awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
duo-labs avatar

duo-labs/cloudmapper

0
View on GitHub↗
6,259 stars·840 forks·JavaScript·bsd-3-clause·17 views

Cloudmapper

Features

  • AWS - Scans an AWS account for misconfigurations and security risks, presenting findings in an interactive graph.
  • Cloud Resource Scanners - Identifies S3 buckets, ECR repositories, SQS queues, SNS topics, and Redshift clusters that are exposed to the public internet.
  • Graph Relationship Modeling - Represents AWS resources and their relationships as a directed graph for visual exploration and security analysis.
  • Multi-Service Public Exposure Auditors - Scans S3 buckets, ECR repos, SQS queues, SNS topics, and Redshift clusters for public exposure.
  • Credential Auditors - Lists access keys and passwords that have not been used for a configurable period or have never been used.
  • Data Collection Clients - Pulls account metadata and resource configurations directly through AWS SDK calls without requiring an agent.
  • Cloud Infrastructure Visualization - Renders AWS resources and their relationships as an interactive graph for exploration and analysis.
  • IAM Policy Auditors - Scans IAM policies against known flawed patterns and flags policies that allow unintended privilege escalation.
  • IAM Policy Analyzers - Simulates policy evaluation paths to detect unintended permission chains that could allow privilege escalation.
  • Static Security Auditing - Evaluates security settings by comparing collected resource states against predefined rules without runtime monitoring.
  • Configuration Verifiers - Verifies that CloudTrail is enabled in all regions and that GuardDuty is active.
  • Compliance and Monitoring - Checks AWS configurations against security best practices such as CloudTrail logging, GuardDuty activation, and MFA enforcement.
  • Interactive Graph Visualizers - Renders the infrastructure graph in a browser using JavaScript for zooming, panning, and filtering relationships.
  • Multi-Account Orchestration - Combines data from multiple AWS accounts into a unified view for cross-account security auditing.
  • Compliance Checkers - Reports users who lack MFA, have password-only logins, or are protected by an incorrect MFA enforcement policy.
  • Trust Policy Auditors - Warns when a role's trust policy allows assumption from any AWS account or from unexpected principals.
  • AWS Security - Analysis tool for AWS environment security.
  • Cloud Security Tooling and Automation - Visualization and analysis tool for cloud environments.
  • Cloud Security - Analyzes AWS environments for security posture.
  • Security Assessment Tools - Analyzes AWS environments for security and configuration issues.

Star history

Star history chart for duo-labs/cloudmapperStar history chart for duo-labs/cloudmapper

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with Cloudmapper

These projects share indexed features with Cloudmapper. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • rhinosecuritylabs/pacuRhinoSecurityLabs avatar

    RhinoSecurityLabs/pacu

    5,234View on GitHub↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    View on GitHub↗5,234
  • toniblyx/prowlertoniblyx avatar

    toniblyx/prowler

    14,005View on GitHub↗

    Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance assessments across multiple cloud environments to identify misconfigurations and vulnerabilities. The project provides a multi-cloud security analysis engine that operates as an automated auditor, evaluating infrastructure against industry-standard regulatory frameworks and security benchmarks. It features a cloud security visualization dashboard that uses a graph database to map cloud inventory and visualize potential attack paths. Capabilities include automated cloud infrast

    Python
    View on GitHub↗14,005
  • nccgroup/scoutsuitenccgroup avatar

    nccgroup/ScoutSuite

    7,548View on GitHub↗

    ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and misconfigurations across cloud environments. It functions as a security posture manager and compliance auditor, gathering resource metadata from cloud APIs to evaluate infrastructure against security benchmarks. The tool provides auditing capabilities for AWS, Google Cloud, DigitalOcean, and Kubernetes clusters and control planes. It distinguishes itself by decoupling data collection from analysis, allowing users to cache cloud configurations locally for offline auditing and iterative rul

    Pythonauditingawsazure
    View on GitHub↗7,548
  • globaldatanet/aws-firewall-factoryglobaldatanet avatar

    globaldatanet/aws-firewall-factory

    256View on GitHub↗

    Enhance the security of your web applications effortlessly with AWS Firewall Factory. Safeguard your valuable assets through seamless WAF deployment, updates, and staging, all centrally managed with AWS Firewall Manager.

    TypeScript
    View on GitHub↗256
Compare all 30 related projects→

Frequently asked questions

What are the main features of duo-labs/cloudmapper?

The main features of duo-labs/cloudmapper are: AWS, Cloud Resource Scanners, Graph Relationship Modeling, Multi-Service Public Exposure Auditors, Credential Auditors, Data Collection Clients, Cloud Infrastructure Visualization, IAM Policy Auditors.

Which projects share features with duo-labs/cloudmapper?

Projects with overlapping indexed features include: rhinosecuritylabs/pacu — Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments.… toniblyx/prowler — Prowler is a multi-cloud security scanner and security posture management tool. It automates security and compliance… nccgroup/scoutsuite — ScoutSuite is a multi-cloud security audit and configuration tool designed to identify security risks and… awslabs/aws-security-benchmark — Open source demos, concept and guidance related to the AWS CIS Foundation framework. globaldatanet/aws-firewall-factory — Enhance the security of your web applications effortlessly with AWS Firewall Factory. Safeguard your valuable assets… nccgroup/aws-inventory — Discover resources created in an AWS account.