awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Netflix avatar

Netflix/security_monkeyArchived

0
View on GitHub↗
4,370 stars·781 forks·Python·Apache-2.0·13 views

Security Monkey

Security Monkey is a cloud security posture management tool and configuration auditor. It functions as a monitoring platform that tracks cloud assets and records state changes to identify when security policies are altered or insecure configurations are introduced.

The system maintains a multi-cloud asset inventory, tracking resources across AWS, GCP, OpenStack, and GitHub organizations. It provides a centralized interface for searching and browsing assets across multiple cloud providers and regions.

The platform covers cloud security auditing and infrastructure change tracking by comparing historical states of resources to detect configuration drift. It utilizes provider-based discovery and unified resource indexing to monitor assets and policies over time.

Features

  • Cloud Security Monitoring - Audits and monitors cloud infrastructure configurations and permissions to detect insecure settings over time.
  • Cloud Asset Discoverers - Queries cloud provider APIs to identify, list, and track infrastructure resources across multiple environments.
  • State Snapshots - Detects configuration drift by comparing current resource states against stored historical snapshots.
  • Cloud Asset Inventory Managers - Maintains a global inventory of assets by consolidating resource lists from AWS, GCP, OpenStack, and GitHub.
  • Infrastructure Change Tracking - Records and compares historical states of cloud resources to identify precisely how configurations were modified.
  • Cloud Resource Inventory - Catalogs and tracks deployed cloud infrastructure components across multiple providers in a centralized inventory.
  • Unified Resource Models - Normalizes disparate data formats from multiple cloud providers into a consistent model for cross-platform security auditing.
  • Cloud Infrastructure Security Auditors - Analyzes multi-cloud resource configurations against security rules to identify when policies are altered.
  • Cloud Security Posture Management - Tracks and visualizes the security state of cloud accounts to detect insecure configurations and prioritize risk.
  • Cloud Asset Discovery Plugins - Utilizes provider-specific connector plugins to discover assets and fetch configurations from cloud and version control APIs.
  • Administrative Change Auditing - Maintains a verifiable history of administrative configuration changes to track when security policies were altered.
  • Configuration Delta Monitoring - Monitors assets and policy changes over time to detect insecure configurations and compliance drift.
  • Cloud Resource Search - Provides a unified interface to search and browse cloud resources across different providers, regions, and accounts.
  • Detector-Based Plugin Architectures - Implements a modular architecture where individual security vulnerability checks are developed as independent detector plugins.
  • Resource Change Monitors - Schedules periodic scans to monitor and alert on configuration changes and resource drift across cloud accounts.
  • Infrastructure Services - Monitors cloud infrastructure for security and configuration changes.
  • Systems And Services - Listed in the “Systems And Services” section of the The Book Of Secret Knowledge awesome list.

Star history

Star history chart for netflix/security_monkeyStar history chart for netflix/security_monkey

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does netflix/security_monkey do?

Security Monkey is a cloud security posture management tool and configuration auditor. It functions as a monitoring platform that tracks cloud assets and records state changes to identify when security policies are altered or insecure configurations are introduced.

What are the main features of netflix/security_monkey?

The main features of netflix/security_monkey are: Cloud Security Monitoring, Cloud Asset Discoverers, State Snapshots, Cloud Asset Inventory Managers, Infrastructure Change Tracking, Cloud Resource Inventory, Unified Resource Models, Cloud Infrastructure Security Auditors.

Which projects share features with netflix/security_monkey?

Projects with overlapping indexed features include: projectdiscovery/subfinder — Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It… mlabouardy/komiser — Komiser is a multi-cloud infrastructure inspector and asset inventory manager. It provides a centralized system for… projectdiscovery/naabu — Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to… cloudsploit/scans — This project is a multi-cloud security auditor and configuration audit tool designed to identify misconfigurations and… cloudquery/cloudquery — CloudQuery is a cloud infrastructure ETL tool and multi-cloud data pipeline designed to collect, synchronize, and… alfresco/prowler — Prowler is a multi-cloud security posture management platform and vulnerability scanner. It provides tools for…

Projects sharing features with Security Monkey

These projects share indexed features with Security Monkey. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • projectdiscovery/subfinderprojectdiscovery avatar

    projectdiscovery/subfinder

    13,105View on GitHub↗

    Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It functions as a discovery engine that identifies and maps internet-exposed infrastructure, cloud-hosted assets, and network ranges to maintain a comprehensive inventory of an organization's digital footprint. The project distinguishes itself through a modular, template-driven scanning engine that executes security checks against discovered assets. It leverages cloud-native asset discovery to query provider APIs and infrastructure metadata, while supporting distributed agent orc

    Gobugbountyhackinghacktoberfest
    View on GitHub↗13,105
  • mlabouardy/komisermlabouardy avatar

    mlabouardy/komiser

    4,133View on GitHub↗

    Komiser is a multi-cloud infrastructure inspector and asset inventory manager. It provides a centralized system for auditing, cataloging, and analyzing deployed services and assets across AWS, GCP, and Azure environments. The project transforms disparate resource schemas from different cloud vendors into a unified structural representation through a provider-based plugin architecture. It uses agentless API inspection and polling-based resource discovery to retrieve metadata and configuration states without requiring agents on target resources. The platform covers financial management via cos

    Go
    View on GitHub↗4,133
  • projectdiscovery/naabuprojectdiscovery avatar

    projectdiscovery/naabu

    5,766View on GitHub↗

    Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet

    Gocdn-exclusionhacktoberfestnmap
    View on GitHub↗5,766
  • cloudquery/cloudquerycloudquery avatar

    cloudquery/cloudquery

    6,438View on GitHub↗

    CloudQuery is a cloud infrastructure ETL tool and multi-cloud data pipeline designed to collect, synchronize, and normalize resource metadata from various cloud providers and SaaS platforms. It functions as a centralized asset inventory manager and security posture manager, extracting configuration and state data into relational databases, data lakes, or data warehouses. The system distinguishes itself by transforming complex, nested cloud API responses into flat relational tables, enabling the use of standard SQL for asset querying and analysis. It employs a modular plugin system for data ex

    Goairbyteattack-surface-managementaws
    View on GitHub↗6,438
Compare all 30 related projects→