pkg.soopen package index

brew / 排名 4898

使用 Homebrew, Nix 安装 cloudfox

查看 cloudfox 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install cloudfox

local Homebrew formula metadata

Linux

Nix已验证 · 92%
nix profile install nixpkgs#cloudfox

nixpkgs package indexes · pkgs/by-name/cl/cloudfox/package.nix · 来源: api.github.com

概览

软件包摘要

Automating situational awareness for cloud penetration tests

命令和别名

  • cloudfox

历史

项目历史与用法

CloudFox is Bishop Fox's open-source command-line tool for cloud penetration-test situational awareness. It began as an AWS-focused offensive-security enumerator and later grew into a multi-cloud tool covering AWS, Azure, and GCP.

项目历史

Bishop Fox introduced CloudFox in September 2022 as a way to turn repeated shell, JSON, and cloud-API enumeration work from cloud penetration tests into a portable CLI. The official tool page describes the inspiration as something like PowerView for cloud infrastructure: a set of enumeration commands that reveal practical attack paths.

The project kept the operational model simple for package users: a Go command-line executable with modular commands and GitHub-hosted documentation. By 2026, the CloudFox wiki described AWS, Azure, and GCP support, and Bishop Fox separately announced CloudFox GCP as a purpose-built module suite for Google Cloud attack-path identification.

采用历史

CloudFox's adoption is concentrated in cloud offensive-security and assessment workflows rather than general cloud administration. Bishop Fox materials present it as a tool used in cloud penetration tests, and the public GitHub project shows a specialist but visible user base, with packaged distribution through Homebrew and Nix recorded in the batch input.

使用方式

Users run CloudFox from the terminal against cloud environments to enumerate identities, permissions, resources, and likely attack paths. The official wiki documents provider-specific command families, including AWS command help and examples, while the README frames the tool as situational awareness for unfamiliar cloud environments.

为什么软件包爱好者会关心

For package-manager users, CloudFox is a good example of a modern security assessment tool shipped as a cross-platform Go CLI: it is easy to bottle, distribute, and keep close to upstream releases. Its value in Homebrew is that a practitioner can install a cloud-enumeration toolkit without cloning a repository or managing language-specific runtime setup.

时间线

  • 2022: Bishop Fox introduced CloudFox as an AWS-focused cloud penetration-testing CLI.
  • 2024: The GitHub wiki documented AWS command usage and examples.
  • 2026: Bishop Fox announced CloudFox GCP, and the wiki described AWS, Azure, and GCP support.
  • 2026: GitHub releases listed CloudFox 2.x builds for Linux, macOS, and Windows.

Related projects

  • CloudFox sits near other cloud security enumeration and attack-path projects, but its official materials particularly connect it to Bishop Fox's FoxMapper and to NCC Group's Principal Mapper, because CloudFox GCP can use graph-analysis data for privilege-escalation, lateral-movement, and data-exfiltration paths.

安全态势

风险级别:red

escape, surveillance, or offensive capability signal. infrastructure mutation or orchestration signal.

风险分类器

red 风险 · 中 置信度 · escape-surveillance-offensive

原因

  • escape, surveillance, or offensive capability signal
  • infrastructure mutation or orchestration signal

信号

  • text:cloud
  • text:penetration

安装行为

  • 未记录 Homebrew bottle 元数据。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

可执行文件

已安装的可执行文件

命令类型暴露范围备注
cloudfox可执行文件已索引可执行文件从本地可执行文件索引发现。

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-08-03
管理器版本2.0.5
管理器更新时间2026-07-25
本地数据未知
上游不可用
检测到的最新版本未检测到
  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:cloudfox
版本2.0.5
软件包管理器Homebrew
主页https://bishopfox.com/blog/introducing-cloudfox
仓库https://github.com/BishopFox/cloudfox
最后更新2026-07-25T14:20:50-04:00
Pulseupdated
Bottle未记录
服务未声明

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

Nix95%

cloudfox

nix profile install nixpkgs#cloudfox
  • normalized package name match
  • 匹配方式:Cloudfox
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/cl/cloudfox/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation