List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
翻译 - 用于AWS安全的开源工具列表:防御性,攻击性,审计,DFIR等。
Terraform module to create AWS Security Group resources 🇺🇦
Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS Security
This solution automatically deploys a single web access control list (web ACL) with a set of AWS WAF rules designed to filter common web-based attacks.
Open source demos, concept and guidance related to the AWS CIS Foundation framework.
Collection of scripts and resources for DevSecOps and Automated Incident Response Security
Example solutions demonstrating how to implement patterns within the AWS Security Reference Architecture guide using CloudFormation (including Customizations for AWS Control Tower) and Terraform.
Security auditing tool for AWS environments
In this workshop, you will learn techniques to secure a serverless application built with AWS Lambda, Amazon API Gateway and RDS Aurora. We will cover AWS services and features you can leverage to imp...
Visualize your aws security groups.
Security aspects of AWS products for the Security Specialist certification
A collection of the latest AWS Security workshops
Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier f...
AWS Security Webinar - June 2018
Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
翻译 - CloudGoat是Rhino Security Labs的“设计易受攻击” AWS部署工具
Open Source Cloud Native Application Protection Platform (CNAPP)
翻译 - 识别运行容器、图像、主机和存储库中的漏洞
COMP9447 - Security Engineering Workshop with AWS 20T3
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
翻译 - AWS 开发框架,旨在测试 Amazon Web Services 环境的安全性。
Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.
翻译 - Security Monkey监视AWS,GCP,OpenStack和GitHub组织的资产及其随时间的变化。
Terraform modules for establishing event-driven security rules in AWS.
Continuous Security on AWS Workshop (CSOA) published by Pearson
Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)
A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.
翻译 - Rhino Security Labs发布的所有AWS IAM特权升级方法的集中来源。