ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and misconfigurations across cloud environments. It functions as a security posture manager and compliance auditor, gathering resource metadata from cloud APIs to evaluate infrastructure against security benchmarks. The tool provides auditing capabilities for AWS, Google Cloud, DigitalOcean, and Kubernetes clusters and control planes. It distinguishes itself by decoupling data collection from analysis, allowing users to cache cloud configurations locally for offline auditing and iterative rul
Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance assessments across multiple cloud environments to identify misconfigurations and vulnerabilities. The project provides a multi-cloud security analysis engine that operates as an automated auditor, evaluating infrastructure against industry-standard regulatory frameworks and security benchmarks. It features a cloud security visualization dashboard that uses a graph database to map cloud inventory and visualize potential attack paths. Capabilities include automated cloud infrast
SkyArk helps to discover, assess and secure the most privileged entities in Azure and AWS
Open source demos, concept and guidance related to the AWS CIS Foundation framework.
awslabs/aws-security-benchmark की मुख्य विशेषताएं हैं: Cloud Security Tooling and Automation, Cloud Security, Security Assessment Tools।
awslabs/aws-security-benchmark के ओपन-सोर्स विकल्पों में शामिल हैं: toniblyx/prowler — Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance… nccgroup/scoutsuite — ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and… duo-labs/cloudmapper. darkbitio/aws-recon — Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata. cyberark/skywrapper — SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS. cloudsploit/scans — This project is a multi-cloud security auditor and configuration audit tool designed to identify misconfigurations and…