Hackers of India

Vajra - Your Weapon To Cloud

 Raunak Parmar 

2022/08/10

Abstract

Vajra (Your Weapon to Cloud) is a framework capable of validating the cloud security posture of the target environment. In Indian mythology, the word Vajra refers to the Weapon of God Indra (God of Thunder and Storms). Because it is cloud-connected, it is an ideal name for the tool. Vajra supports multi-cloud environments and a variety of attack and enumeration strategies for both AWS and Azure. It features an intuitive web-based user interface built with the Python Flask module for a better user experience. The primary focus of this tool is to have different attacking and enumerating techniques all in one place with web UI interfaces so that it can be accessed anywhere by just hosting it on your server.

The following modules are currently available:

• Azure

  1. OAuth Based Phishing (Illicit Consent Grant Attack)
  1. Password Spray
  2. Password Brute Force
  1. Users
  2. Subdomain
  3. Azure Ad
  4. Azure Services
  1. Storage Accounts • AWS
  1. IAM Enumeration
  2. S3 Scanner