aws / http-desync-guardian
Analyze HTTP requests to minimize risks of HTTP Desync attacks (precursor for HTTP request smuggling/splitting).
☆264Updated 4 years ago
Alternatives and similar repositories for http-desync-guardian:
Users that are interested in http-desync-guardian are comparing it to the libraries listed below
- ☆130Updated 3 weeks ago
- A command line interface for Amazon EBS snapshots☆219Updated last week
- Resource types that can be publicly exposed on AWS☆324Updated 3 years ago
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆142Updated last year
- No need for IAM users when we have Yubikeys☆158Updated 2 years ago
- for AWS Security material☆246Updated 2 years ago
- OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws☆324Updated 7 months ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 5 years ago
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆225Updated last year
- AWS Inventory and Compliance Framework☆224Updated last year
- IAM-Deescalate helps mitigate privilege escalation risk in AWS identity and access management (IAM)☆98Updated 2 years ago
- Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.☆541Updated 2 months ago
- Rust libraries and tools for using and generating TUF repositories☆205Updated last week
- A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.☆907Updated 5 years ago
- Research on the enumeration of IAM permissions without logging to CloudTrail☆60Updated 3 years ago
- ☆217Updated 3 months ago
- Cloud Conformity Auto Remediate☆156Updated last month
- Aardvark is a multi-account AWS IAM Access Advisor API☆474Updated 5 months ago
- An AWS tool to help you create a point in time assessment of your AWS account using Prowler.☆534Updated last month
- [MAMIP] Monitor AWS Managed IAM Policies Changes☆480Updated this week
- Parse and Process AWS IAM Policies, Statements, ARNs, and wildcards.☆433Updated 9 months ago
- ☆154Updated last year
- S3 Account Search☆269Updated 5 months ago
- k8s audit repo☆227Updated 5 years ago
- A small lambda script that will disable access keys older than a given amount of days.☆152Updated 2 years ago
- AWS Security Tools (AST) in a simple Docker container.☆287Updated 3 years ago
- rpCheckup is an AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, …☆160Updated 3 years ago
- A tool for identifying misconfigured CloudFront domains☆350Updated 4 years ago
- Security aspects of AWS products for the Security Specialist certification☆208Updated 2 years ago
- Tools for fingerprinting and exploiting Amazon cloud infrastructures☆462Updated 2 years ago