awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

16 Repos

Awesome GitHub RepositoriesInfrastructure Security

Security resources for cloud environments and transport layer protocols.

Explore 16 awesome GitHub repositories matching part of an awesome list · Infrastructure Security. Refine with filters or upvote what's useful.

Awesome Infrastructure Security GitHub Repositories

Finde die besten Repos mit KI.Wir suchen mit KI nach den am besten passenden Repositories.
  • awslabs/git-secretsAvatar von awslabs

    awslabs/git-secrets

    13,177Auf GitHub ansehen↗

    Git-secrets is a security utility designed to prevent the accidental exposure of sensitive credentials by integrating automated scanning directly into the version control commit lifecycle. It functions as a commit scanner that evaluates staged files and commit messages against defined security policies before changes are finalized in a repository. The tool utilizes regular expression pattern matching to identify potential secrets and supports the registration of custom patterns to address specific organizational security requirements. To manage operational friction, it includes mechanisms for

    Prevents committing secrets to git repositories.

    Shell
    Auf GitHub ansehen↗13,177
  • bridgecrewio/checkovAvatar von bridgecrewio

    bridgecrewio/checkov

    8,798Auf GitHub ansehen↗

    Checkov is a static analysis tool and security scanner designed to identify misconfigurations in infrastructure as code, container images, and Kubernetes configurations. It functions as a cloud security posture tool, an SCA vulnerability scanner, and a secret scanning utility to prevent security breaches and version control leaks. The project distinguishes itself through deep graph analysis and variable resolution, allowing it to map relationships between interconnected resources and evaluate the final state of infrastructure attributes. It provides extensibility for defining custom security

    Static analysis for Terraform, CloudFormation, and Kubernetes.

    Python
    Auf GitHub ansehen↗8,798
  • liamg/tfsecAvatar von liamg

    liamg/tfsec

    7,013Auf GitHub ansehen↗

    tfsec is a static analysis tool and security scanner for Terraform configuration files. It functions as an infrastructure as code security scanner and compliance linter designed to detect misconfigurations and vulnerabilities across multiple cloud providers before resources are deployed. The tool identifies security risks by analyzing infrastructure code and variable files to evaluate the final state of the environment. It supports custom policy enforcement and allows for the suppression of specific security warnings through inline comments. Its capabilities cover cloud security posture mana

    Static analysis to identify security issues in Terraform.

    Go
    Auf GitHub ansehen↗7,013
  • checkmarx/kicsAvatar von checkmarx

    checkmarx/kics

    2,649Auf GitHub ansehen↗

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Finds vulnerabilities and misconfigurations in infrastructure-as-code.

    Open Policy Agent
    Auf GitHub ansehen↗2,649
  • awslabs/aws-config-rulesAvatar von awslabs

    awslabs/aws-config-rules

    1,735Auf GitHub ansehen↗

    Node, Python, Java Repository of sample Custom Rules for AWS Config.

    Collection of rules for AWS Config.

    Python
    Auf GitHub ansehen↗1,735
  • eerkunt/terraform-complianceAvatar von eerkunt

    eerkunt/terraform-compliance

    1,457Auf GitHub ansehen↗

    a lightweight, security focused, BDD test framework against terraform.

    BDD test framework for Terraform security compliance.

    Python
    Auf GitHub ansehen↗1,457
  • aws-cloudformation/cloudformation-guardAvatar von aws-cloudformation

    aws-cloudformation/cloudformation-guard

    1,384Auf GitHub ansehen↗

    Guard offers a policy-as-code domain-specific language (DSL) to write rules and validate JSON- and YAML-formatted data such as CloudFormation Templates, K8s configurations, and Terraform JSON plans/configurations against those rules. Take this survey to provide feedback about cfn-guard: https://amazonmr.au1.qualtrics.com/jfe/form/SV_bpyzpfoYGGuuUl0

    Policy-as-code syntax for checking CloudFormation compliance.

    Rust
    Auf GitHub ansehen↗1,384
  • fugue/regulaAvatar von fugue

    fugue/regula

    964Auf GitHub ansehen↗

    Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego

    Checks Terraform for security compliance using Open Policy Agent.

    Open Policy Agent
    Auf GitHub ansehen↗964
  • bridgecrewio/yorAvatar von bridgecrewio

    bridgecrewio/yor

    927Auf GitHub ansehen↗

    Extensible auto-tagger for your IaC files. The ultimate way to link entities in the cloud back to the codified resource which created it.

    Automatically tags and traces infrastructure-as-code frameworks.

    Go
    Auf GitHub ansehen↗927
  • aws-samples/automated-security-helperAvatar von aws-samples

    aws-samples/automated-security-helper

    657Auf GitHub ansehen↗

    ASH is an extensible, open source SAST, SCA, and IaC security scanner orchestration engine.

    Automated security scanning for code without requiring installation.

    Python
    Auf GitHub ansehen↗657
  • skyscanner/cfripperAvatar von Skyscanner

    Skyscanner/cfripper

    416Auf GitHub ansehen↗

    Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

    Analyzes CloudFormation templates for security compliance.

    Python
    Auf GitHub ansehen↗416
  • puresec/serverless-puresec-cliAvatar von puresec

    puresec/serverless-puresec-cli

    250Auf GitHub ansehen↗

    Serverless plugin for least privileges.

    Analyzes Lambda code to generate least-privileged IAM roles.

    JavaScript
    Auf GitHub ansehen↗250
  • mozilla-services/pytest-servicesAvatar von mozilla-services

    mozilla-services/pytest-services

    108Auf GitHub ansehen↗

    Unit testing framework for test driven security of AWS, GCP, Heroku and more.

    Unit testing framework for AWS configuration security.

    Python
    Auf GitHub ansehen↗108
  • pixee/codemodder-javaAvatar von pixee

    pixee/codemodder-java

    41Auf GitHub ansehen↗

    a framework for building java codemods

    Pluggable framework for building expressive code modifications.

    Java
    Auf GitHub ansehen↗41
  • nickthesecuritydude/aws-securityhub-cis-compliance-automationAvatar von NickTheSecurityDude

    NickTheSecurityDude/AWS-SecurityHub-CIS-Compliance-Automation

    40Auf GitHub ansehen↗

    This script will help you achieve 100%, or nearly 100%, compliance.

    Automates CIS and PCI compliance for AWS accounts.

    Python
    Auf GitHub ansehen↗40
  • cesar-rodriguez/terrascanAvatar von cesar-rodriguez

    cesar-rodriguez/terrascan

    3Auf GitHub ansehen↗

    Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

    Static analysis for Terraform security and best practices.

    Auf GitHub ansehen↗3
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Infrastructure Security