Alternatives to Pacu
AWS exploitation framework for authorised cloud security testing. The listings below can replace it for an important use case. Each note says what changes if you switch.
The original
Pacu
AWS exploitation framework for authorised cloud security testing.
Also worth comparing
These listings name Pacu as their own alternative, so the relationship runs both ways.
CloudFox
Inventory cloud permissions and resources during an authorized assessment.
Pacu is an AWS exploitation framework with modules for privilege escalation and backdooring, so it goes beyond inventory into active attacks against AWS accounts only.
Similar software
Related functionality, not a direct replacement.
Prowler
Check cloud environments for security configuration issues.
Metasploit Framework
The standard open-source exploitation framework for authorised penetration testing and verifying that a vulnerability is real.
Sliver
Open-source adversary emulation and command-and-control framework.
AzureHound
A command-line collector that exports Microsoft Azure and Entra ID data for analysis in BloodHound.
Checkov
Scan infrastructure code for configuration problems.