☆376Feb 23, 2024Updated 2 years ago
Alternatives and similar repositories for aws-incident-response
Users that are interested in aws-incident-response are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆159Jul 8, 2023Updated 2 years ago
- ☆1,054Updated this week
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆31Jul 12, 2023Updated 2 years ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆82Jul 25, 2022Updated 3 years ago
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆912Dec 17, 2021Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Example detection of compromise credentials in AWS☆122Aug 6, 2018Updated 7 years ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆175Mar 11, 2026Updated last month
- Resource types that can be publicly exposed on AWS☆331Feb 23, 2022Updated 4 years ago
- Automated Attack Simulation in the Cloud, complete with detection use cases.☆613Nov 28, 2024Updated last year
- Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized repo…☆2,202Apr 11, 2026Updated last week
- A tool for quickly evaluating IAM permissions in AWS.☆1,551Aug 2, 2024Updated last year
- A repository of breaches of AWS customers☆802Mar 30, 2026Updated 2 weeks ago
- Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.☆552Jul 13, 2025Updated 9 months ago
- Supplemental templates for securing the cloud.☆36Mar 29, 2026Updated 2 weeks ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Access Undenied parses AWS AccessDenied CloudTrail events, explains the reasons for them, and offers actionable remediation steps. Open-s…☆268Updated this week
- ☆400Sep 25, 2023Updated 2 years ago
- Automate the daily partitioning of your CloudTrail bucket in Athena☆28Oct 19, 2023Updated 2 years ago
- Proof of concept incident response demo using SSM and AWS Fargate.☆14Dec 5, 2019Updated 6 years ago
- Blazing CloudTrail since 2018☆138Jan 27, 2019Updated 7 years ago
- ☆83Dec 5, 2019Updated 6 years ago
- This command line tool counts the number of resources in different categories across Amazon regions.☆58Dec 17, 2019Updated 6 years ago
- A command-line tool to get valuable information out of AWS CloudTrail☆833Updated this week
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆139Jul 23, 2021Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- AWS Security Analytics Bootstrap enables customers to perform security investigations on AWS service logs by providing an Amazon Athena a…☆273Updated this week
- Fun tools around the EBS Direct API☆20Apr 16, 2021Updated 5 years ago
- Granular, Actionable Adversary Emulation for the Cloud☆2,292Apr 9, 2026Updated last week
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆224Aug 11, 2023Updated 2 years ago
- Python library to carry out DFIR analysis on the Cloud☆502Apr 7, 2026Updated last week
- A catalog of services that can be publicly exposed within different cloud providers.☆14Aug 30, 2024Updated last year
- Glue workflow to convert CloudTrail logs to Athena-friendly Parquet format☆48Apr 25, 2024Updated last year
- AWS IAM linting library☆1,113Jan 7, 2026Updated 3 months ago
- A graph-based tool for visualizing effective access and resource relationships in AWS environments.☆1,002Oct 4, 2022Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Crowdsourced list of sensitive IAM Actions☆159Oct 29, 2024Updated last year
- List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.☆9,431Oct 16, 2025Updated 6 months ago
- AWS Inventory and Compliance Framework☆224Jul 12, 2023Updated 2 years ago
- ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring su…☆1,036Feb 9, 2026Updated 2 months ago
- Built-in Panther detection rules and policies☆446Apr 10, 2026Updated last week
- Collection of scripts and resources for DevSecOps and Automated Incident Response Security☆634Jan 14, 2026Updated 3 months ago
- Python installable command line utiltity for mitigation of host and key compromises.☆346Jul 23, 2021Updated 4 years ago