Skyscanner / cfripper
Library and CLI tool for analysing CloudFormation templates and check them for security compliance.
☆399Updated last week
Related projects ⓘ
Alternatives and complementary repositories for cfripper
- AWS Serverless Security☆400Updated 2 years ago
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆887Updated 2 years ago
- Aardvark is a multi-account AWS IAM Access Advisor API☆473Updated 3 weeks ago
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆224Updated last year
- Parse and Process AWS IAM Policies, Statements, ARNs, and wildcards.☆428Updated 4 months ago
- AWS IAM linting library☆1,046Updated 3 months ago
- Open source application to instantly remediate common security issues through the use of AWS Config☆222Updated 4 years ago
- AWS Inventory and Compliance Framework☆223Updated last year
- Manage AWS Config Rules at scale in AWS multi-account and/or multi-region environment; with fully configurable deployment (RuleSets) and …☆276Updated 4 years ago
- Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.☆529Updated 7 months ago
- Discover resources created in an AWS account.☆708Updated 7 months ago
- This repository can be used to generate and evaluate findings detected by Amazon GuardDuty☆345Updated 4 months ago
- A command-line tool to get valuable information out of AWS CloudTrail☆794Updated this week
- AWS IAM policy generation from application code☆170Updated 10 months ago
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆436Updated last year
- Resource types that can be publicly exposed on AWS☆317Updated 2 years ago
- Linting tool for CloudFormation templates☆1,260Updated 3 months ago
- The AWS Config Rules Development Kit helps developers set up, author and test custom Config rules. It contains scripts to enable AWS Conf…☆461Updated this week
- This script automates the process of running the Security Hub multi-account workflow across a group of accounts that are in your control☆271Updated 10 months ago
- A project to collate IAM actions, AWS APIs and managed policies from various public sources.☆291Updated this week
- Self-service creation and deletion of sandbox-style accounts.☆344Updated last year
- This script automates the process of running the GuardDuty multi-account workflow across a group of accounts that are in your control☆130Updated 2 months ago
- [MAMIP] Monitor AWS Managed IAM Policies Changes☆477Updated this week
- Assume AWS IAM roles from GitHub Actions workflows with no stored secrets☆174Updated 3 years ago
- Open source demos, concept and guidance related to the AWS CIS Foundation framework.☆617Updated 4 years ago
- AWS Organizations Service Control Policies (SCPs) written in HashiCorp Terraform.☆232Updated last month
- Automatically tag AWS resources on creation, for cost assignment☆463Updated 7 months ago
- Scans your AWS cloud resources and generates reports. Check out free hosted version:☆277Updated 3 years ago
- AWS CloudSaga - Simulate security events in AWS☆442Updated this week