#155 · Primary category: Cybersecurity & Decryption Tools

cloudsword

alibaba-cloud cloudsecurity cybersecurity mcp mcp-server public-cloud tencent-cloud

A comprehensive open-source tool that helps cloud tenants discover and test cloud risks, enhancing cloud security capabilities.

Project last updated:02/03/26

GitHub Stars

620

Forks

53

Contributors

4

License

Apache-2.0

Why we included this project

CloudSword is a command-line tool for security teams that want to audit their own public cloud accounts. It maps out resources on Alibaba Cloud and Tencent Cloud, flags weak spots in things like storage buckets, ECS instances, and RAM roles, and comes with defensive measures you can deploy right away, so the output is actionable rather than just a report. The interface follows Metasploit-style logic with tab completion and Chinese output, so anyone who already knows the framework can pick it up quickly. It also speaks MCP over SSE or stdio, which lets the same checks be wired into AI assistants or other MCP clients. If you want a repeatable way to check your cloud exposure before someone else does, this is a solid, focused pick.

Articles for this project

No articles for this project yet.

To suggest a topic or contribute an article, contact us.

Related projects in this category