aquia-inc / aws-guardduty-runbook-generator
Generates runbooks for GuardDuty findings
☆35Updated 8 months ago
Alternatives and similar repositories for aws-guardduty-runbook-generator:
Users that are interested in aws-guardduty-runbook-generator are comparing it to the libraries listed below
- Convert cloudtrail data to MITRE ATT&CK Sightings☆79Updated 2 years ago
- https://breaches.cloud☆38Updated 5 months ago
- ☆41Updated last year
- Safer AWS SCP deployments via real-time monitoring☆50Updated last year
- ☆29Updated 4 months ago
- ☆29Updated 4 months ago
- ☆112Updated 2 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated 5 months ago
- Compares and analyzes GCP IAM roles.☆77Updated last week
- Scripts to quickly fix security and compliance issues☆26Updated last year
- AWS SSO Reporter☆54Updated last year
- ☆47Updated 4 months ago
- Listing of resources for example AWS Service Control Policies (SCPs)☆16Updated last year
- An AWS IAM policy statement parser and query tool.☆174Updated last year
- ☆38Updated 4 months ago
- Deliberately vulnerable AWS resources for security assessment demos☆31Updated 2 years ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆146Updated last month
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆91Updated last year
- ☆12Updated last year
- Identify all permitted data paths originating from the Internet to Network Interfaces within AWS Accounts across the entire AWS Organizat…☆38Updated last year
- Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆51Updated 4 months ago
- Crowdsourced list of sensitive IAM Actions☆142Updated 4 months ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆69Updated 10 months ago
- Coalfire AWS RAMP/pak Reference Architecture☆36Updated 6 months ago
- Detect publicly accessible Lambda Function URLs in your AWS account☆9Updated 2 years ago
- AWS honey token manager☆87Updated 7 months ago
- A toolset to juggle AWS roles for persistent access☆54Updated 7 months ago
- ☆43Updated 2 months ago
- To clean up your AWS AMIs: First, include AMIs by name or tag. Second, exclude AMIs in use, younger than N days, or the newest N images. …☆33Updated last month