awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

21 Repos

Awesome GitHub RepositoriesCloud Security Tooling and Automation

Comprehensive toolkits, automation scripts, and assessment utilities for cloud environments.

Explore 21 awesome GitHub repositories matching part of an awesome list · Cloud Security Tooling and Automation. Refine with filters or upvote what's useful.

Awesome Cloud Security Tooling and Automation GitHub Repositories

Finde die besten Repos mit KI.Wir suchen mit KI nach den am besten passenden Repositories.
  • toniblyx/prowlerAvatar von toniblyx

    toniblyx/prowler

    14,005Auf GitHub ansehen↗

    Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance assessments across multiple cloud environments to identify misconfigurations and vulnerabilities. The project provides a multi-cloud security analysis engine that operates as an automated auditor, evaluating infrastructure against industry-standard regulatory frameworks and security benchmarks. It features a cloud security visualization dashboard that uses a graph database to map cloud inventory and visualize potential attack paths. Capabilities include automated cloud infrast

    AWS security best practices assessment and hardening tool.

    Python
    Auf GitHub ansehen↗14,005
  • toniblyx/my-arsenal-of-aws-security-toolsAvatar von toniblyx

    toniblyx/my-arsenal-of-aws-security-tools

    9,460Auf GitHub ansehen↗

    List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

    Curated collection of cloud security tools.

    Shellauditingaws-infrastructureaws-inventory
    Auf GitHub ansehen↗9,460
  • 99designs/aws-vaultAvatar von 99designs

    99designs/aws-vault

    8,977Auf GitHub ansehen↗

    aws-vault is a secure credential manager and command-line wrapper for AWS. It stores long-term identity keys using the native operating system secure keystore to prevent plaintext secrets from residing on disk. The tool orchestrates the exchange of long-term credentials for short-lived temporary sessions by assuming IAM roles, with support for multi-factor authentication and integration with AWS Identity Center for single sign-on access. It prevents credential exposure by injecting these temporary tokens directly into subprocesses or by simulating local metadata endpoints for software develop

    Secure storage utility for cloud credentials.

    Go
    Auf GitHub ansehen↗8,977
  • nccgroup/scoutsuiteAvatar von nccgroup

    nccgroup/ScoutSuite

    7,548Auf GitHub ansehen↗

    ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and misconfigurations across cloud environments. It functions as a security posture manager and compliance auditor, gathering resource metadata from cloud APIs to evaluate infrastructure against security benchmarks. The tool provides auditing capabilities for AWS, Google Cloud, DigitalOcean, and Kubernetes clusters and control planes. It distinguishes itself by decoupling data collection from analysis, allowing users to cache cloud configurations locally for offline auditing and iterative rul

    Multi-cloud infrastructure security auditing tool.

    Pythonauditingawsazure
    Auf GitHub ansehen↗7,548
  • duo-labs/cloudmapperAvatar von duo-labs

    duo-labs/cloudmapper

    6,259Auf GitHub ansehen↗

    Visualization and analysis tool for cloud environments.

    JavaScriptawscytoscapediagram
    Auf GitHub ansehen↗6,259
  • rhinosecuritylabs/pacuAvatar von RhinoSecurityLabs

    RhinoSecurityLabs/pacu

    5,234Auf GitHub ansehen↗

    Pacu ist ein Exploitation-Framework, das für das Auditieren und Testen der Sicherheit von Amazon Web Services (AWS)-Umgebungen entwickelt wurde. Es dient als Cloud-Penetration-Testing-Tool und Ressourcen-Enumerator, um Fehlkonfigurationen zu identifizieren, Angriffsflächen abzubilden und Pfade zur Privilegieneskalation auszuführen. Das Framework bietet spezialisierte Funktionen für Post-Exploitation- und Red-Team-Operationen, einschließlich der Etablierung von Persistenz durch Backdooring von Identity and Access Management (IAM). Es zeichnet sich durch ein Plugin-basiertes Modulsystem aus, das die Entwicklung benutzerdefinierter Aufgaben und die Orchestrierung von API-Anfragen über mehrere geografische Regionen hinweg ermöglicht. Das Projekt deckt ein breites Spektrum an Sicherheitsaudit-Aktivitäten ab, einschließlich Infrastruktur-Enumeration, Datenexfiltration aus Speicherdiensten und Identitäts-Audits. Es enthält Tools für Remote Code Execution via Payload-Injection und Startskripte sowie Funktionen zur Störung von Erkennungsdiensten und zur Analyse lateraler Netzwerkbewegungen. Pacu verwaltet zielspezifische Authentifizierungsschlüssel und Sitzungsmetadaten unter Verwendung isolierter Container und einer lokalen Datenbank, um den Status beizubehalten und API-Aufrufe zu reduzieren.

    AWS exploitation and penetration testing framework.

    Python
    Auf GitHub ansehen↗5,234
  • netflix/consolemeAvatar von Netflix

    Netflix/consoleme

    3,198Auf GitHub ansehen↗

    A Central Control Plane for AWS Permissions and Access

    Centralized access control and permissions management.

    Pythonawsaws-iamcloud-security
    Auf GitHub ansehen↗3,198
  • bishopfox/cloudfoxAvatar von BishopFox

    BishopFox/cloudfox

    2,444Auf GitHub ansehen↗

    Automating situational awareness for cloud penetration tests.

    Situational awareness automation for cloud penetration tests.

    Go
    Auf GitHub ansehen↗2,444
  • denizparlak/zeusAvatar von DenizParlak

    DenizParlak/Zeus

    715Auf GitHub ansehen↗

    AWS Auditing & Hardening Tool

    Auditing and hardening utility for AWS accounts.

    Shell
    Auf GitHub ansehen↗715
  • awslabs/aws-security-automationAvatar von awslabs

    awslabs/aws-security-automation

    634Auf GitHub ansehen↗

    Collection of scripts and resources for DevSecOps and Automated Incident Response Security

    Automation scripts for cloud incident response.

    Python
    Auf GitHub ansehen↗634
  • awslabs/aws-security-benchmarkAvatar von awslabs

    awslabs/aws-security-benchmark

    620Auf GitHub ansehen↗

    Open source demos, concept and guidance related to the AWS CIS Foundation framework.

    CIS compliance and security benchmark automation.

    Python
    Auf GitHub ansehen↗620
  • globaldatanet/aws-firewall-factoryAvatar von globaldatanet

    globaldatanet/aws-firewall-factory

    256Auf GitHub ansehen↗

    Enhance the security of your web applications effortlessly with AWS Firewall Factory. Safeguard your valuable assets through seamless WAF deployment, updates, and staging, all centrally managed with AWS Firewall Manager.

    Automated deployment tool for cloud firewalls.

    TypeScript
    Auf GitHub ansehen↗256
  • welldone-cloud/aws-lint-iam-policiesAvatar von welldone-cloud

    welldone-cloud/aws-lint-iam-policies

    152Auf GitHub ansehen↗

    Runs IAM policy linting and security checks against either a single AWS account or multiple member accounts of an AWS Organization.

    Static analysis tool for identifying IAM policy issues.

    Python
    Auf GitHub ansehen↗152
  • olizimmermann/s3dnsAvatar von olizimmermann

    olizimmermann/s3dns

    129Auf GitHub ansehen↗

    Find S3 AWS/GCP/Azure buckets while surfing. S3DNS acts as DNS server, follows CNAMEs and matches any bucket pattern

    Passive DNS reconnaissance tool for discovering cloud storage.

    Python
    Auf GitHub ansehen↗129
  • gebalamariusz/cloud-auditAvatar von gebalamariusz

    gebalamariusz/cloud-audit

    60Auf GitHub ansehen↗

    Fast, opinionated AWS security scanner. Curated checks. Zero noise. Copy-paste fixes.

    Attack chain detector and remediation generator for cloud.

    Python
    Auf GitHub ansehen↗60
  • tocconsulting/s3-security-scannerT

    TocConsulting/s3-security-scanner

    0Auf GitHub ansehen↗

    Comprehensive scanner for S3 security configurations.

    Auf GitHub ansehen↗0
  • kromtech/s3-inspectorK

    kromtech/s3-inspector

    0Auf GitHub ansehen↗

    Checker for AWS S3 bucket permissions.

    Auf GitHub ansehen↗0
  • carlosinfantes/cloudsecureC

    carlosinfantes/cloudsecure

    0Auf GitHub ansehen↗

    Serverless security assessment platform with automated checks.

    Auf GitHub ansehen↗0
  • tocconsulting/iam-activity-trackerT

    TocConsulting/iam-activity-tracker

    0Auf GitHub ansehen↗

    Serverless tracker for identity and access events.

    Auf GitHub ansehen↗0
  • su1ph3r/nubicustosS

    Su1ph3r/Nubicustos

    0Auf GitHub ansehen↗

    Orchestration framework combining multiple cloud security scanners.

    Auf GitHub ansehen↗0
Vorherige12Nächste
  1. Home
  2. Part of an Awesome List
  3. Developer Tools
  4. Cloud Security Tooling and Automation