Netflix-Skunkworks / aardvark
Aardvark is a multi-account AWS IAM Access Advisor API
☆473Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for aardvark
- AWS Least Privilege for Distributed, High-Velocity Deployment☆1,120Updated last year
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆887Updated 2 years ago
- Open source demos, concept and guidance related to the AWS CIS Foundation framework.☆617Updated 4 years ago
- AWS IAM linting library☆1,046Updated 3 months ago
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆436Updated last year
- Manage AWS Config Rules at scale in AWS multi-account and/or multi-region environment; with fully configurable deployment (RuleSets) and …☆276Updated 4 years ago
- Parse and Process AWS IAM Policies, Statements, ARNs, and wildcards.☆428Updated 4 months ago
- Discover resources created in an AWS account.☆708Updated 7 months ago
- Open source application to instantly remediate common security issues through the use of AWS Config☆222Updated 4 years ago
- A command-line tool to get valuable information out of AWS CloudTrail☆794Updated this week
- The AWS Config Rules Development Kit helps developers set up, author and test custom Config rules. It contains scripts to enable AWS Conf…☆461Updated this week
- AWS Inventory and Compliance Framework☆223Updated last year
- Visualize your aws security groups.☆697Updated last month
- Library and CLI tool for analysing CloudFormation templates and check them for security compliance.☆399Updated last week
- AWS Security Tools (AST) in a simple Docker container.☆285Updated 3 years ago
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆224Updated last year
- Automatically tag AWS resources on creation, for cost assignment☆463Updated 7 months ago
- Collection of scripts and resources for DevSecOps and Automated Incident Response Security☆620Updated 3 years ago
- AWS Serverless Security☆400Updated 2 years ago
- This repository can be used to generate and evaluate findings detected by Amazon GuardDuty☆345Updated 4 months ago
- Scans your AWS cloud resources and generates reports. Check out free hosted version:☆277Updated 3 years ago
- Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.☆529Updated 7 months ago
- AWS Identity and Access Management Visualizer and Anomaly Finder☆288Updated 4 months ago
- This script automates the process of running the Security Hub multi-account workflow across a group of accounts that are in your control☆271Updated 10 months ago
- Self-service creation and deletion of sandbox-style accounts.☆344Updated last year
- This script automates the process of running the GuardDuty multi-account workflow across a group of accounts that are in your control☆130Updated 2 months ago
- AWS Organizations Service Control Policies (SCPs) written in HashiCorp Terraform.☆232Updated last month
- A project to collate IAM actions, AWS APIs and managed policies from various public sources.☆291Updated this week