"https://github.com/TROUBLE-1/Vajra","clone":"git clone https://github.com/TROUBLE-1/Vajra.git","description":"Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive web-based user interface built with the Python Flask module for a better user experience. The primary focus of this tool is to have different attacking techniques all at one place with web UI interfaces.","language":"CSS","stars":410,"topics":["azure","azuread","aws","gcp","cloudsecurity","redteam-tools","toolkit","python3"],"license":"AGPL-3.0","category":"auth-billing-email","readme_excerpt":"Vajra - Your Weapon To Cloud About Vajra Vajra is a UI based tool with multiple techniques for attacking and enumerating in target's Azure environment. The term Vajra refers to the Weapon of God Indra in Indian mythology (God of Thunder &amp; Storms). Its connection to the cloud makes it a perfect name for the tool. Vajra presently supports Azure and AWS Cloud environments, with plans to add support for Google Cloud Platform and certain OSINT in the future. Following features are available at the moment: - Azure - Attacking 1. OAuth Based Phishing (Illicit Consent Grant Attack) - Exfiltrate Data - Enumerate Environment - Deploy Backdoors - Send mails/Create Rules 2. Password Spray 3. Password Brute Force - Enumeration 1. Users 2. Subdomain 3. Azure Ad 4. Azure Services - Specific Service 1. Storage Accounts - AWS - Attacking(In progress) 1. Under Development - Enumeration 1. IAM Enumeration 2. S3 Scanner 3. Under Development - Misconfiguration Note: This tool have been tested in a environment which had around 3 Lakh principals like users, groups, enterprise application, etc. It features an intuitive web-based user interface built with the Python Flask module for a better user experience. About Author Raunak Parmar is an information security professional whose areas of interest include web penetration testing, Azure/AWS security, source code review, scripting, and development. He has 3+ years of experience in information security. Raunak holds OSWE certification and likes to r","default_branch":null,"files":null,"tree":[],"storefront":"/r/TROUBLE-1","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/TROUBLE-1/Vajra/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}