How to do AWS security assesment?

This page summarizes the projects mentioned and recommended in the original post on /r/u_athanielx

InfluxDB – Built for High-Performance Time Series Workloads
InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  1. prowler

    Discontinued Prowler is an Open Source security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains more than 240 controls covering CIS, PCI-DSS, ISO27001, GDPR, HIPAA, FFIEC, SOC2, AWS FTR, ENS and custom security frameworks. [Moved to: https://github.com/prowler-cloud/prowler] (by toniblyx)

    https://github.com/toniblyx/prowle (it's look like huge checklist)

  2. InfluxDB

    InfluxDB – Built for High-Performance Time Series Workloads. InfluxDB 3 OSS is now GA. Transform, enrich, and act on time series data directly in the database. Automate critical tasks and eliminate the need to move data externally. Download now.

    InfluxDB logo
  3. ScoutSuite

    Multi-Cloud Security Auditing Tool

    https://github.com/nccgroup/ScoutSuite (I used it for GCP one time, but I can't say if it good for AWS)

  4. bucketeer

    Bucketeer is a small script that builds off the useful Sublist3r tool. The Tool tries to identify S3 Buckets and other useful subdomain information, that is used to perform subdomain takeover attacks.

  5. s3audit-ts

    Discontinued CLI tool for auditing S3 buckets

    https://github.com/scalefactory/s3audit (it's look intersting, because I need to identify if we have open buckets)

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • ScoutSuite: Open-Source Multi-Cloud Security Auditing Tool

    1 project | news.ycombinator.com | 14 Aug 2024
  • Azure and M365 Secure Config Review

    2 projects | /r/Pentesting | 31 May 2023
  • AWS Security Checklist

    1 project | /r/cybersecurity | 28 May 2022
  • Tool Release – ScoutSuite 5.11.0 - a new version of the open-source, multi-cloud auditing tool ScoutSuite - AWS, Azure and GCP improvements

    1 project | /r/devops | 16 Mar 2022
  • Question how to know all services used by me.

    1 project | /r/aws | 8 Dec 2021

Did you know that Python is
the 2nd most popular programming language
based on number of references?