mozilla / frost
Unit testing framework for test driven security of AWS, GCP, Heroku and more.
☆105Updated last year
Alternatives and similar repositories for frost:
Users that are interested in frost are comparing it to the libraries listed below
- A serverless, event-driven AWS configuration collection service with configuration versioning.☆93Updated 4 years ago
- ☆80Updated 3 years ago
- Cloud multi-account metadata management tool.☆88Updated 4 years ago
- Show the history and changes between configuration versions of AWS resources☆70Updated 5 years ago
- Cloud Auxiliary is a python wrapper and orchestration module for interacting with cloud providers☆76Updated 2 years ago
- Some of my personal rules for CapitalOne's Cloud Custodian project☆43Updated 3 years ago
- Automate the AWS GuardDuty account invitation lifecycle for all of your organizations AWS accounts in all regions as well as aggregate an…☆66Updated last year
- Manheim's Cloud Custodian (c7n) wrapper package, policy generator, runner, and supporting tools.☆45Updated this week
- Validate all your Customer IAM Policies against AWS Access Analyzer - Policy Validation☆43Updated 3 years ago
- A curated list of things relating to CapitalOne's Cloud-custodian project☆89Updated 4 years ago
- A small lambda script that will disable access keys older than a given amount of days.☆152Updated last year
- A static analysis tool for Terraform plans.☆45Updated 2 years ago
- Lambda Extension for iamlive☆42Updated 3 years ago
- Marking instances dirty since 2018☆47Updated 5 years ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆59Updated 3 years ago
- ☆154Updated last year
- No need for IAM users when we have Yubikeys☆158Updated 2 years ago
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆78Updated last month
- Example detection of compromise credentials in AWS☆120Updated 6 years ago
- Glue workflow to convert CloudTrail logs to Athena-friendly Parquet format☆47Updated 9 months ago
- ☆82Updated 5 years ago
- Example of how to run the Clair image scanner on AWS ECS Fargate☆27Updated 6 years ago
- Cloudformation Template and Lambda to detect if Instance Profile credentials are being used outside your AWS Account.☆28Updated 5 years ago
- [WORK IN PROGRESS] A repo containing rule sets for cloud-custodian inside GSA AWS accounts. This repo does not contain cloud-custodian it…☆29Updated 7 years ago
- Simple DLP monitor for AWS S3 is a tool built on top of CloudWatch events and Lambda functions to alert you when data is transferred to S…☆17Updated 4 years ago
- A library of rules for Conftest used to detect misconfigurations within Terraform configuration files☆190Updated 2 years ago
- Enhance the security of the EC2 metadata service. (Obsolete thanks to Instance Metadata Service Version 2, see note in README)☆31Updated 5 years ago
- Run Docker containers within the context of an AWS IAM Role, and other development workflow helpers.☆58Updated 2 months ago
- Checks AWS CloudFormation templates for security, reliability and conformity☆43Updated 4 years ago
- This ansible role gets information from an AWS VPC and generate a graphical representation of security groups☆103Updated 4 years ago