wgpsec/cloudsword
一款帮助云租户发现和测试云上风险、增强云上防护能力的综合性开源工具
Implements a modular architecture with 40+ discovery and exploitation modules across Alibaba Cloud, Tencent Cloud, Huawei Cloud, and other Chinese cloud providers, covering assets, storage buckets, compute instances, and IAM operations. Credentials are kept in-memory via environment variables to prevent persistence-based leaks, and the tool supports MCP protocol integration (SSE and STDIO modes) for use with AI assistants. Built in Go with a Metasploit-like command interface for rapid enumeration and security testing workflows.
595 stars.
Stars
595
Forks
56
Language
Go
License
Apache-2.0
Category
Last pushed
Feb 03, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/mcp/wgpsec/cloudsword"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Related servers
panther-labs/mcp-panther
Write detections, investigate alerts, and query logs from your favorite AI agents
duriantaco/skylos
High-precision Python SAST & Dead Code Remover. Finds unused functions, secrets, and security...
Wh0am123/MCP-Kali-Server
MCP configuration to connect AI agent to a Linux machine.
0x4m4/hexstrike-ai
HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot,...
DMontgomery40/pentest-mcp
NOT for educational purposes: An MCP server for professional penetration testers including...