aws-security

Open-source projects categorized as aws-security

Top 23 aws-security Open-Source Projects

  • checkov

    Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

  • Project mention: A Deep Dive Into Terraform Static Code Analysis Tools: Features and Comparisons | dev.to | 2024-04-16

    Checkov Owner/Maintainer: Prisma Cloud by Palo Alto Networks (acquired in 2021) Age: First released on GitHub on March 31st, 2021 License: Apache License 2.0

  • terrascan

    Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

  • Project mention: A Deep Dive Into Terraform Static Code Analysis Tools: Features and Comparisons | dev.to | 2024-04-16

    Terrascan Owner/Maintainer: Tenable (acquired in 2022) Age: First release on GitHub on November 28th, 2017 License: Apache License 2.0

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • security-study-plan

    Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...

  • pacu

    The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

  • Project mention: De um mimo até a elevação de privilégios na Cloud | dev.to | 2023-07-27

    Pra isso, usei a belíssima ferramenta Pacu https://github.com/RhinoSecurityLabs/pacu.

  • policy_sentry

    IAM Least Privilege Policy Generator

  • awesome-cloud-security

    🛡️ Awesome Cloud Security Resources ⚔️

  • stratus-red-team

    :cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • matano

    Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

  • Project mention: Cisco Acquires Splunk | news.ycombinator.com | 2023-09-21

    sorry thats https://matano.dev

  • awesome-aws-security

    Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS Security

  • aws-security-reference-architecture-examples

    Example solutions demonstrating how to implement patterns within the AWS Security Reference Architecture guide using CloudFormation (including Customizations for AWS Control Tower) and Terraform.

  • awspx

    A graph-based tool for visualizing effective access and resource relationships in AWS environments.

  • Project mention: Open-source IAM Access Visualizer | /r/devops | 2023-05-19

    Looks similar to awspx. Always good to have more visualisation tools

  • ElectricEye

    ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP & SaaS environments with controls mapped to over 20 industry, regulatory, and best practice controls frameworks

  • AirIAM

    Least privilege AWS IAM Terraformer

  • Project mention: AWS Networking Concepts in a Diagram | news.ycombinator.com | 2023-07-22

    ugh access + least privilege on AWS + GCP is really hard

    not made easier by the fact that debugging service accounts can sometimes require rebooting boxes or clusters

    'cloud traceroute' to discover where exactly the problem is would be amazing

    (in fairness there are 'least privilege' tools I haven't tried -- listed below and I recall reading about others)

    1. iam access analyzer https://aws.amazon.com/blogs/security/iam-access-analyzer-ma...

    2. airiam https://github.com/bridgecrewio/AirIAM

    3. policy simulator https://cloud.google.com/policy-intelligence/docs/iam-simula...

  • awesome-cloud-security

    A curated list of awesome cloud security blogs, podcasts, standards, projects, and examples. (by Funkmyster)

  • AWS-Guide

    Amazon Web Services (AWS) Guide. Learn all about Amazon Web Services Tools, Services, and Certifications.

  • aws-security-workshops

    A collection of the latest AWS Security workshops

  • lazytrivy

    Vulnerability scanning just got lazier

  • managed-kubernetes-auditing-toolkit

    All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.

  • Project mention: Auditing AWS EKS Pod Permissions | dev.to | 2024-02-29

    Datadog also maintains the Managed Kubernetes Auditing Toolkit (MKAT), which can be installed to perform similar permission checks.

  • rpCheckup

    rpCheckup is an AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, and private resources.

  • aws-foundations-cis-baseline

    InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark

  • introspector

    A schema and set of tools for using SQL to query cloud infrastructure.

  • AWSXenos

    AWSXenos will list all the trust relationships in all the IAM roles and S3 buckets

  • aws-iam-utils

    Python library for examining, creating and optimising IAM policies

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

aws-security related posts

Index

What are some of the best open-source aws-security projects? This list will help you:

Project Stars
1 checkov 6,512
2 terrascan 4,494
3 security-study-plan 4,108
4 pacu 4,014
5 policy_sentry 1,938
6 awesome-cloud-security 1,902
7 stratus-red-team 1,618
8 matano 1,354
9 awesome-aws-security 1,110
10 aws-security-reference-architecture-examples 922
11 awspx 865
12 ElectricEye 860
13 AirIAM 750
14 awesome-cloud-security 560
15 AWS-Guide 467
16 aws-security-workshops 426
17 lazytrivy 267
18 managed-kubernetes-auditing-toolkit 229
19 rpCheckup 157
20 aws-foundations-cis-baseline 74
21 introspector 66
22 AWSXenos 58
23 aws-iam-utils 16

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com