mirror of
https://github.com/toniblyx/my-arsenal-of-aws-security-tools.git
synced 2025-12-17 08:04:20 +01:00
Sorted list by popularity ⭐️
This commit is contained in:
@@ -23,17 +23,18 @@ Do you want to contribute to this list? Feel free to send a PR and make sure you
|
||||
## Defensive: Hardening, Security Assessment and Inventory
|
||||
| Name | URL | Description | Popularity | Metadata |
|
||||
| ---------- | :---------- | :---------- | :----------: | :----------: |
|
||||
| **ScoutSuite** | [https://github.com/nccgroup/ScoutSuite](https://github.com/nccgroup/ScoutSuite) | Multi-Cloud Security auditing tool for AWS Google Cloud and Azure environments (python) |[](https://badgen.net/github/stars/nccgroup/ScoutSuite)| [](https://badgen.net/github/contributors/nccgroup/ScoutSuite)[](https://badgen.net/github/watchers/nccgroup/ScoutSuite)[](https://badgen.net/github/last-commit/nccgroup/ScoutSuite) [](https://badgen.net/github/open-issues/nccgroup/ScoutSuite) [](https://badgen.net/github/closed-issues/nccgroup/ScoutSuite) |
|
||||
| **Prowler** | [https://github.com/toniblyx/prowler](https://github.com/toniblyx/prowler) | CIS benchmarks and additional checks for security best practices in AWS (bash and python components) |[](https://badgen.net/github/stars/toniblyx/prowler)| [](https://badgen.net/github/contributors/toniblyx/prowler)[](https://badgen.net/github/watchers/toniblyx/prowler)[](https://badgen.net/github/last-commit/toniblyx/prowler) [](https://badgen.net/github/open-issues/toniblyx/prowler) [](https://badgen.net/github/closed-issues/toniblyx/prowler) |
|
||||
| **CloudSploit Scans** | [https://github.com/cloudsploit/scans](https://github.com/cloudsploit/scans) | AWS security scanning checks (NodeJS) |[](https://badgen.net/github/stars/cloudsploit/scans)| [](https://badgen.net/github/contributors/cloudsploit/scans)[](https://badgen.net/github/watchers/cloudsploit/scans)[](https://badgen.net/github/last-commit/cloudsploit/scans) [](https://badgen.net/github/open-issues/cloudsploit/scans) [](https://badgen.net/github/closed-issues/cloudsploit/scans) |
|
||||
| **CloudMapper** | [https://github.com/duo-labs/cloudmapper](https://github.com/duo-labs/cloudmapper) | helps you analyze your AWS environments (Python) |[](https://badgen.net/github/stars/duo-labs/cloudmapper)| [](https://badgen.net/github/contributors/duo-labs/cloudmapper)[](https://badgen.net/github/watchers/duo-labs/cloudmapper)[](https://badgen.net/github/last-commit/duo-labs/cloudmapper) [](https://badgen.net/github/open-issues/duo-labs/cloudmapper) [](https://badgen.net/github/closed-issues/duo-labs/cloudmapper) |
|
||||
| **CloudCustodian** | [https://github.com/cloud-custodian/cloud-custodian/](https://github.com/cloud-custodian/cloud-custodian/) | Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources |[](https://badgen.net/github/stars/cloud-custodian/cloud-custodian/)| [](https://badgen.net/github/contributors/cloud-custodian/cloud-custodian/)[](https://badgen.net/github/watchers/cloud-custodian/cloud-custodian/)[](https://badgen.net/github/last-commit/cloud-custodian/cloud-custodian/) [](https://badgen.net/github/open-issues/cloud-custodian/cloud-custodian/) [](https://badgen.net/github/closed-issues/cloud-custodian/cloud-custodian/) |
|
||||
| **ScoutSuite** | [https://github.com/nccgroup/ScoutSuite](https://github.com/nccgroup/ScoutSuite) | Multi-Cloud Security auditing tool for AWS Google Cloud and Azure environments (python) |[](https://badgen.net/github/stars/nccgroup/ScoutSuite)| [](https://badgen.net/github/contributors/nccgroup/ScoutSuite)[](https://badgen.net/github/watchers/nccgroup/ScoutSuite)[](https://badgen.net/github/last-commit/nccgroup/ScoutSuite) [](https://badgen.net/github/open-issues/nccgroup/ScoutSuite) [](https://badgen.net/github/closed-issues/nccgroup/ScoutSuite) |
|
||||
| **ICE** | [https://github.com/Teevity/ice](https://github.com/Teevity/ice) | Ice provides insights from a usage and cost perspective with high detail dashboards. |[](https://badgen.net/github/stars/Teevity/ice)| [](https://badgen.net/github/contributors/Teevity/ice)[](https://badgen.net/github/watchers/Teevity/ice)[](https://badgen.net/github/last-commit/Teevity/ice) [](https://badgen.net/github/open-issues/Teevity/ice) [](https://badgen.net/github/closed-issues/Teevity/ice) |
|
||||
| **CloudSploit Scans** | [https://github.com/cloudsploit/scans](https://github.com/cloudsploit/scans) | AWS security scanning checks (NodeJS) |[](https://badgen.net/github/stars/cloudsploit/scans)| [](https://badgen.net/github/contributors/cloudsploit/scans)[](https://badgen.net/github/watchers/cloudsploit/scans)[](https://badgen.net/github/last-commit/cloudsploit/scans) [](https://badgen.net/github/open-issues/cloudsploit/scans) [](https://badgen.net/github/closed-issues/cloudsploit/scans) |
|
||||
| **CloudTracker** | [https://github.com/duo-labs/cloudtracker](https://github.com/duo-labs/cloudtracker) | helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies (Python) |[](https://badgen.net/github/stars/duo-labs/cloudtracker)| [](https://badgen.net/github/contributors/duo-labs/cloudtracker)[](https://badgen.net/github/watchers/duo-labs/cloudtracker)[](https://badgen.net/github/last-commit/duo-labs/cloudtracker) [](https://badgen.net/github/open-issues/duo-labs/cloudtracker) [](https://badgen.net/github/closed-issues/duo-labs/cloudtracker) |
|
||||
| **AWS Security Benchmarks** | [https://github.com/awslabs/aws-security-benchmark](https://github.com/awslabs/aws-security-benchmark) | scripts and templates guidance related to the AWS CIS Foundation framework (Python) |[](https://badgen.net/github/stars/awslabs/aws-security-benchmark)| [](https://badgen.net/github/contributors/awslabs/aws-security-benchmark)[](https://badgen.net/github/watchers/awslabs/aws-security-benchmark)[](https://badgen.net/github/last-commit/awslabs/aws-security-benchmark) [](https://badgen.net/github/open-issues/awslabs/aws-security-benchmark) [](https://badgen.net/github/closed-issues/awslabs/aws-security-benchmark) |
|
||||
| **AWS Public IPs** | [https://github.com/arkadiyt/aws_public_ips](https://github.com/arkadiyt/aws_public_ips) | Fetch all public IP addresses tied to your AWS account. Works with IPv4/IPv6 Classic/VPC networking and across all AWS services (Ruby) |[](https://badgen.net/github/stars/arkadiyt/aws_public_ips)| [](https://badgen.net/github/contributors/arkadiyt/aws_public_ips)[](https://badgen.net/github/watchers/arkadiyt/aws_public_ips)[](https://badgen.net/github/last-commit/arkadiyt/aws_public_ips) [](https://badgen.net/github/open-issues/arkadiyt/aws_public_ips) [](https://badgen.net/github/closed-issues/arkadiyt/aws_public_ips) |
|
||||
| **PMapper** | [https://github.com/nccgroup/PMapper](https://github.com/nccgroup/PMapper) | Advanced and Automated AWS IAM Evaluation (Python) |[](https://badgen.net/github/stars/nccgroup/PMapper)| [](https://badgen.net/github/contributors/nccgroup/PMapper)[](https://badgen.net/github/watchers/nccgroup/PMapper)[](https://badgen.net/github/last-commit/nccgroup/PMapper) [](https://badgen.net/github/open-issues/nccgroup/PMapper) [](https://badgen.net/github/closed-issues/nccgroup/PMapper) |
|
||||
| **nccgroup AWS-Inventory** | [https://github.com/nccgroup/aws-inventory](https://github.com/nccgroup/aws-inventory) | Make a inventory of all your resources across regions (Python) |[](https://badgen.net/github/stars/nccgroup/aws-inventory)| [](https://badgen.net/github/contributors/nccgroup/aws-inventory)[](https://badgen.net/github/watchers/nccgroup/aws-inventory)[](https://badgen.net/github/last-commit/nccgroup/aws-inventory) [](https://badgen.net/github/open-issues/nccgroup/aws-inventory) [](https://badgen.net/github/closed-issues/nccgroup/aws-inventory) |
|
||||
| **Resource Counter** | [https://github.com/disruptops/resource-counter](https://github.com/disruptops/resource-counter) | Counts number of resources in categories across regions |[](https://badgen.net/github/stars/disruptops/resource-counter)| [](https://badgen.net/github/contributors/disruptops/resource-counter)[](https://badgen.net/github/watchers/disruptops/resource-counter)[](https://badgen.net/github/last-commit/disruptops/resource-counter) [](https://badgen.net/github/open-issues/disruptops/resource-counter) [](https://badgen.net/github/closed-issues/disruptops/resource-counter) |
|
||||
| **ICE** | [https://github.com/Teevity/ice](https://github.com/Teevity/ice) | Ice provides insights from a usage and cost perspective with high detail dashboards. |[](https://badgen.net/github/stars/Teevity/ice)| [](https://badgen.net/github/contributors/Teevity/ice)[](https://badgen.net/github/watchers/Teevity/ice)[](https://badgen.net/github/last-commit/Teevity/ice) [](https://badgen.net/github/open-issues/Teevity/ice) [](https://badgen.net/github/closed-issues/Teevity/ice) |
|
||||
| **SkyArk** | [https://github.com/cyberark/SkyArk](https://github.com/cyberark/SkyArk) | SkyArk provides advanced discovery and security assessment for the most privileged entities in the tested AWS. |[](https://badgen.net/github/stars/cyberark/SkyArk)| [](https://badgen.net/github/contributors/cyberark/SkyArk)[](https://badgen.net/github/watchers/cyberark/SkyArk)[](https://badgen.net/github/last-commit/cyberark/SkyArk) [](https://badgen.net/github/open-issues/cyberark/SkyArk) [](https://badgen.net/github/closed-issues/cyberark/SkyArk) |
|
||||
| **Trailblazer AWS** | [https://github.com/willbengtson/trailblazer-aws](https://github.com/willbengtson/trailblazer-aws) | Trailblazer AWS determine what AWS API calls are logged by CloudTrail and what they are logged as. You can also use TrailBlazer as an attack simulation framework. |[](https://badgen.net/github/stars/willbengtson/trailblazer-aws)| [](https://badgen.net/github/contributors/willbengtson/trailblazer-aws)[](https://badgen.net/github/watchers/willbengtson/trailblazer-aws)[](https://badgen.net/github/last-commit/willbengtson/trailblazer-aws) [](https://badgen.net/github/open-issues/willbengtson/trailblazer-aws) [](https://badgen.net/github/closed-issues/willbengtson/trailblazer-aws) |
|
||||
| **Lunar** | [https://github.com/lateralblast/lunar](https://github.com/lateralblast/lunar) | Security auditing tool based on several security frameworks (it does some AWS checks) |[](https://badgen.net/github/stars/lateralblast/lunar)| [](https://badgen.net/github/contributors/lateralblast/lunar)[](https://badgen.net/github/watchers/lateralblast/lunar)[](https://badgen.net/github/last-commit/lateralblast/lunar) [](https://badgen.net/github/open-issues/lateralblast/lunar) [](https://badgen.net/github/closed-issues/lateralblast/lunar) |
|
||||
@@ -115,7 +116,6 @@ Do you want to contribute to this list? Feel free to send a PR and make sure you
|
||||
| **Security Monkey** | [https://github.com/Netflix/security_monkey](https://github.com/Netflix/security_monkey) | |[](https://badgen.net/github/stars/Netflix/security_monkey)| [](https://badgen.net/github/contributors/Netflix/security_monkey)[](https://badgen.net/github/watchers/Netflix/security_monkey)[](https://badgen.net/github/last-commit/Netflix/security_monkey) [](https://badgen.net/github/open-issues/Netflix/security_monkey) [](https://badgen.net/github/closed-issues/Netflix/security_monkey) |
|
||||
| **Krampus** | [https://github.com/sendgrid/krampus](https://github.com/sendgrid/krampus) | |[](https://badgen.net/github/stars/sendgrid/krampus)| [](https://badgen.net/github/contributors/sendgrid/krampus)[](https://badgen.net/github/watchers/sendgrid/krampus)[](https://badgen.net/github/last-commit/sendgrid/krampus) [](https://badgen.net/github/open-issues/sendgrid/krampus) [](https://badgen.net/github/closed-issues/sendgrid/krampus) |
|
||||
| **Cloud Inquisitor** | [https://github.com/RiotGames/cloud-inquisitor](https://github.com/RiotGames/cloud-inquisitor) | |[](https://badgen.net/github/stars/RiotGames/cloud-inquisitor)| [](https://badgen.net/github/contributors/RiotGames/cloud-inquisitor)[](https://badgen.net/github/watchers/RiotGames/cloud-inquisitor)[](https://badgen.net/github/last-commit/RiotGames/cloud-inquisitor) [](https://badgen.net/github/open-issues/RiotGames/cloud-inquisitor) [](https://badgen.net/github/closed-issues/RiotGames/cloud-inquisitor) |
|
||||
| **CloudCustodian** | [https://github.com/cloud-custodian/cloud-custodian/](https://github.com/cloud-custodian/cloud-custodian/) | Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources |[](https://badgen.net/github/stars/cloud-custodian/cloud-custodian/)| [](https://badgen.net/github/contributors/cloud-custodian/cloud-custodian/)[](https://badgen.net/github/watchers/cloud-custodian/cloud-custodian/)[](https://badgen.net/github/last-commit/cloud-custodian/cloud-custodian/) [](https://badgen.net/github/open-issues/cloud-custodian/cloud-custodian/) [](https://badgen.net/github/closed-issues/cloud-custodian/cloud-custodian/) |
|
||||
| **Disable keys after X days** | [https://github.com/te-papa/aws-key-disabler](https://github.com/te-papa/aws-key-disabler) | |[](https://badgen.net/github/stars/te-papa/aws-key-disabler)| [](https://badgen.net/github/contributors/te-papa/aws-key-disabler)[](https://badgen.net/github/watchers/te-papa/aws-key-disabler)[](https://badgen.net/github/last-commit/te-papa/aws-key-disabler) [](https://badgen.net/github/open-issues/te-papa/aws-key-disabler) [](https://badgen.net/github/closed-issues/te-papa/aws-key-disabler) |
|
||||
| **Repokid Least Privilege** | [https://github.com/Netflix/repokid](https://github.com/Netflix/repokid) | |[](https://badgen.net/github/stars/Netflix/repokid)| [](https://badgen.net/github/contributors/Netflix/repokid)[](https://badgen.net/github/watchers/Netflix/repokid)[](https://badgen.net/github/last-commit/Netflix/repokid) [](https://badgen.net/github/open-issues/Netflix/repokid) [](https://badgen.net/github/closed-issues/Netflix/repokid) |
|
||||
| **Wazuh CloudTrail module** | [https://github.com/wazuh/wazuh](https://github.com/wazuh/wazuh) | |[](https://badgen.net/github/stars/wazuh/wazuh)| [](https://badgen.net/github/contributors/wazuh/wazuh)[](https://badgen.net/github/watchers/wazuh/wazuh)[](https://badgen.net/github/last-commit/wazuh/wazuh) [](https://badgen.net/github/open-issues/wazuh/wazuh) [](https://badgen.net/github/closed-issues/wazuh/wazuh) |
|
||||
|
||||
Reference in New Issue
Block a user