All tools
9 cheatsheets in Cloud & Containers
AWS CLI
CloudCommand-line interface for AWS enumeration, credential validation, and misconfiguration discovery during cloud assessments.
Azure CLI
CloudMicrosoft Azure command-line tool for subscription, VM, storage, and Entra ID enumeration in cloud pentests.
Docker
CloudContainer runtime CLI for building images, inspecting deployments, and testing container breakout and misconfiguration paths.
Google Cloud SDK (gcloud)
CloudGCP command-line tool for project enumeration, IAM review, compute instances, and storage access testing.
kubectl
CloudKubernetes CLI for cluster enumeration, secret access, and pod exec during authorized K8s penetration tests.
Pacu
CloudAWS exploitation framework with modules for privilege escalation, persistence, and data exfiltration after key compromise.
Prowler
CloudAWS (and multi-cloud) security assessment tool with hundreds of checks mapped to CIS, PCI, and custom compliance frameworks.
ScoutSuite
CloudMulti-cloud security auditing tool that generates HTML reports highlighting misconfigurations and risky permissions.
Trivy
CloudScanner for container images, filesystems, and IaC (Terraform, K8s) for CVEs and misconfigurations.