#155 · Primary category: Cybersecurity & Decryption Tools
cloudsword
A comprehensive open-source tool that helps cloud tenants discover and test cloud risks, enhancing cloud security capabilities.
Project last updated:02/03/26
GitHub Stars
620
Forks
53
Contributors
4
License
Apache-2.0
Why we included this project
CloudSword is a command-line tool for security teams that want to audit their own public cloud accounts. It maps out resources on Alibaba Cloud and Tencent Cloud, flags weak spots in things like storage buckets, ECS instances, and RAM roles, and comes with defensive measures you can deploy right away, so the output is actionable rather than just a report. The interface follows Metasploit-style logic with tab completion and Chinese output, so anyone who already knows the framework can pick it up quickly. It also speaks MCP over SSE or stdio, which lets the same checks be wired into AI assistants or other MCP clients. If you want a repeatable way to check your cloud exposure before someone else does, this is a solid, focused pick.
Articles for this project
No articles for this project yet.
To suggest a topic or contribute an article, contact us.
Related projects in this category
reverse-skill
AI-powered skill router for reverse engineering, authorized penetration testing, and security research, with on-demand toolchain bootstrapping and self-evolving knowledge base.
gitleaks
Find secrets with Gitleaks 🔑
osquery
SQL powered operating system instrumentation, monitoring, and analytics.
NeoPass
Your Essential Exam Companion for the Iamneo Portal & NPTEL Exams Disguised as NeoExamShield bypass
anubis
Weighs the soul of incoming HTTP requests to stop AI crawlers