Python cloud-security

Open-source Python projects categorized as cloud-security

Top 9 Python cloud-security Projects

  • consoleme

    A Central Control Plane for AWS Permissions and Access

  • Project mention: Launch HN: Slauth (YC S22) – auto-generate secure IAM policies for AWS and GCP | news.ycombinator.com | 2023-12-04

    Why are you using (very expensive) GPT, or any LLM for that matter, when this was already a solved problem using rulesets? Netflix for example has open source that does this already: https://github.com/Netflix/consoleme

    Instead of analyzing your code, you just run your code with no permissions and it automatically detects permission failures and thens open those permissions, with a UI showing you what it did so you can remove any permissions you don't want.

    That actually seems much more secure than trying to divine the rules from reading the code.

    What value is the LLM adding here?

  • ElectricEye

    ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP & SaaS environments with controls mapped to over 20 industry, regulatory, and best practice controls frameworks

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • tfquery

    tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.

  • varc

    Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.

  • aws-allowlister

    Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frameworks.

  • metabadger

    Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

  • introspector

    A schema and set of tools for using SQL to query cloud infrastructure.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • AWSXenos

    AWSXenos will list all the trust relationships in all the IAM roles and S3 buckets

  • GCP-Attack-Defense

    A Project dedicated to documenting various attack and detection vectors that can be encountered within Google Cloud Platform (GCP).

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020). The latest post mention was on 2023-12-04.

Python cloud-security related posts

Index

What are some of the best open-source cloud-security projects in Python? This list will help you:

Project Stars
1 consoleme 3,064
2 ElectricEye 858
3 tfquery 326
4 varc 231
5 aws-allowlister 217
6 metabadger 133
7 introspector 66
8 AWSXenos 58
9 GCP-Attack-Defense 57
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com